Diagnosis
You can troubleshoot the system environment for any system to verify if the
conditions are conducive for scanning it, using the Diagnose function.
From the Admin tab --> Diagnosis link, you can enter the system names, select the credentials for
the systems, specify the Telnet and SSH ports (for Linux machines) and click on
the Diagnose button in the bottom of the screen.
Security Manager Plus's Diagnosis of the System environment includes performing the following
tests on the target machines :
System Checks for the system where Security Manager Plus is running
- For Linux systems, if samba-tng package is installed or not (this
package is important for a Security Manager Plus server running on Linux to communicate
with Windows systems)
- For Linux systems, if root privileges are available for Nmap to run
- If there is internet connectivity - to access the Security Manager Plus vulnerability
database from our site and to download patches from vendor websites
- If there is a firewall present
Other tests on target systems
- Ping - a 'ping' command is executed from the Security Manager Plus server machine to the
target machines, so see if they are alive in the network
- OS Type - detects the OS information of the host being diagnosed
- Registry Service check (Windows machines only) - To check if the
registry service is running in the target machine and if the service can be
accessed remotely from the server machine. Also to check if the credentials
supplied (username and password) have enough privileges (read administrator
rights) to access the registry
- Shares check (Windows machines only) - To test if the ADMIN$ share
is enabled in the target machine
- Service creation check (Windows machines only) - To test if a
service can be created in the remote machines to carry out patch detection
operations
- Login Test (Linux machines only)- To check if the credentials
supplied (username and password) for the Linux machines can be used to
successfully login to the target machines and if the telnet & ssh
services are running in the specified ports
The results of these test give an idea on the environment of the target
system. If any of the tests fail, scanning may fail. You should take corrective
measures to address the issues, and retry system scanning. Note that you can
enter multiple systems and diagnose them at one go.
Copyright © 2007, AdventNet Inc. All Rights Reserved.