Professional Documents
Culture Documents
Lab.2.2. Scaner Nessus
Lab.2.2. Scaner Nessus
Required Resources
Ubuntu VM,
Metasploitable2 VM - An intentionally vulnerable Linux virtual
machine designed for training, exploit testing, and general
target practice
Virtual Box
Warning: The free VMware Player products are NOT sufficient
for this class due to the annoying limitation that they will
only run a single virtual machine at a time, but we need
multiple VMs running simultaneously and communicating with
each other.
Networking Configuration
Assign each virtual machine to use this new shared NAT network.
For each VM, go to Settings->Network, and for Adaptor 1 (the only
one in use), change the "Attached to" setting from the default of
"NAT" to the new "NAT Network". For the "Name" field directly
below, ensure the name of your new network (e.g. "NatNetwork") is
selected. OK out of all Preferences windows.
Part 1
Download an intentionally vulnerable virtual machine
- Metasploitable 2 - from Sourceforge. Note that this file is
distributed as a complete VMware virtual machine (.vmx / .vmdk
file), not an .iso file like most installers, so you can open it directly
in VMware. Download and extract the .zip file to a convenient place
on your computer.
Part 2
Nessus is a commercial vulnerability assessment scanner.
To install Nessus:
# Then, run the installer you downloaded. Note that file is slightly
different depending on your architecture type:
# For Intel/AMD users:
$ sudo apt install ./Nessus-10.7.0-ubuntu1404_amd64.deb
# For Apple Silicon users:
$ sudo apt install ./Nessus-10.7.0-ubuntu1804-aarch64.deb
# Note: 2/1/2024 - Shafer got this error message, but it can be disregarded
# N: Download is performed unsandboxed as root as file
# '/home/shafer/Downloads/Nessus-10.7.0-ubuntu1804_aarch64.deb'
# couldn't be accessed by user '_apt'. - pkgAcquire::Run (13: Permission
denied)
Register Nessus:
# Note: 2/1/12024 - Shafer got "An error occurred" but the account was
succesfully created, so ... shrug?
Start Nessus:
When you're finished with the Nessus section of the lab, you can
shut the program down.
Deliverable (Essay):