Greenbone Enterprise Appliance Manual: GOS 22.04 Vulnerability Management

Telechargé par Seddik Zahreddine
Manual
Greenbone Enterprise Appliance
with Greenbone OS 22.04
Greenbone AG
Neumarkt 12
49074 Osnabrück
Germany
https://www.greenbone.net/en/
Greenbone OS version: GOS 22.04.18, 2024-02-20
This is the manual for the Greenbone Enterprise Appliance with Greenbone OS (GOS) version
22.04. Due to the numerous functional differences between GOS 22.04 and previous versions,
this manual should not be used with older versions of GOS.
The Greenbone Enterprise Appliance is under constant development. This manual attempts to
always document the latest software release. It is, however, possible that latest functionalities
have not been captured in this manual.
Should you have additional notes or error corrections for this manual, contact the Greenbone
Enterprise Support (https://www.greenbone.net/en/technical-support/).
The copyright for this manual is held by the Greenbone AG. The license information for the feeds used by the
Greenbone Enterprise Appliance can be found at https://www.greenbone.net/en/license-information/. Green-
bone and the Greenbone logo are registered trademarks of the Greenbone AG. Other logos and registered
trademarks used within this manual are the property of their respective owners and are used only for explana-
tory purposes.
This manual is made available under the Creative Commons Attribution-ShareAlike 4.0 International license.
See https://creativecommons.org/licenses/by-sa/4.0/ for details.
Under this license, you are free to:
Share — copy and redistribute the material in any medium or format
Adapt — remix, transform, and build upon the material for any purpose, even commercially
Under the following terms:
Attribution — You must give appropriate credit, provide a link to the license, and indicate if changes
were made. You may do so in any reasonable manner, but not in any way that suggests Greenbone AG
endorses you or your use.
ShareAlike — If you remix, transform, or build upon the material, you must distribute your contributions
under the same license as the original.
No additional restrictions — You may not apply legal terms or technological measures that legally
restrict others from doing anything the license permits.
Greenbone Enterprise Appliance with Greenbone OS 22.04 – Manual 3
Contents
1 Introduction 14
1.1 VulnerabilityManagement ....................................... 14
1.2 GreenboneEnterpriseAppliance.................................... 15
1.2.1 Components and Field of Application . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 15
1.2.2 TypesofScans ......................................... 16
1.2.3 Vulnerability Classification and Elimination . . . . . . . . . . . . . . . . . . . . . . . . . . 16
2 Read Before Use 17
2.1 UsingaSupportedGOSVersion.................................... 17
2.2 Effects on the Scanned Network Environment . . . . . . . . . . . . . . . . . . . . . . . . . . . . 17
2.3 Scanning Through Network Equipment . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 18
2.3.1 GeneralInformation ...................................... 18
2.3.2 Firewall-Specific Information . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 19
3 Greenbone Enterprise Appliance – Overview 20
3.1 HardwareAppliances .......................................... 20
3.1.1 Large Organizations Greenbone Enterprise 5400/6500 . . . . . . . . . . . . . . . . . . 20
3.1.2 Medium-Sized Organizations and Branches – Greenbone Enterprise 400/450/600/650 . 21
3.1.3 Small Organizations and Branches Greenbone Enterprise 150 . . . . . . . . . . . . . 21
3.1.4 Sensor Greenbone Enterprise 35 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 22
3.2 VirtualAppliances............................................ 24
3.2.1 Medium-Sized Organizations and Branches – Greenbone Enterprise
DECA/TERA/PETA/EXA.................................... 24
3.2.2 Small Organizations Greenbone Enterprise CENO . . . . . . . . . . . . . . . . . . . . 24
3.2.3 Sensor Greenbone Enterprise 25V . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 24
3.2.4 Training and Audit-via-Laptop Greenbone Enterprise ONE . . . . . . . . . . . . . . . . 25
4 Guideline for Using the Greenbone Enterprise Appliance 27
5 Setting up the Greenbone Enterprise Appliance 28
5.1 SetupRequirements........................................... 28
5.1.1 Greenbone Enterprise 6500/5400 . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 28
5.1.2 Greenbone Enterprise 650/600/450/400 . . . . . . . . . . . . . . . . . . . . . . . . . . . 29
5.1.3 GreenboneEnterprise150................................... 29
5.1.4 GreenboneEnterprise35 ................................... 30
5.1.5 Greenbone Enterprise DECA/TERA/PETA/EXA . . . . . . . . . . . . . . . . . . . . . . . 30
5.1.6 GreenboneEnterpriseCENO ................................. 31
Greenbone Enterprise Appliance with Greenbone OS 22.04 – Manual 4
5.1.7 GreenboneEnterprise25V .................................. 31
5.1.8 GreenboneEnterpriseONE.................................. 32
5.2 SettingupaHardwareAppliance ................................... 33
5.2.1 UtilizingtheSerialPort..................................... 33
5.2.2 StartingtheAppliance ..................................... 34
5.2.3 Performing a General System Setup . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 34
5.2.3.1 Configuring the Network . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 35
5.2.3.2 Importing or Generating an HTTPS Certificate . . . . . . . . . . . . . . . . . . . 37
5.2.3.3 Creating a Web Administrator . . . . . . . . . . . . . . . . . . . . . . . . . . . . 40
5.2.3.4 Entering or Uploading a Greenbone Enterprise Feed Subscription Key . . . . . 42
5.2.3.5 DownloadingtheFeed ................................ 43
5.2.3.6 Finishing the First Setup Wizard . . . . . . . . . . . . . . . . . . . . . . . . . . . 44
5.2.4 Logging into the Web Interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 45
5.3 SettingupaVirtualAppliance ..................................... 46
5.3.1 VericationofIntegrity ..................................... 46
5.3.2 DeployingtheAppliance.................................... 46
5.3.2.1 VMwarevSphere/ESXi ................................ 46
5.3.2.2 OracleVirtualBox ................................... 49
5.3.3 Performing a General System Setup . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 51
5.3.3.1 Configuring the Network . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 51
5.3.3.2 Importing or Generating an HTTPS Certificate . . . . . . . . . . . . . . . . . . . 52
5.3.3.3 Creating a Web Administrator . . . . . . . . . . . . . . . . . . . . . . . . . . . . 55
5.3.3.4 Entering or Uploading a Greenbone Enterprise Feed Subscription Key . . . . . 56
5.3.3.5 DownloadingtheFeed ................................ 57
5.3.3.6 Finishing the First Setup Wizard . . . . . . . . . . . . . . . . . . . . . . . . . . . 58
5.3.4 Logging into the Web Interface . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 59
6 Upgrading the Greenbone Enterprise Appliance to the Latest Major Version 60
6.1 Upgrading the Greenbone Operating System . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 60
6.2 Upgrading the Flash Partition to the Latest Version . . . . . . . . . . . . . . . . . . . . . . . . . . 62
6.3 Relogging into the GOS Administration Menu After an Upgrade . . . . . . . . . . . . . . . . . . 63
6.4 Reloading the Web Interface After an Upgrade . . . . . . . . . . . . . . . . . . . . . . . . . . . . 63
6.5 New Features and Changes of Default Behavior . . . . . . . . . . . . . . . . . . . . . . . . . . . 63
6.5.1 NotusScanner ......................................... 63
6.5.2 ApplianceFeatureSet ..................................... 64
6.5.3 VirtualAppliances ....................................... 64
6.5.4 HTTPWebInterfaceAccess.................................. 64
6.5.5 Backups............................................. 65
6.5.5.1 Password for Remote Backup Repository . . . . . . . . . . . . . . . . . . . . . . 65
6.5.5.2 obnam ......................................... 65
6.5.6 Mailhub ............................................. 65
6.5.7 WebInterface.......................................... 65
6.5.7.1 BusinessProcessMap ................................ 65
6.5.7.2 Task/Audit Setting Network Source Interface .................... 65
6.5.7.3 User Setting Interface Access ............................ 65
6.5.7.4 OVALDenitions.................................... 66
6.5.7.5 OSPScanners..................................... 66
6.5.8 QualityofDetection(QoD)................................... 66
6.5.9 VulnerabilityReferences.................................... 66
6.5.10 Greenbone Management Protocol (GMP) . . . . . . . . . . . . . . . . . . . . . . . . . . 66
7 Managing the Greenbone Operating System 67
7.1 GeneralInformation........................................... 67
7.1.1 Greenbone Enterprise Feed Subscription Key . . . . . . . . . . . . . . . . . . . . . . . . 67
7.1.2 AuthorizationConcept ..................................... 68
7.1.2.1 User-LevelAccess................................... 68
Greenbone Enterprise Appliance with Greenbone OS 22.04 – Manual 5
1 / 436 100%
La catégorie de ce document est-elle correcte?
Merci pour votre participation!

Faire une suggestion

Avez-vous trouvé des erreurs dans l'interface ou les textes ? Ou savez-vous comment améliorer l'interface utilisateur de StudyLib ? N'hésitez pas à envoyer vos suggestions. C'est très important pour nous!