-
Notifications
You must be signed in to change notification settings - Fork 5
Nessus Instance Setup Instructions
Shane Frasier edited this page Aug 23, 2018
·
5 revisions
After spinning up a new Nessus instance, follow these steps to prepare it for use with CyHy:
- Stop Nessus service:
sudo service nessusd stop
- Register license key:
sudo /opt/nessus/sbin/nessuscli fetch --register-only <activationcode>
(temporary 7-day codes available here.) - Create scanner user (as admin):
sudo /opt/nessus/sbin/nessuscli adduser <username>
- Update plugin feed:
sudo /opt/nessus/sbin/nessuscli update --plugins-only
- Rebuild plugin database:
sudo /opt/nessus/sbin/nessusd -R
- Start Nessus service:
sudo service nessusd start
- Set up ssh tunnel from your local machine to the Nessus instance (add lines below to
~/.ssh/config
):Host <bastion_host_IP> User <ssh username> LocalForward 18834 vulnscan1:8834
- Open browser, go to https://localhost:18834
- Login with Nessus user created above
- Import cyhy-base scan policy