Scanning multiple VLANs using a trunk?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-14-2023 04:06 AM
Good morning,
i was informed by a new security person at work that he was able to scan multiple VLANs at his last job using thier Nessus Scanner. he said that the networking team at his last job set up a trunk on their switch and the device was able to scan everything, but cant further explain basiclly anything else. after a couple hours of research im stuck. i dont want to tell him no, any thoughts on how the trunk needs to be set up or if it might have to with his scanner needing to be configured differently?
- Labels:
-
Other Security Topics
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-14-2023 04:15 AM
You can scan in the network :
explain better in the below video :
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-14-2023 04:28 AM
this just seems like how to set up the scanner. the guy knows how to set up the scan. i can set a port on a specific VLAN and he has been able to produce results. what he wants to be able to do is scan all the VLANs at once.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-14-2023 04:30 AM
I do not see any issue scanning all VLAN here ?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-14-2023 04:32 AM
Would there need to be some config on the switch port to make it work?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-14-2023 05:02 AM
For scanning it does not require any special config - we do scan all time for the audit network.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-14-2023 06:06 AM
do they need to use a crossover cable for that, if they are scanning the trunk?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-14-2023 07:46 AM
No not any cross cable, nesus need IP address to scan, switch port can be access VLAN (what the nesus using IP address?)
If you looking for other methods, the Switch port can be trunk and allow all the VLAN in your network.(Configure nesus with sub-interface to scan.)
