OpenVAS Vulnerability scanning basics Creating user groups and creating roles

Source: Internet
Author: User

OpenVAS Vulnerability scanning basics Creating user groups and creating roles openvas creating user groups

A user group refers to a combination of many users. In a network, the permissions of each user accessing the network may vary. Therefore, you can make a group of users with the exact same permissions. This does not require you to set permissions for a single user, just set permissions on the group. The methods for creating a user group are described below. The procedure is as follows:

(1) In the main interface of the OpenVAS service, click administration| Groups command, you can open the user group interface, as shown in 1.16.

Figure 1.16 Group Interface

(2) From this interface you can see that no groups have been created yet. Clicking the (New Group) icon in the interface will open the interface shown in 1.17.

Figure 1.17 Creating a new group

(3) There are three configuration items in the interface, and each configuration item has the following meanings:

    • Q Name: New group names
    • Q Comment: Sets the comment information. User can not set.
    • Q Users: Sets the user to join the group.

In this example, the setting creates a group named TestTeam and joins the previously created user, Bob and Alice, into the group. After the setup is complete, the content 1.18 shows.

Figure 1.18 New Group information

(4) At this point, click the Create Group button, creating the TestTeam group. After the TestTeam group is successfully created, the interface shown in 1.19 is displayed.

Figure 1.19 New group details

(5) From this interface, you can see the details of the TestTeam group displayed. Clicking the button in the interface will return to the user group list interface, shown in 1.20.

Figure 1.20 a new group

(6) From this interface, you can see that the TestTeam Group was created successfully. At this point, the user can click the four icons under the actions on the right to delete, edit, clone, and export group information for the XML operation. The implementation method is similar to the user's operation, and this is not covered here.

To verify the success of joining Bob and Alice users to the TestTeam group, the user can select administration| Users command to view the user information, as shown in 1.21.

Figure 1.21 User Interface

From this interface, you can see that Bob and Alice users are already part of the TestTeam group.

Tip: It is often important to create groups when there are a large number of users that need to be managed. If there are only a few users, there is no need to create groups.

OpenVAS Creating a role

A character is simply a user with a different level of privilege. The default OpenVAS creates seven roles, namely admin (Admin), Guest (guest user), info (information browse), monitor (Performance Monitor), OBSERVER (Observer), Super Admin (Super Admin), and user (normal user). Of these, the Super Admin user's permissions are the largest. If these roles do not satisfy the user, the user can manually create a new role.

"Example 1-3" creates a role. The procedure is as follows:

(1) In OpenVAS's main interface, click administration| The roles command opens as shown in the Role list interface 1.22.

Figure 1.22 List of roles

(2) From this interface, you can see that there are seven characters by default. Users can click on any one of the role names to see the permissions that the role has. For example, to view the permissions for the info role, the interface shown in 1.23 is displayed.

Figure 1.23 The permissions of the info role

(3) From this interface, you can see that the info role has a total of eight permissions. For example, authenticate (Allow login), commands (allow multiple OMP commands to run at once), Get_aggregates (Allow read aggregates), and so on. Users can also view the details of each permission by clicking the icon below the actions. Click the (New Role) icon in the interface and the new role interface opens, as shown in 1.24.

Figure 1.24 Creating a new role

(4) Enter the role name in the Name text box of the interface, enter the comment information in the comment text box, and enter the user who uses the role in the Users text box. The role information created in this example is shown in 1.24. Then, click the Create Role button. After a successful creation, the interface shown in 1.25 is displayed.

Figure 1.25 Role Details

(5) This interface shows the details of the newly created TestTeam role. From the information that is displayed, you can see that the role does not have any permissions. At this point, the user clicks the icon to edit the role and sets the new permissions, as shown in 1.26.

Figure 1.26 Editing the role interface

(6) In this interface, you can modify the name, user, and permissions of the role. All permissions can be viewed in the text box to the right of name in new permission. For example, select the Authenticate permission, and then click the Create Permission button to create it successfully. Users can use this method to create multiple permissions in turn. After the creation is complete, you will see the permissions created below permissions, as shown in 1.27.

Figure 1.27 New Permissions

(7) From this interface, you can see that you have created the authenticate and commands two permissions. If the user wants to delete a permission, click the icon in actions. In this interface, users can also create permissions for groups. For example, you can create a testteam group by selecting it, and then clicking the Create Permissons button. Once created, click the icon to return to the list of roles, as shown in 1.28.

Figure 1.28 List of roles

(6) From this interface, you can see the new role named TestTeam. At this point, the user clicks the role to view its details, as shown in 1.29. In this interface, users can also click on four icons, respectively, to delete, edit, clone, and export roles as XML.

Figure 1.29 Details of the TestTeam role

Tip: If you need to give different permissions to users in the OpenVAS service, you can assign different permissions to users by creating different roles and adding their users to the role.

This article is selected from: OpenVAS Vulnerability Scanning Basic Tutorial University bully internal information, reproduced please indicate the source, respect the technology respect it people!

OpenVAS Vulnerability scanning basics Creating user groups and creating roles

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.