Re: PostgreSQL and NeXpose Rapid 7 Vulnerbility scanning software - Mailing list pgsql-general

From Marc Bevand
Subject Re: PostgreSQL and NeXpose Rapid 7 Vulnerbility scanning software
Date
Msg-id loom.20100603T210159-765@post.gmane.org
Whole thread Raw
In response to PostgreSQL and NeXpose Rapid 7 Vulnerbility scanning software  ("Arnold, Sandra" <ArnoldS@osti.gov>)
List pgsql-general
Arnold, Sandra <ArnoldS <at> osti.gov> writes:
>
> Is anyone using
> NeXpose Rapid 7 to scan your PostgreSQL databases for vulnerbilities?  If
> so, what authentication are you using to allow it to connect to your
> database?  Or, how are you configuring the software to allow it to connect
> to the database?

Hi Sandra,

Although Nexpose scans for PostgreSQL databases and can discover weak
credentials, etc, it does not currently allow endusers to specify
credentials. This feature will likely soon be available.

PS: we are being off-topic here, please use the nexpose-users mailing list:
https://mail.metasploit.com/mailman/listinfo/nexpose-users

-mrb

pgsql-general by date:

Previous
From: Vick Khera
Date:
Subject: Re: pgbouncer
Next
From: "Wang, Mary Y"
Date:
Subject: How to remove the current database and populate the database with new data?