Nessus Scanner (Pre-Authorized)
Tenable, Inc. | 10.5.3Linux/Unix, Amazon Linux 20230628 - 64-bit Amazon Machine Image (AMI)
Works great, but you need to know what this is for.
A lot of other reviewers don't appear to really know what this product is. If you follow the documentation it is incredibly easy to setup and configure and link to Tenable.io and start getting AWS vulnerabilities identified and listed in tenable.
Installation and configuration is super easy if you follow the documentation. It works great, and I have mine on a cloudwatch timer to turn it on before scans and off afterwards to save on monthly ec2 costs.
- Leave a Comment |
- Mark review as helpful
I WILL NEVER USE THIS
I have been trying to create a user account from Tenable IO. I cannot find where to create the account. This is a waste of time
Not user friendly to setup
Purchased this but was unable to find instructions which is frustrating. Going to download the eval from the tenable site and install it on the instance. Wasted 2 hours trying to get running.
Not available?
Trying to sping this up atm and getting "This version has been removed and is no longer available to new customers."
What is the AMI that I should be using instead? Looking for the pre authorized version only.
Annoyingly out of date
It'd be nice if the security scanning company patched the bugs that their own scanners find about their software
That being said the aws deployment is quite streamlined, two common annoyance problems it must have a 50+GB harddrive on the instance
And it takes 10-15mins before the instance is actually useable
Works as advertised, easy to setup and automate with CloudFormation
I saw some negative reviews here, and that sparked me to write one to clear up misconceptions that I too had that frustrated me with this AMI until I better understood the process. This is not a Nessus instance in that you cannot connect to it to manage it directly and it does not serve any web interface. Instead, this instance is a cloud scanner that will perform scans on items in the same VPC it is installed into, as directed by the Tenable.io website. As part of the instantiation process, once must provide UserData to link the cloud website with this scanner, and then it is controlled completely from the Tenable.io portal.
The recommended AMI is unstable
It appears that the Tenable MarketPlace AMI is highly inconsistent and unstable. Each time we deploy a new EC2 instance using the Tenable AMI, It works briefly and then completely stops.
Completely non-functional as other reviewer noted
Unable to connect to instance via any method (SSH, HTTP, HTTPS or per Nessus standard port 8834 via HTTPS). Can be instance dependent, but also attempted ICMP (with associated SG) and received no response.
Unable to connect
Can't connect via SSH authorized keys or via HTTP port of 8834 which Nessus uses to manage via web interface... Notified their support.