Best Site for External Firewall Probing/Reporting?

lumpalump
lumpalump used Ask the Experts™
on
Hi All,

I'm looking for recommendations on applications or web sites to use in testing a client's Internet facing firewall for potential security issues (i.e. open ports, etc.).

I've used Shields Up! in the past (http://www.grc.com/intro.htm) but I'm suspecting there must be something better out there.

Your recommendations?

Thanks!

Joe
Comment
Watch Question

Do more with

Expert Office
EXPERT OFFICE® is a registered trademark of EXPERTS EXCHANGE®

Commented:
It really depends on what you need, if it's just a small office or something like that then ShieldsUp is fine; if you need a certified solution for compliance etc then you could use QualysGuard from www.qualys.com.

HTH
Try www.auditmypc.com

Cheers,
Rajesh

Author

Commented:
Thanks for the responses.  Qualys is too pricey and ShieldsUp! doesn't give enough detail - I'm looking for something in the middle of the two.  Any other recommendations?

Thanks!

Joe

p.s. www.auditmypc.com didn't do enough, IMO - they merely gave me a "your ports are fine" message after a scan.  I'm looking for a detailed report to hand a client after a scan has been completed.
Commented:
Unfortunately good reports from online service providers come at a price ..

You could try the following:
http://www.saintcorporation.com/products/vulnerability_scan/web_saint/web_saint.html

To be honest, I would simply download Nessus from nessus.org (free registration as long as you don't want the professional feed subscription or around $500 if you do), install it on a box, connect it to the internet and point it at the target. You will get a decent report which you can edit and provide to your client.

HTH

Do more with

Expert Office
Submit tech questions to Ask the Experts™ at any time to receive solutions, advice, and new ideas from leading industry professionals.

Start 7-Day Free Trial