Solved

Recommendation for public IP scanning tool

Posted on 2013-06-19
9
449 Views
Last Modified: 2013-07-07
Looking for a hosted or on premises solution (I can built a server to host it) that will let me schedule public IP scans of my clients networks (about 50 networks with different public IP ranges) to make sure no unnecessary ports are open and also show me changes from previous scans. I can run nmap on as needed basis but I'd like it be done in a more cleaner way with reporting and maybe even alerting of ports get opened.

Would appreciate some inexpensive recommendations

Thank you

Peter
0
Comment
Question by:piotrmikula108
9 Comments
 
LVL 12

Accepted Solution

by:
ryan80 earned 417 total points
Comment Utility
use nmap and just script it. You can use cli and run it as a scheduled task.
0
 
LVL 17

Expert Comment

by:surbabu140977
Comment Utility
Yes, nmap can be scripted and give you the desired result. If you are not good/aware of scripting, this would be difficult.

What we did is : scheduled nmap as cron, after each execution throw the output to a csv, in the next run compare the latest with the old and mail the difference once in 24hrs to specified emails.

Best,
0
 
LVL 1

Author Comment

by:piotrmikula108
Comment Utility
yeah, not my strongest skill. would like an out of box solution

thx thou!
0
 
LVL 12

Assisted Solution

by:ryan80
ryan80 earned 417 total points
Comment Utility
One thought on this would be to use nmap in conjunction with Splunk. There is a nmap plugin that allows pinging, portscans, ......

you would need to use the cli commands for nmap, but you look them up once and are done. using the free version of splunk you would have a record of all of this, be able to run quick searches against it, and pull reports. this may be more than what you are looking for, but splunk is easy to setup and once you have the syntax for the port scan down once, you are done.

here is a simpler one off tool, but you will have to run it each time. http://www.whatsupgold.com/free-software/network-tools/port-scanner.aspx
0
Why You Should Analyze Threat Actor TTPs

After years of analyzing threat actor behavior, it’s become clear that at any given time there are specific tactics, techniques, and procedures (TTPs) that are particularly prevalent. By analyzing and understanding these TTPs, you can dramatically enhance your security program.

 
LVL 12

Assisted Solution

by:ryan80
ryan80 earned 417 total points
Comment Utility
for a totally out of the box solution, there are any number of vulnerability scanners, but along with the simplicity of these solutions comes a cost. Is this something that you are able to spend money on, or does it have to be free?
0
 
LVL 1

Author Comment

by:piotrmikula108
Comment Utility
I can pay a little bit - if it's good, but not too much
0
 
LVL 12

Assisted Solution

by:ryan80
ryan80 earned 417 total points
Comment Utility
here are a few products to start. I have used Nessus before. These will give you beyond port scans. They will also scan for know vulnerabilities as well.

Manage Engine - used other products of theirs, pretty good
http://www.manageengine.com/products/security-manager/network-security-scanner.html

https://store.manageengine.com/security-manager/index.html  -pricing

Nessus - I have used version 4 and thought it was good
http://www.tenable.com/

http://www.tenable.com/products/nessus/nessus-faq#anchor60 - pricing

Eeye - never heard of them before this search
http://www.eeye.com/products/retina/community

Rapid 7 - never used it.
http://www.rapid7.com/products/nexpose/compare-downloads.jsp
0
 
LVL 12

Assisted Solution

by:ryan80
ryan80 earned 417 total points
Comment Utility
0
 
LVL 25

Assisted Solution

by:madunix
madunix earned 83 total points
Comment Utility
0

Featured Post

Free camera licenses with purchase of My Cloud NAS

Milestone Arcus software is compatible with thousands of industry-leading cameras for added flexibility. Upon installation on your My Cloud NAS, you will receive two (2) camera licenses already enabled in the software. And for a limited time, get additional camera licenses FREE.

Join & Write a Comment

SHARE your personal details only on a NEED to basis. Take CHARGE and SECURE your IDENTITY. How do I then PROTECT myself and stay in charge of my own Personal details (and) - MY own WAY...
Phishing is at the top of most security top 10 efforts you should be pursuing in 2016 and beyond. If you don't have phishing incorporated into your Security Awareness Program yet, now is the time. Phishers, and the scams they use, are only going to …
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…

763 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now