<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
>

<channel>
	<title>SecuraBit &#187; openvas</title>
	<atom:link href="http://www.securabit.com/tag/openvas/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.securabit.com</link>
	<description>SecuraBit Before It Bytes!</description>
	<lastBuildDate>Mon, 26 Jul 2010 04:33:47 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
<!-- podcast_generator="Blubrry PowerPress/1.0.9" mode="advanced" entry="normal" -->
	<itunes:summary>This is a Computer Security podcast brought to you by the guys at SecuraBit.com.  Please visit our web site at http://www.securabit.com or send questions/comments to feedback@securabit.com

Thanks for listening!</itunes:summary>
	<itunes:author>SecuraBit</itunes:author>
	<itunes:explicit>no</itunes:explicit>
	<itunes:image href="http://staging.securabit.com/itunessecurabit.jpg" />
	<itunes:owner>
		<itunes:name>SecuraBit</itunes:name>
		<itunes:email>feedback@securabit.com</itunes:email>
	</itunes:owner>
	<managingEditor>feedback@securabit.com (SecuraBit)</managingEditor>
	<copyright>SecuraBit LLC</copyright>
	<itunes:subtitle>SecuraBit Before It Bytes!</itunes:subtitle>
	<itunes:keywords>security, forensics, hacking, infosec, securabit, podcast, sans, drinking, beer</itunes:keywords>
	<image>
		<title>SecuraBit &#187; openvas</title>
		<url>http://securabit.com/securabitrsssmall.jpg</url>
		<link>http://www.securabit.com</link>
	</image>
	<itunes:category text="Technology">
		<itunes:category text="Tech News" />
		<itunes:category text="Software How-To" />
	</itunes:category>
		<item>
		<title>SecuraBit Episode 40 &#8211; Paul WHO????</title>
		<link>http://www.securabit.com/2009/10/02/securabit-episode-40-paul-who/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=securabit-episode-40-paul-who</link>
		<comments>http://www.securabit.com/2009/10/02/securabit-episode-40-paul-who/#comments</comments>
		<pubDate>Sat, 03 Oct 2009 02:12:56 +0000</pubDate>
		<dc:creator>AnthonyGartner</dc:creator>
				<category><![CDATA[SecuraBits]]></category>
		<category><![CDATA[Show Releases]]></category>
		<category><![CDATA[Andrew Borel]]></category>
		<category><![CDATA[Anthony Gartner]]></category>
		<category><![CDATA[Christopher Mills]]></category>
		<category><![CDATA[Ed Smiley]]></category>
		<category><![CDATA[MS07-063]]></category>
		<category><![CDATA[MS09-049]]></category>
		<category><![CDATA[nessus]]></category>
		<category><![CDATA[nmap]]></category>
		<category><![CDATA[openvas]]></category>
		<category><![CDATA[Paul Asadoorian]]></category>
		<category><![CDATA[Pauldotcom.com]]></category>
		<category><![CDATA[Tenable]]></category>

		<guid isPermaLink="false">http://www.securabit.com/?p=865</guid>
		<description><![CDATA[SecuraBit Episode 40 &#8211; Paul &#8220;Pauldotcom&#8221; Asadoorian Microsoft Security Bulletin MS09-048 &#8211; http://www.microsoft.com/technet/security/Bulletin/MS09-048.mspx Microsoft Security Bulletin MS07-063 &#8211; http://www.microsoft.com/technet/security/bulletin/MS07-063.mspx Renaud script to go from Nmap to Nessus Interview with Paul Asadoorian (PaulDotCom/Tenable/Nessus) Intro Questions: Who are you, and what are you doing on THIS podcast? Tell us about the PaulDotCom podcast (I’ve talked to SecuraBit [...]]]></description>
			<content:encoded><![CDATA[<div id="magicdomid884"><span>SecuraBit Episode 40 &#8211; Paul &#8220;Pauldotcom&#8221; Asadoorian</span></div>
<div><span>Microsoft Security Bulletin MS09-048 &#8211; </span><span><a href="http://www.microsoft.com/technet/security/Bulletin/MS09-048.mspx">http://www.microsoft.com/technet/security/Bulletin/MS09-048.mspx</a></span></div>
<div id="magicdomid887"><span>Microsoft Security Bulletin MS07-063 &#8211; </span><span><a href="http://www.microsoft.com/technet/security/bulletin/MS07-063.mspx">http://www.microsoft.com/technet/security/bulletin/MS07-063.mspx</a></span></div>
<div><span>Renaud script to go from Nmap to Nessus</span></div>
<div><span>Interview with Paul Asadoorian (PaulDotCom/Tenable/Nessus)</span></div>
<div id="magicdomid892"><span>Intro Questions:</span></div>
<div id="magicdomid893">
<ul>
<li><span>Who are you, and what are you doing on THIS podcast?</span></li>
</ul>
</div>
<div id="magicdomid894">
<ul>
<li><span>Tell us about the PaulDotCom podcast (I’ve talked to SecuraBit listeners who have never heard of PDC)</span></li>
</ul>
</div>
<div id="magicdomid895">
<ul>
<li><span>How long have you been using Nessus?</span></li>
</ul>
</div>
<div id="magicdomid896">
<ul>
<li><span>When did you start working for Tenable?</span></li>
</ul>
</div>
<div id="magicdomid897">
<ul>
<li><span>What is your role at Tenable?</span></li>
</ul>
</div>
<div id="magicdomid900"><span>Nessus Questions:</span></div>
<div id="magicdomid901">
<ul>
<li><span>What’s new in this version of Nessus?</span></li>
</ul>
</div>
<div id="magicdomid902">
<ul>
<li><span>Are changes driven primarily by Tenable, or the community?</span></li>
</ul>
</div>
<div id="magicdomid903">
<ul>
<li><span>What does Nessus use for a scanning engine?</span></li>
</ul>
</div>
<div id="magicdomid904">
<ul>
<li><span>How does Nessus interact and work with Nmap?</span></li>
</ul>
</div>
<div id="magicdomid905">
<ul>
<li><span>Explain Nessus licensing and what an individual vs a corp is entitled to.</span></li>
</ul>
</div>
<div id="magicdomid906">
<ul>
<li><span>How much is a license?</span></li>
</ul>
</div>
<div id="magicdomid907">
<ul>
<li><span>Cost of proffesional feed = $1200.00/year</span></li>
</ul>
</div>
<div id="magicdomid908">
<ul>
<li><span>Home feed no longer a delay, no SCADA plugins</span></li>
</ul>
</div>
<div id="magicdomid909">
<ul>
<li><span>How does Nessus differ from OpenVAS?</span></li>
</ul>
</div>
<div id="magicdomid910">
<ul>
<li><span>Can you use the OpenVAS repo with Nessus?</span></li>
</ul>
</div>
<div id="magicdomid911">
<ul>
<li><span>Talk about the extensibility of Nessus. (Scripting, etc)</span></li>
</ul>
</div>
<div id="magicdomid912">
<ul>
<li><span>How does Nessus work with OVAL definitions? How does this help for FDCC compliance?</span></li>
</ul>
</div>
<div id="magicdomid913">
<ul>
<li><span>Does tenable have any dedicated appliances for enterprise scanning and monitoring based on nessus?</span></li>
</ul>
</div>
<div id="magicdomid915"><span>Implementation and Operation questions (How Paul Does Things):</span></div>
<div id="magicdomid916">
<ul>
<li><span>Do you place scanning servers on each segment of the network, or do you scan through zone-to-zone firewalls? Why?</span></li>
</ul>
</div>
<div id="magicdomid917">
<ul>
<li><span>Is there a practical limit to the number of deices that can be scanned by one scanning server? Or is it just a time tradeoff?</span></li>
</ul>
</div>
<div id="magicdomid918">
<ul>
<li><span>How often do you scan (and re-scan) a network?</span></li>
</ul>
</div>
<div id="magicdomid919">
<ul>
<li><span>How do you handle the results (and avoid dropping a 300 page Nessus report on the server guys and saying FIX IT)</span></li>
</ul>
</div>
<div id="magicdomid920">
<ul>
<li><span>Are results parse-able and able to be fed into compliance and risk management tools?</span></li>
</ul>
</div>
<div id="magicdomid922"><span>Other Questions:</span></div>
<div id="magicdomid923">
<ul>
<li><span>When is the next PaulDotCom episode?</span></li>
</ul>
</div>
<div id="magicdomid924">
<ul>
<li><span>What are the topics/guests?</span></li>
</ul>
</div>
<div id="magicdomid925">
<ul>
<li><span>What is your favorite beer?</span></li>
</ul>
</div>
<div id="magicdomid927"><span>Hosts:</span></div>
<div id="magicdomid928"><span>Anthony Gartner – <a title="AnthonyGartner.com" href="http://AnthonyGartner.com" target="_blank">AnthonyGartner.com</a> @anthonygartner</span></div>
<div id="magicdomid929"><span>Christopher Mills – @thechrisam</span></div>
<div id="magicdomid930"><span>Andrew Borel – @andrew_secbit</span></div>
<div id="magicdomid931"><span>Ed Smiley &#8211; @edsmiley</span></div>
<div id="magicdomid933"><span>Guest:</span></div>
<div id="magicdomid934"><span>Paul Asadoorian &#8211; @pauldotcom &#8211; </span><span><a href="http://www.pauldotcom.com/">http://www.pauldotcom.com</a></span></div>
<div id="magicdomid936"><span>Links:</span></div>
<div id="magicdomid937"><span>Nessus &#8211; </span><span><a href="http://www.nessus.org/nessus/">http://www.nessus.org/nessus/</a></span></div>
<div id="magicdomid938"><span>Tenable Network Security Blog and Podcast &#8211; </span><span><a href="http://blog.tenablesecurity.com/">http://blog.tenablesecurity.com/</a></span></div>
]]></content:encoded>
			<wfw:commentRss>http://www.securabit.com/2009/10/02/securabit-episode-40-paul-who/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://media.libsyn.com/media/securabit/SecuraBit_EP40.mp3" length="37476646" type="audio/mpeg" />
			<itunes:keywords>Andrew Borel,Anthony Gartner,Christopher Mills,Ed Smiley,MS07-063,MS09-049,nessus,nmap,openvas,Paul Asadoorian,Pauldotcom.com,Tenable</itunes:keywords>
		<itunes:subtitle>SecuraBit Episode 40 - Paul &quot;Pauldotcom&quot; Asadoorian Microsoft Security Bulletin MS09-048 - http://www.microsoft.com/technet/security/Bulletin/MS09-048.mspx Microsoft Security Bulletin MS07-063 - http://www.microsoft.</itunes:subtitle>
		<itunes:summary>SecuraBit Episode 40 - Paul &quot;Pauldotcom&quot; Asadoorian
Microsoft Security Bulletin MS09-048 - http://www.microsoft.com/technet/security/Bulletin/MS09-048.mspx
Microsoft Security Bulletin MS07-063 - http://www.microsoft.com/technet/security/bulletin/MS07-063.mspx
Renaud script to go from Nmap to Nessus
Interview with Paul Asadoorian (PaulDotCom/Tenable/Nessus)
Intro Questions:


	Who are you, and what are you doing on THIS podcast?




	Tell us about the PaulDotCom podcast (I’ve talked to SecuraBit listeners who have never heard of PDC)




	How long have you been using Nessus?




	When did you start working for Tenable?




	What is your role at Tenable?


Nessus Questions:


	What’s new in this version of Nessus?




	Are changes driven primarily by Tenable, or the community?




	What does Nessus use for a scanning engine?




	How does Nessus interact and work with Nmap?




	Explain Nessus licensing and what an individual vs a corp is entitled to.




	How much is a license?




	Cost of proffesional feed = $1200.00/year




	Home feed no longer a delay, no SCADA plugins




	How does Nessus differ from OpenVAS?




	Can you use the OpenVAS repo with Nessus?




	Talk about the extensibility of Nessus. (Scripting, etc)




	How does Nessus work with OVAL definitions? How does this help for FDCC compliance?




	Does tenable have any dedicated appliances for enterprise scanning and monitoring based on nessus?


Implementation and Operation questions (How Paul Does Things):


	Do you place scanning servers on each segment of the network, or do you scan through zone-to-zone firewalls? Why?




	Is there a practical limit to the number of deices that can be scanned by one scanning server? Or is it just a time tradeoff?




	How often do you scan (and re-scan) a network?




	How do you handle the results (and avoid dropping a 300 page Nessus report on the server guys and saying FIX IT)




	Are results parse-able and able to be fed into compliance and risk management tools?


Other Questions:


	When is the next PaulDotCom episode?




	What are the topics/guests?




	What is your favorite beer?


Hosts:
Anthony Gartner – AnthonyGartner.com @anthonygartner
Christopher Mills – @thechrisam
Andrew Borel – @andrew_secbit
Ed Smiley - @edsmiley
Guest:
Paul Asadoorian - @pauldotcom - http://www.pauldotcom.com
Links:
Nessus - http://www.nessus.org/nessus/
Tenable Network Security Blog and Podcast - http://blog.tenablesecurity.com/</itunes:summary>
		<itunes:author>SecuraBit</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:duration>1:18:04</itunes:duration>
	</item>
		<item>
		<title>Episode 20: Time Warp Again!</title>
		<link>http://www.securabit.com/2009/02/10/episode-20-time-warp-again/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=episode-20-time-warp-again</link>
		<comments>http://www.securabit.com/2009/02/10/episode-20-time-warp-again/#comments</comments>
		<pubDate>Tue, 10 Feb 2009 23:31:01 +0000</pubDate>
		<dc:creator>Chris</dc:creator>
				<category><![CDATA[SecuraBits]]></category>
		<category><![CDATA[Show Releases]]></category>
		<category><![CDATA[forums]]></category>
		<category><![CDATA[openvas]]></category>
		<category><![CDATA[scap]]></category>
		<category><![CDATA[shmoocon]]></category>

		<guid isPermaLink="false">http://securabit.com/?p=431</guid>
		<description><![CDATA[Sorry folks, we will not be releasing episodes out of order anymore.

In this episode we discuss:

Managing IP space inside a company network. Attributing a device on the network to an employee / function.

Standardizing vulnerability management]]></description>
			<content:encoded><![CDATA[<p>Sorry folks, we will not be releasing episodes out of order anymore.</p>
<p>In this episode we discuss:</p>
<p>Managing IP space inside a company network. Attributing a device on the network to an employee / function.</p>
<p>Standardizing vulnerability management using Security Content Automation Protocol (SCAP) and Open Vulnerability Assessment System (OpenVAS).</p>
<p>And briefly touch on the Obama Administration&#8217;s Outline for their Cyber Security Strategy.</p>
<p>Use our Forums!</p>
<p>Don’t forget to give us a feedback on Itunes so we can bump the old shows off the list.</p>
<p>Thanks again for all the donations for the Tip Jar.</p>
<p>Hosts:</p>
<p>Anthony Gartner &#8211; AnthonyGartner.com @AnthonyGartner<br />
Chris Gerling &#8211; Hak5Chris, Chrisgerling.com @Hak5chris<br />
Chris Mills &#8211; ChrisAM @packetsense<br />
Andrew Borel &#8211; @Andrew_Secbit</p>
<p>Special Guest:</p>
<p>Tim Krabec (@tkrabec) of the <a href="http://smbminute.com/">SMBMinute.com</a></p>
<p>Important links for the show and documents used:</p>
<p><a href="http://www.openvas.org/">Open Vulnerability Assessment System</a><br />
<a href="http://en.wikipedia.org/wiki/Security_Content_Automation_Protocol">Security Content Automation Protocol</a><br />
<a href="http://www.diigo.com/annotated/5e5c73ed44f27f40631af447951b4bf8">Obama Administration Outlines Cyber Security Strategy</a><br />
<a href="http://www.washingtonpost.com/wp-dyn/content/article/2008/12/08/AR2008120801944.html">More Cyber Security Regulations Recommended</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.securabit.com/2009/02/10/episode-20-time-warp-again/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
