Zum Inhalt springen

Greenbone/Installation: Unterschied zwischen den Versionen

Aus Foxwiki
Die Seite wurde neu angelegt: „== Installation == === gvm === ; This package installs all the required packages It provides scripts to setup, start and stop the GVM services. $ '''sudo apt install gvm''' === gvm-check-setup === # '''gvm-check-setup -h''' gvm-check-setup 22.4.0 Test completeness and readiness of GVM-22.4.0 Step 1: Checking OpenVAS (Scanner)... OK: OpenVAS Scanner is present in version 22.4.0. OK: Notus Scanner is present in version 22.4.1.…“
 
 
(97 dazwischenliegende Versionen desselben Benutzers werden nicht angezeigt)
Zeile 1: Zeile 1:
== Installation ==
'''Greenbone/Installation''' - [[Greenbone Community Edition]] auf [[Kali Linux]] installieren
=== gvm ===
; This package installs all the required packages
It provides scripts to setup, start and stop the GVM services.
$ '''sudo apt install gvm'''


=== gvm-check-setup ===
== Beschreibung ==
  # '''gvm-check-setup -h'''
=== Kali Linux aktualisieren ===
gvm-check-setup 22.4.0
<syntaxhighlight lang="bash" highlight="1">
  Test completeness and readiness of GVM-22.4.0
sudo apt update
Step 1: Checking OpenVAS (Scanner)...
</syntaxhighlight>
        OK: OpenVAS Scanner is present in version 22.4.0.
        OK: Notus Scanner is present in version 22.4.1.
        OK: Server CA Certificate is present as /var/lib/gvm/CA/servercert.pem.
Checking permissions of /var/lib/openvas/gnupg/*
        OK: _gvm owns all files in /var/lib/openvas/gnupg
        OK: redis-server is present.
        OK: scanner (db_address setting) is configured properly using the redis-server socket: /var/run/redis-openvas/redis-server.sock
        ERROR: redis-server is not running or not listening on socket: /var/run/redis-openvas/redis-server.sock
        FIX: You should start the redis-server with 'systemctl start redis-server@openvas.service' or configure it to listen on socket: /var/run/redis-openvas/redis-server.sock
  ERROR: Your GVM-22.4.0 installation is not yet complete!
Please follow the instructions marked with FIX above and run this
script again.


=== gvm-feed-update ===
=== Installation ===
# '''gvm-feed-update -h'''
<syntaxhighlight lang="bash" highlight="1">
[>] Updating GVM feeds
sudo apt install gvm
[*] Updating NVT (Network Vulnerability Tests feed from Greenbone Security Feed/Community Feed)
</syntaxhighlight>
 
=== gvm-setup ===
<syntaxhighlight lang="bash" highlight="1">
sudo gvm-setup
</syntaxhighlight>
 
Passwort notieren!
 
=== Installation prüfen ===
<syntaxhighlight lang="bash" highlight="1">
sudo gvm-check-setup
</syntaxhighlight>
 
=== Anmeldung ===
; Anmeldung an der grafischen Oberfläche
Im Webbrowser: https://127.0.0.1:9392
 
=== Feed-Status prüfen ===
* Vor dem ersten Scanvorgang
 
=== Externer Zugriff ===
<syntaxhighlight lang="bash" highlight="1" copy>
sudo systemctl edit --full greenbone-security-assistant.service
</syntaxhighlight>
<syntaxhighlight lang="bash" highlight="0" copy>
- ExecStart=/usr/sbin/gsad --foreground --listen 127.0.0.1 --port 9293
+ ExecStart=/usr/sbin/gsad --foreground --listen 0.0.0.0 --port 443
</syntaxhighlight>
 
Laden Sie die Daemons neu, da Sie Dateien geändert haben, und starten Sie die Dienste neu
<syntaxhighlight lang="bash" highlight="1" copy>
sudo systemctl daemon-reload
</syntaxhighlight>
 
<syntaxhighlight lang="bash" highlight="1" copy>
sudo systemctl restart gsad.service gvmd.service ospd-openvas.service
</syntaxhighlight>
 
Überprüfen Sie, dass alle Dienste auf dem gewünschten Host lauschen
<syntaxhighlight lang="bash" highlight="1" copy>
ss -nalt
</syntaxhighlight>
 
Wenn der Neustart der Dienste nicht funktioniert hat, versuchen Sie, den Server selbst neu zu starten.
 
<noinclude>
 
== Anhang ==
=== Siehe auch ===
<div style="column-count:2">
<categorytree hideroot=on mode="pages">{{BASEPAGENAME}}</categorytree>
</div>
----
----
{{Special:PrefixIndex/{{BASEPAGENAME}}/}}
=== Dokumentation ===
<!--
; Man-Page
# [https://manpages.debian.org/stable/procps/pgrep.1.de.html prep(1)]
; Info-Pages
-->
=== Links ===
==== Projekt ====
==== Weblinks ====
# https://greenbone.github.io/docs/latest/22.4/kali/index.html


===== gvm-setup =====
<!--
# '''gvm-setup -h'''
{{DEFAULTSORT:new}}
{{DISPLAYTITLE:new}}
[>] Starting PostgreSQL service
-->
[>] Creating GVM's certificate files
[>] Creating PostgreSQL database
[i] User _gvm already exists in PostgreSQL
[i] Database gvmd already exists in PostgreSQL
[i] Role DBA already exists in PostgreSQL
[*] Applying permissions
GRANT ROLE
[i] Extension uuid-ossp already exists for gvmd database
[i] Extension pgcrypto already exists for gvmd database
[i] Extension pg-gvm already exists for gvmd database
[>] Migrating database
[>] Checking for GVM admin user
[*] Configure Feed Import Owner
[>] Updating GVM feeds
[*] Updating NVT (Network Vulnerability Tests feed from Greenbone Security Feed/Community Feed)


===== gvm-start =====
[[Kategorie:Greenbone]]
# '''gvm-start --help'''
[i] GVM services are already running


===== gvm-stop =====
</noinclude>
# '''gvm-stop -h'''
[>] Stopping GVM services
* gsad.service - Greenbone Security Assistant daemon (gsad)
      Loaded: loaded (/lib/systemd/system/gsad.service; disabled; preset: disabled)
      Active: inactive (dead)
        Docs: man:gsad(8)
              <nowiki>https://www.greenbone.net</nowiki>
* gvmd.service - Greenbone Vulnerability Manager daemon (gvmd)
      Loaded: loaded (/lib/systemd/system/gvmd.service; disabled; preset: disabled)
      Active: inactive (dead)
        Docs: man:gvmd(8)
Nov 24 04:58:38 kali systemd[1]: Starting Greenbone Vulnerability Manager daemon (gvmd)...
Nov 24 04:58:38 kali systemd[1]: gvmd.service: Can't open PID file /run/gvmd/gvmd.pid (yet?) after start: Operation not permitted
Nov 24 04:58:38 kali systemd[1]: Started Greenbone Vulnerability Manager daemon (gvmd).
Nov 24 04:58:42 kali systemd[1]: Stopping Greenbone Vulnerability Manager daemon (gvmd)...
Nov 24 04:58:42 kali systemd[1]: gvmd.service: Deactivated successfully.
Nov 24 04:58:42 kali systemd[1]: Stopped Greenbone Vulnerability Manager daemon (gvmd).
* ospd-openvas.service - OSPd Wrapper for the OpenVAS Scanner (ospd-openvas)
      Loaded: loaded (/lib/systemd/system/ospd-openvas.service; disabled; preset: disabled)
      Active: inactive (dead)
        Docs: man:ospd-openvas(8)
              man:openvas(8)
Nov 24 04:58:37 kali systemd[1]: Starting OSPd Wrapper for the OpenVAS Scanner (ospd-openvas)...
Nov 24 04:58:38 kali systemd[1]: Started OSPd Wrapper for the OpenVAS Scanner (ospd-openvas).
Nov 24 04:58:42 kali systemd[1]: Stopping OSPd Wrapper for the OpenVAS Scanner (ospd-openvas)...
Nov 24 04:58:43 kali systemd[1]: ospd-openvas.service: Deactivated successfully.
Nov 24 04:58:43 kali systemd[1]: Stopped OSPd Wrapper for the OpenVAS Scanner (ospd-openvas).
* notus-scanner.service - Notus Scanner
      Loaded: loaded (/lib/systemd/system/notus-scanner.service; disabled; preset: disabled)
      Active: inactive (dead)
        Docs: <nowiki>https://github.com/greenbone/notus-scanner</nowiki>
Nov 24 04:58:38 kali notus-scanner[439849]:    raise AdvisoriesLoadingError(
Nov 24 04:58:38 kali notus-scanner[439849]: notus.scanner.errors.AdvisoriesLoadingError: Can't load advisories. /var/lib/notus/products is not a directory.
Nov 24 04:58:38 kali notus-scanner[439849]: Exception ignored in atexit callback: <function exit_cleanup at 0x7ffff5349870>
Nov 24 04:58:38 kali notus-scanner[439849]: Traceback (most recent call last):
Nov 24 04:58:38 kali notus-scanner[439849]:  File "/usr/lib/python3/dist-packages/notus/scanner/utils.py", line 112, in exit_cleanup
Nov 24 04:58:38 kali notus-scanner[439849]:    sys.exit()
Nov 24 04:58:38 kali notus-scanner[439849]: SystemExit:
Nov 24 04:58:38 kali systemd[1]: notus-scanner.service: Can't open PID file /run/notus-scanner/notus-scanner.pid (yet?) after start: Operation not permitted
Nov 24 04:58:42 kali systemd[1]: notus-scanner.service: Deactivated successfully.
Nov 24 04:58:42 kali systemd[1]: Stopped Notus Scanner.

Aktuelle Version vom 9. November 2025, 21:34 Uhr

Greenbone/Installation - Greenbone Community Edition auf Kali Linux installieren

Beschreibung

Kali Linux aktualisieren

sudo apt update

Installation

sudo apt install gvm

gvm-setup

sudo gvm-setup

Passwort notieren!

Installation prüfen

sudo gvm-check-setup

Anmeldung

Anmeldung an der grafischen Oberfläche

Im Webbrowser: https://127.0.0.1:9392

Feed-Status prüfen

  • Vor dem ersten Scanvorgang

Externer Zugriff

sudo systemctl edit --full greenbone-security-assistant.service
- ExecStart=/usr/sbin/gsad --foreground --listen 127.0.0.1 --port 9293
+ ExecStart=/usr/sbin/gsad --foreground --listen 0.0.0.0 --port 443

Laden Sie die Daemons neu, da Sie Dateien geändert haben, und starten Sie die Dienste neu

sudo systemctl daemon-reload
sudo systemctl restart gsad.service gvmd.service ospd-openvas.service

Überprüfen Sie, dass alle Dienste auf dem gewünschten Host lauschen

ss -nalt

Wenn der Neustart der Dienste nicht funktioniert hat, versuchen Sie, den Server selbst neu zu starten.


Anhang

Siehe auch


Dokumentation

Links

Projekt

Weblinks

  1. https://greenbone.github.io/docs/latest/22.4/kali/index.html