Frequently Asked Questions - Greenbone (2024)

Click on the plus sign to read the answers.

Who is Greenbone?

Greenbone was founded in 2008 by leading experts in the fields of network security and Free Software. Our goal is to develop products and concepts that help you to avoid attacks on your network infrastructure.

How? By detecting vulnerabilities faster than the attackers. We attach particular importance to a transparent White Box. Our turnkey solution is suitable for small and medium-sized companies as well as for operation in a critical Fortune-500 IT environment.

What is our approach?

We rely on a holistic approach. Our goal is to minimize and manage risks resulting from vulnerabilities in systems. Greenbone is the first provider to offer a 100 % Open Source vulnerability management solution. With this White Box solution you can avoid risks resulting from the use of a proprietary vulnerability analysis system in critical IT infrastructures.

Greenbone is engaged in the global and multi-cultural open-source communities in a cooperative manner. We act according to the concept of take and give and joint development processes in Free Software.

How do our products work?

Our technology is available in two different versions: the Greenbone Enterprise Appliances and the Greenbone Cloud Service. These are turnkey solutions for vulnerability scanning.

The Greenbone Enterprise Appliances are available as hardware or in virtual form. They consist of the Greenbone Operating System (GOS), a scan service, the web interface and, in the case of the hardware appliances, a special hardware.

The Greenbone Cloud Service is a SaaS solution, where scan requests are forwarded to the Greenbone Scan Cluster via the cloud.

Both the Greenbone Enterprise Appliances and the Greenbone Cloud Service use the Greenbone Enterprise Feed – our base technology. It is a collection of vulnerability tests (VTs) to detect known and potential security vulnerabilities in all active elements of your IT infrastructure: desktop PCs, servers, appliances, and intelligent components such as routers or VoIP devices.

Are there alternative solutions?

Unlike other security solutions, vulnerability management allows you to view your IT infrastructure from the outside – from the perspective of a potential attacker. The aim is to find any existing vulnerabilities in your IT infrastructure. And that’s not all: our solution shows ways and processes to eliminate them. There is no other solution that can take over these functions completely.

How to buy our products?

Here you can reach the contact form for product requests.

What are the differences between the Greenbone Enterprise Feed and the Greenbone Community Feed?

Central differences between the paid subscription of the Greenbone Enterprise Feed and the free Greenbone Community Feed can be found here.

What are the differences between the Greenbone Enterprise Appliance and an own Greenbone Community Edition installation?

The central differences between the Greenbone Enterprise Appliance (in combination with the Greenbone Enterprise Feed) and a self-configured Greenbone Community Edition installation can be found here.

Is there a way to test the vulnerability scanning?

The Greenbone Enterprise TRIAL and the Greenbone Cloud Service TRIAL serve as a fast and free trial version of our solutions.

Are the Greenbone solutions in conflict with German law known as "Hacker-Paragraph" 202c StGB?

The short answer is: No.

For a detailed answer referencing German law, please see the German version of this FAQ entry.

Is the usage of a Greenbone Security Manager compatible with the GDPR?

Our system only scans the environment defined by the operator of the physical or virtual appliance for possible vulnerabilities. The customer defines the target and thus the infrastructure to be scanned. Only company networks and no personal data (detailed definition in our privacy policy) are checked. The resulting data remains exclusively with the operator of the appliance. No data is passed on to the manufacturer or any third party.

In addition, the environment defined by the operator can be checked for compliance guidelines using pre-configured scan configurations to ensure that all components integrated in the system meet the required specifications.

What is the difference between Vulnerability Management, Vulnerability Assessment, penetration testing or IDS/IPS or firewall solutions?

A crucial difference to antivirus systems, IDS/IPS installations and firewall solutions lies in the perspective.

The systems mentioned concentrate on the attack patterns – with the view from the inside out. In contrast, Vulnerability Management looks at the IT infrastructure from the outside to the inside – similar to the perspective of an attacker.

Penetration testing takes the same perspective. But here too, there is a significant difference: it is a concrete task to penetrate a corporate network and take control. Once this goal has been achieved, the penetration test ends and other vulnerabilities remain unnoticed. Vulnerability Management, on the other hand, is designed to find every single vulnerability.

While Vulnerability Assessment is a one-time inventory of the security situation of an IT infrastructure, Vulnerability Management improves the security level with a complete process.

Why does Vulnerability Management increase the level of security?

Vulnerability Management drastically reduces the attack surface of a company’s IT. Furthermore, Vulnerability Management allows other IT security solutions in use (IDS/IPS and firewall) to focus on the actual hot spots: the solutions receive information about the most critical vulnerabilities. This takes place within a process that prioritizes vulnerabilities based on accepted standards (SCAP) and company-specific factors and removes or mitigates them – in line with critical business processes. Ideally, this process is part of a comprehensive IT security framework.

How compatible is Vulnerability Management with IDS/IPS and other security solutions?

Vulnerability Management is an essential element of an IT security infrastructure and complements the other components.

IDS/IPS solutions – network-based, host-based or designed as Network Behaviour Analysis (NBA) – have to be set up and adjusted during setup and during ongoing operation. For an NBA it is necessary to establish a baseline (e.g., limits for port scans and login attempts, blacklists and whitelists of IP addresses and user names as well as settings for alarms).

By importing the results of vulnerability scans, you can significantly supplement and improve this tuning: the information can be used to focus the resources of an IDS/IPS and thus make better and faster decisions on the necessary action and alerting. False-positive messages are reduced.

Attacks on an IDS/IPS such as overloading the capacity or ‘blinding’ are so-called evasion techniques. Together with the difficulty of an IDS/IPS to detect slow, targeted attacks, they push these IT security solutions to their limits. Vulnerability Management offers the necessary complement, as it can significantly reduce the attack surface.

Frequently Asked Questions - Greenbone (2024)

FAQs

What can OpenVAS detect? ›

Vulnerability management scanners like OpenVAS identify and classify potential points of weakness in your infrastructure, quantify the possible risk, and recommend mitigations to remediate the problem. The goal is to prevent and minimize attacks by targeting identified exploits present within the networks.

What is the difference between OpenVAS and Greenbone? ›

The Greenbone Vulnerability Management (GVM) is a framework originally built as a community project named “OpenVAS” and is primarily developed and forwarded by Greenbone.

What is Greenbone used for? ›

Greenbone provides enterprise IT with a solution for vulnerability analysis that encompasses security change management and reporting.

What is Greenbone community feed? ›

Greenbone produces and maintains two feeds: the Greenbone Enterprise Feed and the Greenbone Community Feed. They deliver the tests for detecting existing vulnerabilities and information about their threat potential.

What is Greenbone vulnerability? ›

Greenbone Vulnerability Management (GVM) is a network security scanner with associated tools like a graphical user front-end. The core component is a server with a set of network vulnerability tests (NVTs) to detect security problems in remote systems and applications.

What vulnerabilities does OpenVAS scan for? ›

OpenVAS is a system vulnerability scanner that checks visible ports, services it can access for known exploits, and high level web threats (like cross-site script vulnerabilities and improper file access).

Is Greenbone open-source? ›

Greenbone creates the leading open-source vulnerability management solution, including the OpenVAS scanner, a security feed with more than 160.000 vulnerability tests, a vulnerability management application, and much more.

What operating systems does OpenVAS support? ›

The installation of the Greenbone Community Edition with OpenVAS is possible on almost every current Linux based computer. Greenbone provides comprehensive installation instructions for the Linux distributions Debian, Ubuntu, Fedora and CentOS. Users can also find further help in the Greenbone Community forum.

Is OpenVAS a reliable source? ›

The results varied between projects: OpenVAS provided some of the best results in terms of accuracy and coverage. Nmap plus Vulners provided a very false positive heavy result set that was difficult to parse or integrate with any other solution (commercial or open source).

What are the levels of vulnerability ranking in Greenbone? ›

Since version 3.0, there are five levels: “None” (0.0), “Low” (0.1 – 3.9), “Medium” (4.0 – 6.9), “High” (7.0 – 8.9) and “Critical” (9.0 – 10.0).

What is the default port of Greenbone? ›

if you are running it on a Linux machine, you can achieve it by managing incoming traffic to port 443 through Nginx proxy to default port 9392.

Is OpenVAS no longer free? ›

OpenVAS is one of the top vulnerability scanners out there and it's completely open-source, free of charge, and backed by a committed developer community. However, it's created with tech-savvy users in mind, so non-techies beware.

What is a vulnerability feed? ›

Kaspersky Vulnerability Data Feed accelerates security operations by providing data about security vulnerabilities and related cyber threat intelligence to reduce cyber risks and streamline investigation and response.

What does OpenVAS capabilities include? ›

This is a vulnerability scanner and capabilities include unauthenticated and authenticated testing, various high-level and low-level internet and industrial protocols, performance tuning for large-scale scans and a powerful internal programming language to implement any type of vulnerability test.

Is OpenVAS a good vulnerability scanner? ›

Nessus is best for companies that want more of an off-the-shelf vulnerability scanning solution, while the open source OpenVAS is best for organizations that want more customization and integrations.

What are the different types of scans in OpenVAS? ›

Full Scan for a full test of network, server and web application vulnerabilities. Web Server Scan a more focused test for web server and web application vulnerabilities (ports 80 and 443 only). WordPress Scan testing for known WordPress vulnerabilities and web server issues (ports 80 and 443 only).

What are the differences between Nessus and OpenVAS? ›

OpenVAS is an open-source tool, extending its virtues to the realm of affordability, as it comes with no price tag. For individuals and organizations operating under tight budgets, OpenVAS represents an enticing choice. Nessus, in contrast, offers both complimentary and commercial iterations.

Top Articles
Latest Posts
Article information

Author: Virgilio Hermann JD

Last Updated:

Views: 5965

Rating: 4 / 5 (41 voted)

Reviews: 88% of readers found this page helpful

Author information

Name: Virgilio Hermann JD

Birthday: 1997-12-21

Address: 6946 Schoen Cove, Sipesshire, MO 55944

Phone: +3763365785260

Job: Accounting Engineer

Hobby: Web surfing, Rafting, Dowsing, Stand-up comedy, Ghost hunting, Swimming, Amateur radio

Introduction: My name is Virgilio Hermann JD, I am a fine, gifted, beautiful, encouraging, kind, talented, zealous person who loves writing and wants to share my knowledge and understanding with you.