Frequently Asked Questions


Please refer to http://www.securecentral.com/products/scanfi/faq.html for the latest FAQs .

What is ScanFi ?

ScanFi is an automated vulnerability assessment and reporting software for detecting and assessing network vulnerabilities across heterogeneous networks comprising servers, workstations, laptops, routers, switches and other network entities.

What are the components of ScanFi ?

ScanFi consists of the following three primary components

What type of systems and services does ScanFi scan ?

  • Web Servers
  • Database Servers
  • Application Servers
  • RPC Services
  • CGI Scripts
  • FTP
  • DNS
  • POP3
  • SNMP

 

  • SMTP
  • IMAP
  • SSH
  • SSL
  • Proxy Servers
  • UDP
  • TCP/IP
  • Registry

 

  • User Accounts
  • Dos Vulnerabilities
  • SQL Injection vulnerabilities
  • Trojans and Viruses
  • Switches
  • Routers
  • Windows
  • Linux
  • VPNs
  • and many more...

How does the ScanFi Server installed in the enterprise, be in sync with the latest vulnerability and patch information ?

The ScanFi Server will periodically download the the latest vulnerability and patch information published in the Central Repository Server hosted in the AdventNet site, and use the information as a baseline for its vulnerability assessment operations.

Is ScanFi a Patch Management software ?

No, ScanFi is NOT a patch management software. But it does help you in identifying the missing patches for Windows operating systems. Supported Windows operating systems are : Windows 2003 Server, XP Professional, 2000 Server and Professional, NT Workstation and Server and applications are : IIS, IE, SQL Server, MDAC, Media Player, .NET Framework, MSXML, DirectX and MS Office.

How many different types of vulnerabilities do you detect ?

ScanFi 4 currently performs scans for more than 1500 vulnerabilities and missing patches, and this number keeps growing as and when we update our Central Repository Server with the latest vulnerability signatures.

What impact will ScanFi have on my network?

ScanFi is designed to minimize both the scan time as well as the network bandwidth it uses. Thus, its impact on network traffic load is minimal.

Should the machine in which ScanFi is installed have a Internet connection ?

Yes. The ScanFi server machine must have access to the Internet for it to download the latest vulnerability signatures from the Central Repository Server hosted in the AdventNet site.

Is ScanFi host-based or network-based ?

ScanFi is a network-based vulnerability assessment and reporting software that scans for vulnerabilities on all networked resources, including servers, network devices (e.g. routers, switches, etc.), and workstations. ScanFi can assess any device that has an IP address.

How to create and use a Custom Security Certificate in ScanFi ?

ScanFi, by default,  comes with its own  AdventNet Security Certificate. If you wants to create and use your own Certificate, the following are the steps to do.

The following are the Steps for creating a Certificate using the 'keytool', a program that is available in JDK.

  1. Step 1

    Type the following command:

    keytool -genkey -alias tomcat -keyalg RSA -dname 'CN=<domain name>, OU=<Organizational Unit>, O=<Organization>, L=<City Name>, S=<State Name>, C=<Country>' -validity <number of days> -keypass <keypassword> -storepass <storepassword> -keystore server.keystore

    E.g.,
    keytool -genkey -alias tomcat -keyalg RSA -dname 'CN=demo.scanfi.com, OU=AdventNet Inc., O=AdventNet Inc., L=Pleasanton, S=CA, C=USA' -validity 365 -keypass demo -storepass demo -keystore server.keystore

  2. Step 2

    Copy the 'server.keystore' file to <ScanFI_Home>/server/default/conf

  3. Step 3

    Edit the file <ScanFI_Home>/server/default/jbossweb-tomcat50.sar/server.xml and change the keystorePass value to the one created above. For the above example, keystorePass="demo"

  4. Step 4

    Restart the ScanFi Server.

What is the Licensing Policy for ScanFi ?

We provide a Professional Edition download that becomes a limited free edition after 30 days of evaluation, unless a registered license key is purchased. This registered license key is valid for a year from the date of purchase (Annual Subscription) beyond which it becomes a limited free edition.

The limited Free Edition has all the functionality's provided by the professional edition except that the number of scans is limited to any 5 IPs (only) of the users choice , and is not supported by AdventNet.

Do you provide ScanFi as a Windows executable (EXE file) download ?

We provide ScanFi as a zip file for both Windows and Linux. But if you are very particular about Windows executable download for ScanFi, then please contact support@scanfi.com .


Copyright © 2005, AdventNet Inc. All Rights Reserved.