Tenable Network Security Podcast Episode 159 - "Auditing & Hardening Palo Alto Firewalls"
Announcements
- Video: Nessus Configuration & Compliance Auditing
- Tenable Network Security Receives 5-Star Rating from SC Magazine
- Americans Willing to Spend More to Thwart Cyber Attacks: Survey
- We're hiring! - Visit the Tenable website for more information about open positions.
- Check out our video channel on YouTube which contains new Nessus and SecurityCenter tutorials.
- Tenable Tweets - You can find us on Twitter at http://twitter.com/tenablesecurity where we make product and company announcements, provide Nessus plugin statistics, and more!
- Want to ask questions about Nessus, SecurityCenter, LCE, and PVS and get answers from the experts at Tenable? Join Tenable's Discussion Forum for custom scripts, announcements, and more!
- You can subscribe to the Tenable Network Security Podcast on iTunes!
New & Notable Plugins
Nessus
General
- PostgreSQL 8.3 < 8.3.23 / 8.4 < 8.4.16 / 9.0 < 9.0.12 / 9.1 < 9.1.8 / 9.2 < 9.2.3 Denial of Service
- Pidgin < 2.10.7 Multiple Vulnerabilities
- EMC Data Protection Advisor CXML Service Detection
- EMC Data Protection Advisor Web UI Detection
- EMC Data Protection Advisor Web UI Directory Traversal
- Asterisk Multiple Vulnerabilities (AST-2012-014 / AST-2012-015)
- Microsoft SQL Server Unsupported Version Detection
- Malicious Process Detection: Malware Signed By Stolen Bit9 Certificate
- Cisco Prime LAN Management Solution Web Detection
- Google Chrome < 25.0.1364.97 Multiple Vulnerabilities
- Terminal Services Use SSL/TLS
- Symantec Encryption Desktop Detection
- Symantec Encryption Desktop Local Access Elevation of Privilege Vulnerabilities
SCADA
Web Applications
Detecting APT1 Attacks
VMware
Mozilla
- Firefox ESR 17.x < 17.0.3 Multiple Vulnerabilities (Mac OS X)
- Firefox 18.x Multiple Vulnerabilities (Mac OS X)
- Thunderbird 17.x < 17.0.3 Multiple Vulnerabilities (Mac OS X)
- Thunderbird ESR 17.x < 17.0.3 Multiple Vulnerabilities (Mac OS X)
- Firefox ESR 17.x < 17.0.3 Multiple Vulnerabilities
- Firefox 18.x Multiple Vulnerabilities
- Mozilla Thunderbird 17.x < 17.0.3 Multiple Vulnerabilities
- Mozilla Thunderbird ESR 17.x < 17.0.3 Multiple Vulnerabilities
- SeaMonkey 2.15.x Multiple Vulnerabilities
Oracle
- Mac OS X : Java for Mac OS X 10.6 Update 13
- Mac OS X : Java for OS X 2013-001
- Oracle Application Express (Apex) Detection
- Oracle Application Express (Apex) Version Detection
- Oracle Application Express (Apex) Administration Interface is Accessible
- Oracle Application Express (Apex) CVE-2008-4005
- Oracle Application Express (Apex) CVE-2009-0981
- Oracle Application Express (Apex) CVE-2009-1993
- Oracle Application Express (Apex) CVE-2010-0892
- Oracle Application Express (Apex) CVE-2010-0076
- Oracle Application Express (Apex) CVE-2011-3525
- Oracle Application Express (Apex) CVE-2012-1708
- Oracle Application Express (Apex) Unspecified Issues (pre 2.2.1)
- Oracle Application Express (Apex) Unspecified Issues (pre 3.0.1)
- Oracle Application Express (Apex) Unspecified Issues (pre 3.1)
- Oracle Java SE Multiple Vulnerabilities (February 2013 CPU Update 1)
- Oracle Java SE Multiple Vulnerabilities (Feb 2012 CPU) (Unix)
- Oracle Java SE Multiple Vulnerabilities (June 2012 CPU) (Unix)
- Oracle Java SE Multiple Vulnerabilities (October 2012 CPU) (Unix)
- Oracle Java SE Multiple Vulnerabilities (February 2013 CPU) (Unix)
- Oracle Java SE Multiple Vulnerabilities (February 2013 CPU Update 1) (Unix)
Adobe
Passive Vulnerability Scanner
- Asterisk Peer Multiple Vulnerabilities (AST-2012-014 / AST-2012-015)
- mDNS Client Queries
- MAC change detection (SNMP)
- Mozilla Thunderbird 17.x < 17.0.3 Multiple Vulnerabilities
- Google Chrome < 25.0.1364.97 Multiple VulnerabilitiesSeaMonkey < 2.16 Multiple Vulnerabilities
- Mozilla Firefox 18.x <= 18 Multiple Vulnerabilities
- Siemens SIMATIC RF-MANAGER Detection (SCADA)
Feature Spotlight: Auditing & Hardening Palo Alto Firewalls
Tenable Nessus ProfessionalFeed customers can now audit the configuration of PAN-OS™-based Palo Alto Networks firewalls. Nessus can audit the firewall operational configurations and allow Palo Alto firewall reports to be embedded into Nessus reports. Mehul Revankar, Tenable's lead compliance auditing engineer, and Russell Butturini, Senior Enterprise Security Architect and Nessus and SecurityCenter customer, join us to talk about this new feature and the benefits.
Listen to the podcast to learn:
- What makes Palo Alto firewalls different (e.g., the kind of data they are collecting, the detection capabilities, etc.)?
- What types of audits you can perform against the firewall settings and logs?
- What advantages does this feature have when the firewalls are configured for load balancing?
- Why is it important to be able to query the data collected on threats, services, and anti-virus data?
- How does this new feature integrate into Nessus?
- What are some examples of interesting results and queries that can result from scanning Palo Alto firewalls?
Related Articles
- Podcast