Search found 23 matches

by Nuggel1234
Thu Oct 10, 2024 11:07 am
Forum: Nagios XI
Topic: PHP Unsupported / Apache2.4 Vuln.
Replies: 3
Views: 2024

PHP Unsupported / Apache2.4 Vuln.

Hello, we have Nagios XI (Nagios XI 2024R1.2.1) on Cent OS 9 (appliance from nagios). Our cybersecurity guys scanned the vm and detected the following vulnerabilities: Apache 2.4.x < 2.4.62 Multiple Vulnerabilities OpenSSL 3.2.0 < 3.2.3 Vulnerability PHP Unsupported Version Detection we installed th...
by Nuggel1234
Tue May 28, 2024 1:31 am
Forum: Nagios XI
Topic: Nagios 2024R1.1.2 - unsupported PHP
Replies: 1
Views: 827

Nagios 2024R1.1.2 - unsupported PHP

Hello,

our company security scanner detected a unsupported / outdated php version on our Nagios XI 2024R1.1.2 Installation. I'm not familiar with Linux / PHP. Can somebody help me removing this old version or update it to the latest?

(if this is possible)

THANKS
by Nuggel1234
Tue Apr 02, 2024 12:11 am
Forum: Nagios XI
Topic: vSphere Plugin (BETA) - required software components missin
Replies: 3
Views: 1317

vSphere Plugin (BETA) - required software components missin

Hi,

I wanted to try the new vsphere plugin and executed the commands in the documentation:

python3 -m pip install --upgrade pip
python3 -m pip install --upgrade setuptools wheel
python3 -m pip install --upgrade pyvmomi

I get:

-bash: pyhton3: command not found

Any ideas?
by Nuggel1234
Thu Feb 10, 2022 2:46 am
Forum: Nagios XI
Topic: Report: Availability - csv
Replies: 3
Views: 930

Re: Report: Availability - csv

No need to apologize, maybe I explained it wrong. First question / painpoint: Wenn we schedule a report, we get a csv with the follwing name 164478843-availibility_report.csv Where does that nameing come from and is it possible to customize it? for example use of the actual date, instead of a (from ...
by Nuggel1234
Mon Feb 07, 2022 4:42 am
Forum: Nagios XI
Topic: Report: Availability - csv
Replies: 3
Views: 930

Report: Availability - csv

Hello, is there a possibilty to change the name of the availability csv export to a "timestamp" oder something like that? Or maybe to let a file growth? For example: I want a avail. report for the whole year. Can I get a csv with data from january and february and so on, instead of the act...
by Nuggel1234
Thu Dec 02, 2021 12:55 am
Forum: Nagios XI
Topic: Nagios: Listable directories
Replies: 1
Views: 807

Nagios: Listable directories

Hello, we get scanned by our security team. The following was found on our Nagios XI 5.8 Server: Severity: Low Vulnerability ID: q086445 Details: Listable Directories /icons/ Port: 443/tcp Generic Vulnerability Description: The Web server has some listable directories. Very sensitive information can...
by Nuggel1234
Wed Nov 17, 2021 1:09 am
Forum: Nagios XI
Topic: Nagios Update - Timeout trying other mirror
Replies: 3
Views: 605

Re: Nagios Update - Timeout trying other mirror

This did the trick... THANK YOU! :)
by Nuggel1234
Fri Nov 12, 2021 4:46 am
Forum: Nagios XI
Topic: Nagios Update - Timeout trying other mirror
Replies: 3
Views: 605

Nagios Update - Timeout trying other mirror

Hi, I use the manual update in the terminal / ssh session, because the web always hangs up. The last update was to 5.8.7 and this worked fine. We use a Proxy and the ip from nagios is allowed for internet connections. Now my Update fails with "Timeout / Trying other mirror" This command wa...
by Nuggel1234
Mon Sep 14, 2020 2:19 am
Forum: Nagios XI
Topic: Nagios is using deprecated SSH cryptographic settings
Replies: 3
Views: 960

Re: Nagios is using deprecated SSH cryptographic settings

ok thank you :) problem solved
by Nuggel1234
Fri Sep 11, 2020 6:29 am
Forum: Nagios XI
Topic: Nagios is using deprecated SSH cryptographic settings
Replies: 3
Views: 960

Nagios is using deprecated SSH cryptographic settings

Hello, we have a vulnerability: Vulnerability ID: q038739 The SSH protocol (Secure Shell) is a method for secure remote login from one computer to another. The target is using deprecated SSH cryptographic settings to communicate. Consequences: A man-in-the-middle attacker may be able to exploit this...