1
0
-1

I'm using Open-Audit for my project on university, and when I try to discovery subnet (before I run discovery i read configuration set up on opet-audit official website, and set credentials), it doesn't work. All i get is unknown device and OS types. What I can do? I run it on Windows OS.  Sorry for bad English.

Best regrats 

    CommentAdd your comment...

    4 answers

    1.  
      1
      0
      -1

      Hi Mark,

      For troubleshooting, how to set the log_level to 7 (and set it back to 5 once done)? And it only identifies a particular distribution of OS i.e.,windows, linux,etc and not able to identify the OS name i.e windows 7,8,10, ubuntu 12.04,ubuntu 14.04,etc. Also when we monitor in NMIS8, we are not able to identify the CPU name in windows but we are able to identify for linux. Please help!

      1. Mark Unwin

        Please post a new question. To set logging go to menu -> Admin -> Config click the item and change it. Likely not identifying complete OS because you're only using SNMP. Please post a new question about NMIS.

      CommentAdd your comment...
    2.  
      1
      0
      -1

      The log has your answer. Your credentials are not working.

      LOG   - Testing SNMP credentials for 192.168.0.6
      LOG   - Credential set for SNMPv2 named Nikola1 not working on 192.168.0.6
      LOG   - Credential set for SNMPv1 named Nikola1 not working on 192.168.0.6
      LOG   - Credential set for SNMPv3 from named Nikola2 not working on 192.168.0.6
      LOG   - No working SNMP credentials found for 192.168.0.6
        CommentAdd your comment...
      1.  
        1
        0
        -1
        LOG   - Discovery submitted for 192.168.0.6
        DEBUG - Command Executed: %comspec% /c start /b cscript //nologo C:\xampplite\open-audit\other\discover_subnet.vbs subnet_range=192.168.0.6 url=http://192.168.0.5/open-audit/index.php/discovery/process_subnet submit_online=n echo_output=y create_file=n debugging=0 subnet_timestamp="2016-12-22 06:52:27" os_scan=n
        DEBUG - Return Value: 0
        DEBUG - Command Output:
        Array
        (
            [0] => <devices>
            [1] =>  <device>
            [2] =>      <subnet_range><![CDATA[192.168.0.6]]></subnet_range>
            [3] =>      <ip><![CDATA[192.168.0.6]]></ip>
            [4] =>      <mac_address><![CDATA[]]></mac_address>
            [5] =>      <manufacturer><![CDATA[]]></manufacturer>
            [6] =>      <description></description>
            [7] =>      <org_id><![CDATA[]]></org_id>
            [8] =>      <snmp_status><![CDATA[true]]></snmp_status>
            [9] =>      <ssh_status><![CDATA[false]]></ssh_status>
            [10] =>      <wmi_status><![CDATA[false]]></wmi_status>
            [11] =>      <subnet_timestamp><![CDATA[2016-12-22 06:52:27]]></subnet_timestamp>
            [12] =>      <nmap_ports><![CDATA[161/udp/snmp]]></nmap_ports>
            [13] =>  </device>
            [14] =>  <device>
            [15] =>      <subnet_range><![CDATA[192.168.0.6]]></subnet_range>
            [16] =>      <subnet_timestamp><![CDATA[2016-12-22 06:52:27]]></subnet_timestamp>
            [17] =>      <complete>y</complete>
            [18] =>  </device>
            [19] => </devices>
        )
        DEBUG - Starting process_subnet.
        ***********************************************************************************
        * NOTE - THIS PAGE WILL CONTINUOUSLY RENDER UNTIL THE DISCOVERY HAS FINISHED      *
        * WATCH YOUR BROSWER TO SEE WHEN THE PAGE FINISHES RENDERING                      *
        * DO NOT REFRESH THIS PAGE OR ATTEMPT TO GO 'back' UNTIL THE PAGE HAS COMPLETED   *
        ***********************************************************************************
        DEBUG - Back to input page
        DEBUG - Front Page
        LOG   - Start processing 192.168.0.6
        LOG   - Start DNS checking for 192.168.0.6
        LOG   - No FQDN set for 192.168.0.6
        LOG   - Using gethostbyaddr because no hostname set but IP is set for 192.168.0.6
        LOG   - Finish DNS checking for 192.168.0.6
        LOG   - WMI Status is false on 192.168.0.6
        LOG   - SNMP Status is true on 192.168.0.6
        LOG   - SSH Status is false on 192.168.0.6
        LOG   - Testing SNMP credentials for 192.168.0.6
        LOG   - Credential set for SNMPv2 named Nikola1 not working on 192.168.0.6
        LOG   - Credential set for SNMPv1 named Nikola1 not working on 192.168.0.6
        LOG   - Credential set for SNMPv3 from named Nikola2 not working on 192.168.0.6
        LOG   - No working SNMP credentials found for 192.168.0.6
        LOG   - Start DNS checking for 192.168.0.6
        LOG   - FQDN does not contain a . so removing 
        LOG   - Using gethostbyaddr because no hostname set but IP is set for 192.168.0.6
        LOG   - Finish DNS checking for 192.168.0.6
        LOG   - System ID not found.
        =======DETAILS======
        DEBUG - subnet_range: 192.168.0.6
        DEBUG - ip: 192.168.0.6
        DEBUG - mac_address: 
        DEBUG - manufacturer: 
        DEBUG - description: 
        DEBUG - org_id: 0
        DEBUG - snmp_status: true
        DEBUG - ssh_status: false
        DEBUG - wmi_status: false
        DEBUG - subnet_timestamp: 2016-12-22 06:52:27
        DEBUG - nmap_ports: 161/udp/snmp
        DEBUG - last_seen: 2016-12-22 06:53:59
        DEBUG - last_user: 
        DEBUG - last_seen_by: nmap
        DEBUG - domain: 
        DEBUG - audits_ip: ::1
        DEBUG - hostname: 
        DEBUG - fqdn: 
        DEBUG - id: 
        DEBUG - last_seen_user: 
        DEBUG - limit: 1000000
        DEBUG - count: 0
        DEBUG - use_https: 
        DEBUG - location_id: 0
        DEBUG - show_output: 1
        ====================
        LOG   - NMAP insert for 192.168.0.6
        LOG   - System insert start for 192.168.0.6 ()
        LOG   - System insert end for 192.168.0.6 () (System ID 16)
        DEBUG - System ID 16
        LOG   - Processing component (nmap) start for 192.168.0.6 ()
        LOG   - Processing component (nmap) end for 192.168.0.6 ()
        DEBUG - ----------------------------------------------------
        stdClass Object
        (
            [subnet_range] => SimpleXMLElement Object
                (
                )
        
            [subnet_timestamp] => SimpleXMLElement Object
                (
                )
        
            [complete] => y
        )
        LOG   - Deleting credential set for 192.168.0.6 submitted on 2016-12-22 06:52:27
          CommentAdd your comment...
        1.  
          1
          0
          -1

          For troubleshooting, make sure you set the log_level to 7 (and set it back to 5 when you've finished troubleshooting).

          Then you can try running a Discovery and selecting the "debug" checkbox.

          Run the discovery on a SINGLE ip address. Do NOT use a subnet or range.

          Wait until the webpage completes rendering and you should see output detailing what has happened. Post it here if you like.

            CommentAdd your comment...