Tenable Nessus Troubleshooting
- Verify that the Tenable Nessus scanner Status is Unable to Connect.
- SSH to the remote Tenable Nessus host to make sure the underlying operating system is operational.
- Confirm that the Tenable Nessus daemon is running (Linux example below):
# service nessusd status nessusd (pid 3853) is running.
# service nessusd start Starting Nessus services: # ps -ef | grep nessusd root 8201 8200 60 11:41 pts/2 00:00:05 nessusd –q root 8206 7842 0 11:41 pts/2 00:00:00 grep nessusd #
Cannot add a Tenable Nessus server
- Make sure the Tenable Nessus daemon was registered using the Tenable Security Center option for registration.
- Check connectivity from Tenable Security Center to the port the Tenable Nessus system is running on (e.g., 8834). For example, run:
curl -k https://:
Tenable Nessus scans fail to complete
- Ensure that the Tenable Nessus service is running on the Tenable Nessus host.
- Ensure that Tenable Nessus scanner is listed in Tenable Security Center under Resources >Nessus Scanners and that the status of the Tenable Nessus scanner is listed as Working. For more information, see Tenable Nessus Scanner Statuses.
- Click Edit to ensure that the IP address or hostname, port, username, password, and selected repositories for the Tenable Nessus scanner are all correct.
- Edit any incorrect entries to their correct state.
- Click Submit to attempt to reinitialize the Tenable Nessus scanning interface.
- Right click the scan results and click Scan Details to obtain a more detailed description of the error. If the scan details indicate a Blocking error, this is indicative of a license IP address count that has reached the limit. Either remove a repository to free up IP addresses or obtain a license for more IP addresses.
- Ensure that scan targets are permitted within the configured scan zones.
- Ensure the Tenable Nessus scanner is running a supported Tenable Nessus version. For minimum Tenable Nessus scanner version requirements, see the Tenable Security Center Release Notes for your version.
Tenable Nessus plugins fail to update
- Click System > Configuration. The Configuration page appears.
- Click License and ensure that the Tenable Nessus Activation Code is marked as Valid.
- Ensure the Tenable Nessus scanner is running a supported Tenable Nessus version. For minimum Tenable Nessus scanner version requirements, see the Tenable Security Center Release Notes for your version.
- Ensure that the user used to connect to the Tenable Nessus server is a Tenable Nessus administrator.
- Ensure that the Tenable Security Center system is allowed outbound HTTPS connectivity to the Tenable Nessus Plugin Update Site.
- Under System, Configuration, and Update in Tenable Security Center , ensure that Active Plugins is not set to Never.
- Manually test a plugin update under Plugins with Update Plugins. If successful, the line Active Plugins Last Updated updates to the current date and time.
- For all other Tenable Nessus plugin update issues, contact Tenable Support .
Copyright © 2024 Tenable, Inc. All rights reserved. Tenable, Tenable Nessus , Tenable Lumin , Assure, and the Tenable logo are registered trademarks of Tenable, Inc. or its affiliates. All other products or services are trademarks of their respective owners.