Nothing to see
-
@ted OK, this explains, the agent did not yet do an inspection. With the current schedule it will take 10 hours.
Btw. you may want to delete / modify the picture / comment, since it displays your IP. -
@Ted just set in the configuration the "Hour of day to run inspections" to closer time and the scan will start.
-
@ted I just noticed your comment about Tray Icon. That is not yet implement and will only be implemented, if we don't come up with a better concept.
-
@ted said in Nothing to see:
I'am using VPN and there is no System Tray Icon to see.
-
still nothing:
-
@tom OK, then we wait. Thanks.
-
@ted said in Nothing to see:
I'am using VPN and there is no System Tray Icon to see.
-
@ted It appears that it missed the Inspection window. Beware that the "Hour of day" may not correspond to your timezone. I have seen this in one other case. Adjust until you see "in an hour" for "Next Inspection".
This is something we are working actively with and will adjust so it is more user friendly. -
All safe, only QuickTime is Unknown.
-
@ted The rule production will being improved next week. Do not rely 100% on the current result.
However, your QuickTime is really EoL and ought to be uninstalled. -
@vulndetect I know and I don't rely on it for now. I have to uninstall QuickTime yet.
Thanks for reminding me.
-
I knew it had to do with Adobe, that's why I didn't uninstall it yet.
-
That is interesting.
What I would like to know is if QuickTime is associated with any extensions and if it is installed as a plugin in any browser.
If it isn't, then we need to find a way to exclude it from the scan result.
But if it is an independent application that is installed like in the old days, then we have to detect it and recommend that it is uninstalled.
It is a bit like Java, which often is bundled with other applications, but can't be activated via file associations and via browsers, in which case the attack vectors are limited or non-existent. -
Hi,
I have same issue.
I have an "access denied" to server (translation from french sentence) in the secteer.log
Any idea.
Regards;
[2018-05-19 21:04:40.011+0120] Waiting 6 minutes before retrying
[2018-05-19 21:10:40.014+0120] Connecting to server: carma.secteer.com
[2018-05-19 21:10:40.394+0120] Server returned 401 =>
[2018-05-19 21:10:40.397+0120] Server response body: Unauthorized
[2018-05-19 21:10:40.397+0120] Failed to check in with server: italicised textaccess denied* -
@gregalexandre Did you approve the agent in the "Configuration" at https://carma.secteer.com/personal-carma/#/configuration
I just ran my agent, and it got the expected response. Let me know and perhaps you can send me the full log tomorrow to tom [at] @vulndetect dot com -
@vulndetect Hi Tom,
To be honest with you, I don't know that for sure if it came in a bundle with CS6. I know if I uninstall QuickTime there are some errors using PS/LR.
There are a lot of file extensions using QuickTime associated with CS6. So, this isn't an option to uninstall. -
@ted It's fine, we'll try to sort it out, soon.
-
@vulndetect Hi Tom,
Thank you.
-
@Tom
I have this same issue. I reported it earlier, but I don't see my post anywhere.
Log shows same message every 3 minutes[2018-12-20 04:30:32.119-0360] Current configuration:
version:: 0.10.11.0
server : agent.vulndetect.com
guid1::
guid2::
guid3::
checkInInterval : 180 seconds
checkInRetryDelay : 60 seconds
maxCheckInRetryCount : 2
dataRetryDelay : 600 seconds
inspectionWindow : 21600 seconds
timezoneOffset : -360 minutes
serverTime : 2018-12-20 04:30:33 (UTC)
nextInspectionTime : 2018-12-20 13:10:00 (local time)
checkInNow:: false
noFilesystem : false
noRegistry : false
noWinUpdate : false
noSystem : false
noPackage:: true
[2018-12-20 04:30:32.119-0360] No tasks to perform. -
@KI108 It appears that only the admin user is notified about post awaiting approval. And we don't usually use the admin account - so we didn't see it. Sorry. I've changed some settings and hope that my "Moderator" user will see it.
But now I will "up vote" your posts, and if someone else also does that, then you can post without approval next time.