Does anyone know of a good way to get the certificate information from Nessus? We we log in to Nessus and we can see the certificate information like expiry and common name. We would like to get this information into Splunk, but with the API connection, this information does not seem to show up. We have also tried the Splunk App for Stream and while it brings all the information in around the certificate, it does not include the IP addresses of the scanned systems, so we can't correlate the information.
Thank you,
Kent
Hi Kent
The Splunk add-on for Nessus now only supports to get plug-in and scan data. You can't get certification information using this add-on.
See http://docs.splunk.com/Documentation/AddOns/released/Nessus/Description
Do you want the Nessus SSL info used for Nessus authentication? Or the SSL certificate that's used on the Nessus API or web front end etc?