To test a Secure Shell (SSH) server with beSTORM, do the following:
- Install the beSTORM Client on a computer that is not in use or on a network and assign an IP address to it. This will create the beSTORM server.
- Set up an SSH server on another computer that is also not in use or on a network and assign an IP address to it. If your SSH server is Windows-based, do the following:
- Install and open beSTORM Monitor.
- On the Processes tab, select SSH.
- In the Host box, enter the IP address of the beSTORM server, and then select Attach.
- Connect the beSTORM server computer directly to the SSH server computer with a network cable. Do not include a switch between the two computers.
- Open beSTORM Client on the beSTORM server.
- Select New Project to open the beSTORM New Project Wizard.
- On the Welcome page, enter a name for the project in the Project Name box. Leave all other parameters to their default setting.
- Select Next.
- On the Basic Configuration page, select SSH from the beSTORM's predefined modules list.
- In the Hostname or IP address box, enter the IP address of the SSH Server.
- In the Remote Port box, enter 22.
- Select Next.
- On the Module Environment page, enter the correct SSH credentials for checks beyond the SSH sign in, in the Username and Password value boxes.
- Select Next.
- If the SSH server is not accessible, on the Extra Configuration page, select ICMP Echo and TCP Echo. Leave all other parameters to their default setting.
- Select Next.
- On the Complete beSTORM wizard page, select Finish to begin testing, or clear the Auto-start beSTORM scan now checkbox to run the test later.
- Once your test begins, if an exception occurs (that is, an attack was successful), a message will appear in an Exception Information dialog informing you that the remote server is not responding. This indicates a possible vulnerability. Testing will resume after five seconds unless you select Pause Test.
- When testing is complete, select Report to view a short report of your test.
- Alternatively, you can select Report > Generate Report from the beSTORM Client to generate a more comprehensive report of your test.