Why is Nmap Installed by Default in Proxmox?

thiagomespb

New Member
Nov 20, 2024
16
2
3
Guys, while discussing with some colleagues in a Proxmox group, we noticed that an Extended Detection and Response (XDR) security tool detected nmap installed on the system. Upon further investigation, I found that this package has been included by default since at least version 6.

Does anyone know the reason why nmap is pre-installed in Proxmox? Is it used for any specific internal functionality, or is it just a leftover dependency?
 

Attachments

  • Captura de tela 2025-02-19 114054.png
    Captura de tela 2025-02-19 114054.png
    13.7 KB · Views: 10
nmap is a very useful tool, and it makes sense to include it as default for pve or debian.

nmap COULD be used to leak data; if you have that level of sensitivity/policy adherence requirement, you can just remove it; Alternatively, remove the executable flag from it and then mark immutable; this will make sure no one can run it and not fault any dependent packages.
 
IMO, if data COULD be leaked , nmap COULD be grabbed and runned.
a paid or scissors can be used to kill. it doesnt mean you get rid of all your scissors.

yes, nmap can be run to leak data, but that doesnt mean that the LEAKED DATA is of any harm or consequence to you. This falls into the more "theoretical" category; to my knowledge neither anything I run nor any of my customers ever had a concern for this.
 
  • Like
Reactions: fba