GREENBONE OPENVAS ENTERPRISE'S NEW PRICE LIST IS IN EFFECT FROM MARCH 1ST: WHAT DOES PER ASSET LICENSING CHANGE AND WHY OPENVAS ENTERPRISE WINS WITH COMMUNITY IN REAL USE
New Greenbone pricing from March 1, 2026: simpler licensing and richer OpenVAS Enterprise versions
Effective March 1, 2026, Greenbone is implementing a new asset-based licensing model. This is a significant change for companies seeking process-based vulnerability management with predictable costs and easy scalability. In this article, we explain exactly what's changing, what the benefits are, and why OpenVAS Enterprise differs significantly from OpenVAS Community in everyday use.
FROM THIS ARTICLE YOU WILL LEARN
ToggleWhat changes from March 1, 2026?
The new licensing model ties the cost directly to what is actually scanned. The basis for billing is the number of assets scanned in a given period.
- Per-asset, per-year licensing – you pay for the number of systems you actually scan. It's worth noting that 90 days after the last scan, the "asset" is removed from the asset database and the license can be reused to scan another asset.
- The rate is degressive – as scale increases, the average cost per asset decreases.
- Virtual appliances can be scaled by architecture (VM resources), not by licensing constraints. Virtual appliances are free.
Why is this change beneficial to the organization?
In practice, the new pricing and per-asset approach simplify vulnerability management planning and implementation:
- Easier budgeting: Cost increases proportionally to the attack surface scanned, not the „device model.”.
- Faster purchasing decisions: licensing thresholds are clear and pricing starts with inventory counting.
- Better scalability over time: you can start with a PoC on a selected scope and then seamlessly expand the number of assets.
- Consistency with process: Vulnerability management is a cyclical activity, not a one-time project.
OpenVAS Enterprise: What do you get "in production"?
OpenVAS Enterprise is designed for continuous vulnerability management in organizations where test quality, operational stability, reporting, and vendor support are key.
- OPENVAS Enterprise Feed – a commercial feed of vulnerability tests and additional enterprise content.
- Daily feed updates and quick response to new vulnerabilities (zero-day).
- Extensive reporting and the ability to standardize reports for IT and the Management Board.
- Compliance features – useful for audits and requirements verification.
- Integrations and automation (e.g. via API) – easier inclusion of results in ticketing processes.
- Manufacturer support in the enterprise model (SLA within the existing packages).
OpenVAS Community vs OpenVAS Enterprise: What differences are immediately visible?
The Community edition can be a good starting point for familiarizing yourself with the tool, but in a corporate environment, the need to upgrade to the Enterprise edition usually arises quickly. Below, you can see the differences in vulnerability scans between the Community and Enterprise editions.
What are typical experiences with the OpenVAS Community?
- Limitations in coverage and "depth" of testing compared to Enterprise content.
- More manual work on the team side (maintenance, prioritization, report customization).
- Lack of manufacturer support and predictable problem escalation path.
What does the Enterprise version change?
The OpenVAS Enterprise version offers advanced functionalities to support administrators in system security and reporting.
- Broader and more up-to-date test content (Enterprise Feed) and better update predictability.
- Tracking changes in the IT system.
- „Production” features and elements: reporting, compliance, integrations, scaling and support.
- Easier transition from „scan” to process: detect → assess → prioritize → fix → verify.
Feature | OPENVAS COMMUNITY EDITION | OPENVAS SCAN |
Full vulnerability coverage | × | √ |
Compliance policies | × | √ |
REST API | × | √ |
Daily updates of the vulnerability database, tests, and report templates | × | √ |
Commercial support | × | √ |
Performance scaling | × | √ |
Backup & Disaster Recovery | × | √ |
SIEM/LDAP integrations | × | √ |
Firmware updates | × | √ |
Editing reports | Limited | Full |
Interface and ergonomics | Base GSA (Greenbone Security Assistant) | Extended GSA |
What is the difference between OPENVAS SCAN and OPENVAS SECURITY INTELLIGENCE?
The table below shows the functional differences between the Greenbone OpenVAS versions.
Category | Function | OPENVAS SCAN | OPENVAS SECURITY INTELLIGENCE (VIRTUAL) |
Scan | Enterprise Feed | √ | √ |
Advanced features | OPENVAS REPORT (includes VIEW) | × | √ |
OPENVAS CONTROL | × | √ | |
Connections | Sensors | √ | √ |
Containers (?/2026) | √ | √ | |
Agents (Q2/2026) | √ | √ | |
Support | Manufacturer's technical support | Working days in Germany | Working days in Germany |
Licensing cost | Per asset per year | Per asset per year | |
Virtual Appliance Cost | Free of charge | Free of charge | |
Cost of hardware appliance | Once | Once | |
Hardware support costs | Annually (order required) | Annually (order required) | |
What are the prices for OPENVAS SCAN and OPENVAS SECURITY INTELLIGENCE (annual license, EUR per net asset)?
Below we present the price thresholds for OPENVAS SCAN in the per asset per year model (manufacturer's price list, catalog values in EUR).
| OPENVAS | OPENVAS |
Annually in EUR | Annually in EUR | |
Up to 200 assets | 20,55 | 25,30 |
201 – 500 assets | 17,85 | 22,00 |
501 – 1,000 assets | 16,10 | 19,80 |
1,001–2,000 assets | 14,30 | 17,60 |
2,001 – 5,000 assets | 13,40 | 16,50 |
5,001 – 100,000 assets | 12,50 | 15,40 |
10,001 – 25,000 assets | 11,60 | 14,30 |
Over 25,000 assets | 9,90 | 11,50 |
How to calculate the cost (example 4,000 assets)?
For 4,000 assets, the price is calculated on a threshold basis (degressively) – some assets fall into subsequent thresholds, and the total cost is EUR 58,615 per year for OPENVAS SCAN.
Appliance | Quantity | Price per appliance (EUR) |
OPENVAS SCAN VIRTUAL | 4 | 0,00 |
Calculation for individual thresholds | Quantity | Price per asset (EUR) |
Up to 200 assets | 200 | 4 110,00 |
201 – 500 assets | 300 | 5 355,00 |
501 – 1,000 assets | 500 | 8 050.,00 |
1,001 – 2,000 assets | 1 000 | 14 300,00 |
2,001 – 5,000 assets | 2 000 | 26 800,00 |
TOTAL COST (EUR) | 58 615,00 |
When does it make sense to use hardware appliances and what are the list costs?
OPENVAS SCAN can be deployed as a virtual appliance or as a hardware appliance. Hardware makes sense when you want a dedicated platform, ease of maintenance, or pre-defined parameters for a specific environment.
Model | Equipment price (EUR) | RMA hardware package per year (EUR) |
OPENVAS SCAN G10 | 5 000,00 | 1 000,00 |
OPENVAS SCAN G30 | 20 000,00 | 4 000,00 |
OPENVAS SCAN G90 | 70 000,00 | 14 000,00 |
The RMA package is a hardware maintenance service (including device replacement in the event of a failure) and – according to the manufacturer’s rules – should be ordered immediately for the selected license period.
Migration: what about existing contracts?
The rules for switching to the new model are simple:
- Switching to the new model is mandatory from March 1, 2026 for new purchases.
- Existing contracts continue until the end under the current terms.
- Migration occurs at the end of the contract, when the subscription is extended, or when new features are launched.
- Paid subscriptions are billed pro rata (unused portion is credited).
Conversation, trial, PoC or how to get started with UpGreat?
The best results are achieved by quickly starting with a limited scope and then transitioning to a vulnerability management process. A typical, secure implementation scenario looks like this:
- Short online meeting (30–45 minutes): number of assets, network segments, requirements and expected reports.
- Trial or PoC: scanning of a selected area (e.g. 1-2 network segments) and verification of the quality of the results and priorities.
- Full implementation: cyclical scans, integrations, prioritization rules and reporting for IT and management.
If you would like to learn more and discuss how to choose the right license option and implementation architecture for your organization, please contact us – make an appointment, call us, write an email to the address biuro@upgreat.com.pl or fill out the form.After the conversation, we will prepare a Proof of Concept (PoC) proposal and a target implementation plan.
We invite!

Co-founder and CEO of UpGreat Computer Systems Sp. z o. o. The company has been supporting large and small enterprises from all over Poland in the field of information technology for 30 years. His main areas of interest are IT security, complex network solutions and group work systems. After hours, he savors the nuances of Stanisław Lem's prose.
