Licensing overview

After you purchase AppScan® Source, entitled licenses are available at HCL FlexNet portal:
  • Log in to the portal with your HCL credentials.
  • See Downloads > List Downloads.

Note: For information about the HCL license portal, see What is the HCL License & Delivery Portal (FlexNet Portal).

License types

There are two types of licenses in AppScan® Source:

  • Floating licenses

    Floating licenses are installed onto a cloud license server or a local license server. Any machine on which AppScan® Source is used must have a network connection with server on which the floating license is installed. Each time a user opens AppScan® Source, a license is checked out; when AppScan® Source is closed, the license is checked back in.

  • Node-locked licenses

    A node-locked license is a single license that is assigned to a single machine.

AppScan® Source requires a separate license key for each of the four AppScan® Source products. The licenses are either node-locked or floating. To use most of the AppScan® Source products, you also need a license for installing the AppScan Enterprise Server.

The following licenses are available for AppScan Source:
  • AppScan® Source for Analysis
    AppScan® Source for Analysis is a standalone application for viewing assessments, running scans, and generating reports. It requires a license feature named AppScanSourceSecfor floating licenses and AppScanSourceSecAuthfor the node-locked license:
    • Floating License: HCL AppScan Source for Analysis Floating User.
    • Node-locked License: HCL AppScan Source for Analysis Authorized User.
  • AppScan® Source for Remediation
    AppScan® Source for Remediation is a plug-in for the Eclipse, Rational Application Developer for WebSphere Software (RAD), and Visual Studio development environments. It allows you to open and view assessment files. It requires a license feature named AppScanSourceRemfor floating license and AppScanSourceRemAuthfor the node-locked license:
    • Floating License: HCL AppScan Source for Remediation Floating User.
    • Node-locked License: HCL AppScan Source for Remediation Authorized User.
  • AppScan® Source for Development
    AppScan® Source for Development is a plug-in for scanning capability in Eclipse, RAD and Visual Studio development environments. It allows you to scan source code for security vulnerabilities. However, this component also requires remediation license to open, view and modify assessments. If you order the AppScan® Enterprisecomponent, you will receive a set of both licenses. It requires a license feature named AppScanSourceDev for floating license and AppScanSourceDevAuthfor the node-locked license.
    • Floating License: HCL AppsScan Source for Developer Floating User.
    • Node-locked License: HCL AppScan Source for Developer Authorized User.
  • AppScan® Source for Automation
    AppScan® Source for Automation is a server installation that is targeted for build environments. The license key is called AppScanSourceAuto for floating license and AppScanSourceAutoAuthfor the node-locked license. There are two tools that require an automation license:
    1. The command line tool, AppScanSrcCli, can be run manually from a shell or called by a script.
    2. The ounceauto service or daemon, which is used for automating scans (often with various build tools such as Build Forge, Jenkins, and Apache Maven).
    • Floating License: HCL AppScan Source for Automation Floating User.
    • Node-locked License: HCL AppScan Source for Automation Single Install.

AppScan® Enterprise Server

In addition, to be able to use most features in AppScan® Sourcee, you need to install the User Administration part of AppScan® Enterprise. AppScan® Enterprise user administration is needed to authenticate users of AppScan® Source applications, and it requires an AppScanServerPremium or AppScanServerBasic license. If you do not use the AppScan® Enterprise server for this product, you cannot access shared items such as filters, scan configurations, and custom rules.

These AppScan® Enterprise licenses are described in Licensing for AppScan Enterprise.