Scanning a site that includes a SOAP web service as part of the site

Use this procedure if your site includes both a web Service and other pages that require scanning.

About this task

If your site contains both web services and other pages that need to be scanned, you must explore the web services manually using GSC, but can then let AppScan® explore the rest of the site automatically, and then test the whole site. In this case you need to provide AppScan both with the URL of the web service WSDL file, and a starting URL for exploring the site.

Procedure

  1. Click Scan > Scan Configuration > URL and Servers, and in the Starting URL field, type in the URL of the WSDL file for the web service.
  2. In the Additional Servers and Domains area, click the plus button and type in the starting URL for scanning the application.
  3. Click Explore web Services.

    GSC opens.

  4. Send requests to the service and then close GSC.
  5. Click Scan > Full Scan.

    AppScan explores the application, and then tests the whole site and presents the results.

    See also:

    Results: Security Issues