System requirements and version support

System requirements and supported operating systems and languages for the ASoC analyzers. Also learn about the supported browsers and minimum resolution for the service.

AppScan on Cloud EU domain changes

The default domain for the AppScan on Cloud EU instance has changed to eu.cloud.appscan.com from cloud.appscan.com/eu. Until the end of August, the old domain will redirect to the new one. Update any bookmarks or embedded URLs in the documentation or webpages before this timeline.

Important update related to AppScan on Cloud IP ranges.

At the end of August, the IPs for both the AppScan on Cloud US-based service and the EU-based service will be changing. The service continues to be hosted in Microsoft Azure DataCenters in the US and Germany.

It is important that your organization updates your firewall rules prior to September to ensure the relevant IPs provided in the Allowlist section are not blocked.

Allowlist

ASoC uses the following IP ranges (inbound and outbound), on port 443. Make sure the relevant IPs are not blocked by your firewall.
  • North America data center: 4.152.146.92
  • Western Europe data center: 4.182.90.213
Important: Access to domain: cloud.appscan.com is essential

Currently, ASoC uses the following IP ranges (inbound and outbound) on port 443. To avoid any service interruptions, ensure that you continue to allow these IP ranges:

  • North America data center: 52.252.14.0/24, 40.67.153.0/24
  • Western Europe data center: 20.52.22.0/24, 51.116.136.0/24

Notification will be provided when the production services are migrated to the new IPs. At that point, the old IP ranges can be removed from the firewall rules.

For some DAST Command Execution and Remote File Inclusion security tests, including those for the Log4j vulnerability, the tested server must be able to send DNS lookup queries to:
  • securityip.appsechcl.com
ASoC uses the following domains for Azure blob storage when downloading reports or tools from the cloud:
  • North America data center: asoceapusstorage.blob.core.windows.net
  • Western Europe data center: asoceapdestorage.blob.core.windows.net
Note: The IPs for these domains are managed by Azure and could change, so the domains themselves should be added to the allow list.

For more information about data centers, see Data center selection.

ASoC analyzers

Requirements and limitations:

Browser

ASoC supports the latest versions of the following browsers:
  • Chrome
  • Edge
  • Firefox
  • Safari (Mac only)

Screen resolution

The recommended screen resolution for ASoC is 1920 x 1080.

Login requirements

  • If login to your site or app requires credentials other than username and password, you can supply these when setting up the scan, but note that intervention by our Support team will be required to run the scan, which may increase scan time.
  • CAPTCHA is not supported. You must disable any CAPTCHA mechanism in order to scan.

AppScan Presence