- Administering AppScan Source
This section explains user management, permissions, application and project registration, and port configuration.
- Auditing user activity
AppScan® Source offers a convenient location for auditing user activity. The Audit view logs events such as authentication to the AppScan® Enterprise Server, the creation of new users, and the creation of new rules in the database.
- Logging in to AppScan Enterprise Server from AppScan Source products
Most
AppScan® Source products and components require a connection to an
AppScan® Enterprise Server. The server provides centralized user management capabilities and a mechanism for sharing assessments. All user management occurs in
AppScan® Enterprise.
- LDAP integration
To add an AppScan® Source user that will be authenticated via LDAP, you must have configured the AppScan® Enterprise Server user repository to use an LDAP repository.
- Registering applications and projects for publishing to AppScan Source
- AppScan Source application and project files
AppScan® Source applications and projects have corresponding files that maintain configuration information required for scanning, as well as triage customization. It is recommended that these files reside in the same directory as the source code, since configuration information (dependencies, compiler options, and so forth) required to build the projects is very similar to that required for AppScan® Source to scan them successfully. Best practice includes managing these files with your source control system.
- Port configuration
- AppScan Source predefined filters (Version 8.7.x and earlier)
This topic lists predefined filters that were included in AppScan® Source Version 8.7.x and earlier.
- Restoring archived predefined filters
Predefined filters that were provided in AppScan® Source prior to Version 8.8 can be added back to the product by following the steps in this task. Once restored on a single machine, they can be managed in the same manner as filters that you create (for example, they can be shared to multiple clients).
- Creating and managing filters in the Filter Editor view
In this view, you can create, edit, save, delete, and manage filters. If you are using AppScan® Source for Analysis, you can share filters and access filters that have been shared by others. In AppScan® Source for Development, you can access shared filters if you are using server mode and logged in to the AppScan® Enterprise Server.
- Filter Editor view
The Filter Editor view provides a more granular manipulation of the currently selected filter than other AppScan® Source views. This view consists of all criteria on which you can filter.