Improve site coverage manually
You can add URLs that the initial Automatic Explore stage missed, both individual URLs (such as those accessed by forms that require specific input) and ordered sequences of URLs (such as shopping carts).
About this task
- If the application has forms that require specific input, you can navigate to the page using the Manual Explore feature and fill in the required data. This will be recorded in the automatic form filler for use during scanning.
- If your application uses JavaScript. Java applets, or Flash - and has links that appear only in certain states, following a specific sequence of states - such links may be missed by Automatic Explore. Using Manual Explore to access them will ensure that AppScan tests them and any additional links they lead to.
- If your application uses Java applets that reveal links, these will not be tested by AppScan unless you explore them manually.
- If certain parts of the site can only be reached by clicking links in a specific order (such as a shopping cart), you should record a Multi-Step Operation (Scan Configuration > Multi-Step Operations view).
Procedure
- Manual Explore. Use this feature to add URLs that
were not discovered during the automatic Explore, and which can be
accesses without a specific context.
- Multi-Step Operations. Use this feature to record
sequences of URLs that must be accessed in a specific order.