Scope Settings in Tenable Web App Scanning Scans

Configure Scope settings to specify the URLs and file types that you want to include in or exclude from your scan.

The Scope settings include the following sections:

Crawl Scripts

Selenium scripts you want to add to your scan to enable the scanner to analyze pages with complex access logic.

Note: If you add more than one target to your scan, these settings are disabled.

Setting Description
Add File

Hyperlink that allows you to add one or more recorded Selenium script files to your scan.

Your script must be added as a .side file.

Scan Inclusion

The URLs you want the scanner to include, along with how you want the scanner to crawl them.

Note: If you add more than one target to your scan, these settings are disabled.

Setting Default Description
List of URLs none

A list of any URLs you want to ensure the scanner analyzes, in addition to the target URL you specified in the Basic settings.

Type each URL as an absolute URL.

Type each URL on a separate line.

Note: All URLs should have the same domain and wildcards are not allowed.

Scan Exclusion

The attributes of URLs you want the scanner to exclude from your scan.

Setting Default Value Description
Exclude Binaries selected

Check box option that allows you to specify whether you want the scanner to audit URLs with responses in binary format.

Select this option to increase the surface coverage of your web application scan.

Note: Scans that include binaries can take longer to complete, because the scanner cannot read the binary responses.

Miscellaneous

Setting Description
Deduplicate Similar Pages Check box option that allows you to specify whether you want the scanner to ignore pages in situations when similar pages have already been audited.