Client Certificate Authentication

In a Tenable Web App Scanning scan, you can configure Client Certificate Authentication credentials.

Option Action
Client Certificate The file that contains the PEM-formatted certificate used to communicate with the host.
Client Certificate Private Key The file that contains the PEM-formatted private key for the client certificate.
Client Certificate Private Key Passphrase

The passphrase for the private key, if required.

Page to Verify Successful Authentication

Type the URL that Tenable Web App Scanning can access to validate the authenticated session.

Pattern to Verify Successful Authentication

Type a word, phrase, or regular expression that appears on the website only if the authentication is successful (for example, Welcome, your username!). Leading slashes will be escaped and .* is not required at the beginning or end of the pattern.