Client Certificate Authentication

In a Tenable One Web App Scanning scan, you can configure Client Certificate Authentication credentials.

Option Action
Username Type the username Tenable One Web App Scanning uses to authenticate to the server.
Password Type the password Tenable One Web App Scanning uses to authenticate to the server.
Client Certificate The file that contains the PEM-formatted certificate used to communicate with the host.
Client Certificate Private Key The file that contains the PEM-formatted private key for the client certificate.
Client Certificate Private Key Passphrase

The passphrase for the private key, if required.

Page to Verify Successful Authentication

Type the URL that Tenable Web App Scanning can access to validate the authenticated session.

Pattern to Verify Successful Authentication

Type a word, phrase, or regular expression that appears on the website only if the authentication is successful (for example, "Welcome, your <username>!"). Leading slashes are escaped and .* is not required at the beginning or end of the pattern.