Configure Credentials Settings in a Tenable Web App Scanning Scan
Required Tenable Web App Scanning User Role: Scan Manager or Administrator
Before you begin:
- (Cookie authentication) Determine the cookie authentication credentials for the web application you want to scan.
-
(Selenium authentication) In the Chrome Web Store, download the Selenium IDE extension, do one of the following:
- To configure credentials using the Selenium IDE extension, download the Selenium IDE extension.
- To configure credentials via the Tenable Web App Scanning Chrome Extension, download the Tenable Web App Scanning Chrome Extension.
To configure credentials settings in a Tenable Web App Scanning scan:
- Create or edit a scan.
-
Click Credentials.
The credentials details appear.
-
Next to Add Credentials, click the button.
The Select Credential Type plane appears.
-
Do one of the following:
-
Add existing credentials.
The Managed Credentials section of the Select Credential Type plane contains any credentials where you have Can Use or Can Edit permissions.
-
(Optional) Search for a managed credential in the list by typing your search criteria in the text box and clicking the button.
-
In the Managed Credentials section, click each managed credential you want to add.
The Select Credential Type plane remains open.
- To close the Select Credential Type plane, click the button in the upper-right corner of the plane.
-
-
Create new credentials.
- In the Web Application Authentication section, click the credentials type you want to create:
- HTTP Server Application
- Web Application Authentication
The settings plane for that credential type appears.
- In the first text box, type a name for the credentials.
- (Optional) In the second text box, type a description for the credentials.
- Configure the settings for the credentials type:
- In the Web Application Authentication section, click the credentials type you want to create:
-
- Add user permissions.
-
Click Save to save the credentials changes.
Tenable Web App Scanning closes the settings plane and adds the credentials to the credentials table for the scan.
If you created new credentials, Tenable Web App Scanning adds the credentials to the credential manager.
- Click Save to save the scan changes.