Configure Credentials Settings in a Tenable Web App Scanning Scan
Required Tenable Web App Scanning User Role: Scan Manager or Administrator
Before you begin:
- (Cookie authentication) Determine the cookie authentication credentials for the web application you want to scan.
To configure credentials settings in a Tenable Web App Scanning scan:
- Create or edit a scan.
-
Click Credentials.
The credentials details appear.
-
Next to Add Credentials, click the
button.
The Select Credential Type plane appears.
-
Do one of the following:
-
Add existing credentials.
The Managed Credentials section of the Select Credential Type plane contains any credentials where you have Can Use or Can Edit permissions.
-
(Optional) Search for a managed credential in the list by typing your search criteria in the text box and clicking the
button.
-
In the Managed Credentials section, click each managed credential you want to add.
The Select Credential Type plane remains open.
- To close the Select Credential Type plane, click the
button in the upper-right corner of the plane.
-
-
Create new credentials.
- In the Web Application Authentication section, click the credentials type you want to create:
- HTTP Server Application
- Web Application Authentication
The settings plane for that credential type appears.
- In the first text box, type a name for the credentials.
- (Optional) In the second text box, type a description for the credentials.
- Configure the settings for the credentials type:
- In the Web Application Authentication section, click the credentials type you want to create:
-
- Add user permissions.
-
Click Save to save the credentials changes.
Tenable Web App Scanning closes the settings plane and adds the credentials to the credentials table for the scan.
If you created new credentials, Tenable Web App Scanning adds the credentials to the credential manager.
- Click Save to save the scan changes.