Register the basic information of the target system and perform a crawl.
| Table of Contents
Register New Scan
Register the basic information of the target system.
- From the top page, click 1 "Scan List" - 2 "New Scan".
- The Basic Info. page is displayed.
-
1 Enter any site name in "Site Name".
* This item is used for the cover page of the scan result report, etc. -
2 In "Top URL (starting page for crawl/scan)", select the domain to be diagnosed and enter the path if necessary.
-
4 In "Site Language", specify the form input language during crawling.
-
3 "Site Type", 5 "Scan Type", and 6 "Scan Speed" can be left at their default values to start crawling.
* For details on each item, please refer to <Scan Customization> in "Supplementary Information".
-
If the scan target website has a login function, enter 1 "Login ID" and 2 "Password" in "Authentication Information".
-
Scroll to the bottom of the Basic Info. page and click "Register".
The scan has been registered.
|
MEMO
|
Execute Crawl
Execute the crawl of the target system.
- In the scan details created in "Register New Scan", click the status "Wait".
-
Confirm that "Crawl Only (Manual scan will be available when crawl is finished)" is specified in 1 "Crawl/Scan Settings", and click 4 "Start".
* For a site to be crawled for the first time, we recommend selecting "Crawl Only" and verifying whether the crawled pages are sufficient before executing the scan.
* For details on each item, please refer to <Crawl/Scan> in "Supplementary Information".
-
The crawl starts, and the status is displayed as "Crawling".
* When the crawl is finished, it will be displayed as "Crawled".
Supplementary Information
Scan Customization
| Item Name | Details | ||
| 1 Site Name |
Enter any site name. * This item is used for the cover page of the scan result report, etc. |
||
| 2 Top URL (starting page for crawl/scan) |
Select the target domain to be diagnosed and enter the path if necessary. * The crawl will start from the configured URL. |
||
| Scan Customization |
3 Site Type | Select the site type to be scanned. | |
| PC | Perform crawl/scan using a PC browser. | ||
| Mobile |
Perform crawl/scan by emulating a smartphone browser. * Smartphone applications cannot be crawled/scanned. |
||
| 4 Language | Specify the form input language during crawling. | ||
| 5 Scan Type | Specify the scope of the crawl/scan. | ||
| No login required |
Perform crawl/scan without logging in. * Configuration for production environments. |
||
| Up to login execution |
Perform crawl/scan up to login execution. Screens after login execution will not be crawled/scanned. * Configuration for production environments. |
||
| All |
Perform crawl/scan on all screens including those after logging in. * Configuration for test environments. We recommend not setting this in production environments. |
||
| 6 Scan Speed | Select the speed for vulnerability scanning. Selecting "High Speed" can reduce the time required for scanning, but there is a risk of being falsely detected as an external attack. Consider executing with "Slow" or "Standard". | ||
| Slow |
Accesses the site at a speed of approximately 10 requests / 1 second. * For production environments |
||
| Standard |
Accesses the site at a speed of approximately 20 requests / 1 second. * For test environments |
||
| High Speed |
Accesses the site at a speed of approximately 30 requests / 1 second. * For test environments |
||
Crawl/Scan
| Item Name | Details | ||
| 1 Crawl/Scan Settings | You can select whether to perform the crawl and scan separately or both at once. By performing them separately, you can proceed to the scan after confirming the crawl results. | ||
| Crawl Only (Manual scan will be available when crawl is finished) | Perform crawl only. | ||
| Crawl and Scan | Perform crawl and scan together. | ||
| 2 When to start crawl/scan | You can specify the timing to start the operations configured in 1 "Crawl/Scan Settings". | ||
| Immediately | Will be executed immediately after clicking the "Start" button. | ||
| Execute at Scheduled Time | Will be executed on the specified schedule. | ||
| 3 Crawl/Scan Speed | Please refer to 6 "Scan Speed" in <Scan Customization>. | ||