Not Able to Record the traffic when i enable the proxy

304 views
Skip to first unread message

gehapra...@gmail.com

unread,
Sep 1, 2020, 9:11:00 AM9/1/20
to OWASP ZAP Developer Group
Hi Team,
Today i tried to access one of my application through zap proxy method but traffic is not recording under the tree tab showing empty

can some one help me how can i resolve that issue

steps i followed:
Exported certificate from zap tool 
imported the same in browser browser trusted certificates

Note : But when i use the Manual Quick start option its working as expected and recording all the pings but i don't know why issues is coming when i use browser directly

Thanks in advance

Thanks,
Praveen



thc...@gmail.com

unread,
Sep 1, 2020, 9:22:32 AM9/1/20
to zaproxy...@googlegroups.com
Hi.

What URLs are not being proxied? loopback? Which browser?

Best regards.

gehapra...@gmail.com

unread,
Sep 1, 2020, 9:25:08 AM9/1/20
to OWASP ZAP Developer Group
Hi Team,

Using Firefox and not able to open my website URL and login page also not opening 

gehapra...@gmail.com

unread,
Sep 1, 2020, 9:31:13 AM9/1/20
to OWASP ZAP Developer Group
when open the application i can see like below in the Zap site tree
but from browser end i can able to open my applications and access ,but not able to see those pings in site tree

Capture.PNG


On Tuesday, 1 September 2020 at 18:52:32 UTC+5:30 thc202 wrote:

thc...@gmail.com

unread,
Sep 1, 2020, 9:35:33 AM9/1/20
to zaproxy...@googlegroups.com
Is the application being served locally?

The loopback addresses are no longer being proxied by default, you have
to set the preference `network.proxy.allow_hijacking_localhost` to `true`.

Best regards.

thc...@gmail.com

unread,
Sep 1, 2020, 9:37:07 AM9/1/20
to zaproxy...@googlegroups.com
This page contains all the steps required to proxy through ZAP:
https://www.zaproxy.org/docs/desktop/start/proxies/

Best regards.

gehapra...@gmail.com

unread,
Sep 1, 2020, 9:58:26 AM9/1/20
to OWASP ZAP Developer Group
Hi,
I tried it now some URLs it's capturing but not all ULR's what was capturing when i run the quick manual mode
attaching the screenshots what I did, if you observe from browser mode it as capturing only one but when I use explore mode it was capturing more

manual explore quick start.PNG
From Browser Mode.PNG
Enabled Proxy.PNG

thc...@gmail.com

unread,
Sep 1, 2020, 10:16:02 AM9/1/20
to zaproxy...@googlegroups.com
I see, I guess the "local" browser is using cached scripts/files. The
launched browsers use clean profiles so will request everything.

Best regards.

gehapra...@gmail.com

unread,
Sep 1, 2020, 10:23:52 AM9/1/20
to OWASP ZAP Developer Group
OK, that's not a major problem right as I can see most of those URLs are GET .js files and .png 

I can go with the URLs what it was capturing for now and spider if any? 

thc...@gmail.com

unread,
Sep 1, 2020, 10:27:39 AM9/1/20
to zaproxy...@googlegroups.com
Yeah, the spider(s) should request the other files.

Best regards.

gehapra...@gmail.com

unread,
Sep 1, 2020, 10:30:26 AM9/1/20
to OWASP ZAP Developer Group
OK, Thanks for your quick help and guiding me 
Thanks a lot at least I can make a start if any issues I face will post you back 

Reply all
Reply to author
Forward
0 new messages