0auth authentication from the CLI

36 views
Skip to first unread message

Aakhash Ganesh

unread,
Nov 9, 2023, 5:03:01 PM11/9/23
to ZAP Developer Group
Hello,

I want to use 0auth authentication when running a zap scan from the cli. I found https://github.com/kaakaww/hawkscan-examples/blob/main/scripts/examples/session/access-token-session.js
 and 

 scripts on authorization but I don't see how to use them. I understand that I should add them to the proper section in the scripting side. But I don't understand how to use it past that point.

My end goal is to be able to use the azure script to perform an azure scan using zap from the cli and to also be able to use it on another site that doesn't user azure so I would just pass in the authorization token value through the cli.

psiinon

unread,
Nov 10, 2023, 4:31:01 AM11/10/23
to ZAP Developer Group
The official ZAP authentication guide is here: https://www.zaproxy.org/docs/authentication/

If you can use authentication auto-detection then that will be your best option.
if not then look at the rest of the guide and ask any more questions you have here :)

Cheers,

Simon
Reply all
Reply to author
Forward
0 new messages