Existing page given as not found in ZAP proxy

16 views
Skip to first unread message

Fabio Lanza

unread,
Aug 23, 2023, 7:30:29 AM8/23/23
to ZAP User Group
Hi everyone, I am trying to do web app scanning through the proxy browser (Firefox), but I am getting 404 answers in ZAP for requests launched via browser proxy. When I access this same page in a standard browser session, the page loads normally. I am afraid that the issue is related with the authentication redirect, as the page redirects for SSO authentication. Would you agree? If not, what else could be the problem? Is there a configuration for following redirects? Thanks.

psiinon

unread,
Aug 23, 2023, 7:48:46 AM8/23/23
to zaprox...@googlegroups.com
If the page can only be accessed when authenticated then you will need to configure ZAP to handle authentication :)


Cheers,

Simon

On Wed, Aug 23, 2023 at 1:30 PM Fabio Lanza <lanzab...@gmail.com> wrote:
Hi everyone, I am trying to do web app scanning through the proxy browser (Firefox), but I am getting 404 answers in ZAP for requests launched via browser proxy. When I access this same page in a standard browser session, the page loads normally. I am afraid that the issue is related with the authentication redirect, as the page redirects for SSO authentication. Would you agree? If not, what else could be the problem? Is there a configuration for following redirects? Thanks.

--
You received this message because you are subscribed to the Google Groups "ZAP User Group" group.
To unsubscribe from this group and stop receiving emails from it, send an email to zaproxy-user...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/zaproxy-users/cb86098f-8b36-43c3-8574-3ea30a90c95bn%40googlegroups.com.


--
ZAP Project leader

Fabio Lanza

unread,
Aug 23, 2023, 8:22:26 AM8/23/23
to ZAP User Group
Hi Simon, thanks for your input. However, the proxy browser is getting a 404 not found message when accessing the main page, while the normal behavior would be to redirect me to the authentication page. Is this a normal behavior?

Thanks,
Fabio

psiinon

unread,
Aug 23, 2023, 8:25:26 AM8/23/23
to zaprox...@googlegroups.com
Normal for your app? I have no idea :)
Browsers should work the same whether or not they are proxied through ZAP.
If they work differently then its probably because something is detecting that ZAP is being used.

Cheers,

Simon



--
ZAP Project leader
Reply all
Reply to author
Forward
0 new messages