OWASP ZAP Docker CLI - Authenticated Scan

395 views
Skip to first unread message

Saad S Awan

unread,
May 24, 2022, 1:17:00 AM5/24/22
to OWASP ZAP User Group
Hi, 
 I am following link 
"https://dzone.com/articles/owasp-zap-security-tests-in-azure-devops-pipeline"
and I implemented and its works perfectly after your kind guidance. Docker CLI scan the website and publish 14 errors base on Ubuntu 18.04 agent specification because if I select widows agent tasks failed. 
My question is that as per mentioned article is script scans complete website with authenticated and unauthenticated mode? Because I scan 2 different website both scan report identified unauthenticated mode errors ?
Need your expert opinion required.

Simon Bennetts

unread,
May 24, 2022, 4:15:30 AM5/24/22
to OWASP ZAP User Group
For information on how to authenticate using ZAP see https://www.zaproxy.org/docs/authentication/

ZAP cli is a 3rd party tool and not supported by the ZAP Core Team. For the ways we recommend you automate ZAP see https://www.zaproxy.org/docs/automate/

Cheers,

Simon
Reply all
Reply to author
Forward
0 new messages