General

How do I configure a SOAP API scan?

To scan a SOAP API of a web application, please follow these steps.

Domain consistency
It is important to ensure domain consistency when configuring a web application asset to parse the API. Ensure that the WSDL file is reachable without redirects.

  1. Log in to the Security Center.
  2. Click Asset Manager in the main menu.
  3. Click Web applications.
  4. Choose Add web application.
  5. Under General information, add the WSDL file URL for the SOAP API under Target and set a name under the Application name.
  6. Verify that the WSDL file URL is accessible to the External node or Scanner appliance
  7. Click OK to save.
  8. Done!

To initiate a scan
After following all the steps in this guide, the next step is configuring the asset for a scan. To learn how to complete the scan configuration, please refer to this article:
https://support.holmsecurity.com/knowledge/how-do-i-schedule-a-scan-for-an-web-app