Authenticated scanning

How do I record a login sequence using the Web Recorder plugin? 

To record a multi-step login sequence using the Web Recorder Plugin for one of your web applications, please ensure you have downloaded and installed the plugin by following the steps described in this article: https://support.holmsecurity.com/knowledge/how-do-i-install-the-web-recorder-in-google-chrome

After downloading the Web Recorder plugin, open it and follow these steps:

  1. Click on Record new login session.
  2. Enter a Session Name and click OK.
  3. Enter the URL of your web application from which you want to start the login session.
  4. Click Start Recording.
  5. From the starting URL in the browser, follow the login steps as you normally do to log into your web application.
  6. After completing the login sequence, go back to the plugin and click Stop Recording.
  7. Click Save Session in the top right corner or press Ctrl+S to save the login sequence as a JSON file.
  8. Done!

After recording and saving the JSON file, log into your Security Center to start creating a new authentication method. Follow these steps:

  1. Click Asset Manager in the main menu.
  2. Click Web Applications.
  3. Select the Web App you have recorded the multi-step authentication record for and click Edit.
  4. Click Scan Settings. Enable the JavaScript scanning.
  5. Click Authentication, select Multi-step authentication, and fill out the fields below, including:
    1. Authentication record name: give a name to the login sequence you want to save.
    2. Success validation URL.
    3. Success validation string.
  6. Click Select file to select the JSON file where you recorded your login sequence.
  7. Click OK.
  8. Done!

Now, you can scan the web application with the multi-step authentication sequence.

For more information, please get in touch with our customer support.