How do I configure a SOAP API scan?
To scan a SOAP API of a web application, please follow these steps.
Domain consistency
It is important to ensure domain consistency when configuring a web application asset to parse the API. Ensure that the WSDL file is reachable without redirects.
- Log in to the Security Center.
- Click Asset Manager in the main menu.
- Click Web applications.
- Choose Add web application.
- Under General information, add the WSDL file URL for the SOAP API under Target and set a name under the Application name.
- Verify that the WSDL file URL is accessible to the External node or Scanner appliance
- Click OK to save.
- Done!
To initiate a scan
After following all the steps in this guide, the next step is configuring the asset for a scan. To learn how to complete the scan configuration, please refer to this article:
https://support.holmsecurity.com/knowledge/how-do-i-schedule-a-scan-for-an-web-app