Authenticated scanning

How do I setup header injections?

To setup header injections for a web application scan follow the steps below.

  1. log in to Security Center.
  2. Click Asset Manager > Web applications.
    • For an existing web application edit the web application by clicking on the Edit.
    • For a new web application click +Add web application and create a new application.
  3. Click on Scan settings > Header injections.
    There is no limit to how many header injections you can use, below are some examples:
    Accept: */* 
    Accept:application/json
    Content-type: application/json
    Content-type: text/plain

    Click on the header you wish to use or add a custom header and click Enter and it will be added to your settings.
  4. Click OK.
  5. Done!