What do the different settings for crawl scope mean?
The Application details settings define the scope of a web application assessment, allowing you to control which URLs are crawled and tested.
Limit to URL hostname
Restrict the assessment to the same hostname as the target URL.
Example:
-
Target:
http://www.yourbusiness.com/ -
Scans:
-
http://www.yourbusiness.com/subfolder1/ -
http://www.yourbusiness.com/subfolder1/subfolder2
-
-
Does not scan:
-
http://admin.yourbusiness.com/
-
Limit to content located at or below a URL subdirectory
Restrict the assessment to a specific subdirectory and its subfolders.
Example:
-
Target:
http://www.yourbusiness.com/subfolder1/ -
Scans:
-
http://www.yourbusiness.com/subfolder1/ -
http://www.yourbusiness.com/subfolder1/subfolder2
-
-
Does not scan:
-
http://www.yourbusiness.com/subfolder3
-
Explicit URLs to crawl
Add specific URLs to be crawled outside the selected crawl scope. These URLs will be scanned even if they are not linked from pages within your defined scope.