Commit 6365f1a5 authored by Dheeraj Joshi's avatar Dheeraj Joshi

Update documentation for new options in scanner profile

This updates doc/user/application_security/dast/index.md
and corresponding tooltips in the scanner profile form
parent 92ce24a0
...@@ -677,6 +677,11 @@ A scanner profile defines the scanner settings used to run an on-demand scan: ...@@ -677,6 +677,11 @@ A scanner profile defines the scanner settings used to run an on-demand scan:
- **Spider timeout:** The maximum number of minutes allowed for the spider to traverse the site. - **Spider timeout:** The maximum number of minutes allowed for the spider to traverse the site.
- **Target timeout:** The maximum number of seconds DAST waits for the site to be available before - **Target timeout:** The maximum number of seconds DAST waits for the site to be available before
starting the scan. starting the scan.
- **Scan mode:** A passive scan monitors all HTTP messages (requests and responses) sent to the target. An active scan attacks the target to find potential vulnerabilities.
- **AJAX spider:** Run the AJAX spider, in addition to the traditional spider, to crawl the target site.
- **Debug messages:** Include debug messages in the DAST console output.
Scan mode, AJAX spider, Debug messages are [added in GitLab 13.5](https://gitlab.com/gitlab-org/gitlab/-/issues/225804)
### Create a scanner profile ### Create a scanner profile
......
...@@ -130,14 +130,12 @@ export default { ...@@ -130,14 +130,12 @@ export default {
'DastProfiles|The maximum number of seconds allowed for the site under test to respond to a request.', 'DastProfiles|The maximum number of seconds allowed for the site under test to respond to a request.',
), ),
scanMode: s__( scanMode: s__(
'DastProfiles|Active scan will make active attacks against the target site while Passive scan will not', 'DastProfiles|A passive scan monitors all HTTP messages (requests and responses) sent to the target. An active scan attacks the target to find potential vulnerabilities.',
), ),
ajaxSpider: s__( ajaxSpider: s__(
'DastProfiles|Enable it to run the AJAX spider (in addition to the traditional spider) to crawl the target site', 'DastProfiles|Run the AJAX spider, in addition to the traditional spider, to crawl the target site.',
),
debugMessage: s__(
'DastProfiles|Enable it to include the debug messages in DAST console output',
), ),
debugMessage: s__('DastProfiles|Include debug messages in the DAST console output.'),
}, },
}; };
}, },
......
...@@ -8028,13 +8028,13 @@ msgstr "" ...@@ -8028,13 +8028,13 @@ msgstr ""
msgid "Dashboard|Unable to add %{invalidProjects}. This dashboard is available for public projects, and private projects in groups with a Silver plan." msgid "Dashboard|Unable to add %{invalidProjects}. This dashboard is available for public projects, and private projects in groups with a Silver plan."
msgstr "" msgstr ""
msgid "DastProfiles|AJAX spider" msgid "DastProfiles|A passive scan monitors all HTTP messages (requests and responses) sent to the target. An active scan attacks the target to find potential vulnerabilities."
msgstr "" msgstr ""
msgid "DastProfiles|Active" msgid "DastProfiles|AJAX spider"
msgstr "" msgstr ""
msgid "DastProfiles|Active scan will make active attacks against the target site while Passive scan will not" msgid "DastProfiles|Active"
msgstr "" msgstr ""
msgid "DastProfiles|Are you sure you want to delete this profile?" msgid "DastProfiles|Are you sure you want to delete this profile?"
...@@ -8097,18 +8097,15 @@ msgstr "" ...@@ -8097,18 +8097,15 @@ msgstr ""
msgid "DastProfiles|Edit site profile" msgid "DastProfiles|Edit site profile"
msgstr "" msgstr ""
msgid "DastProfiles|Enable it to include the debug messages in DAST console output"
msgstr ""
msgid "DastProfiles|Enable it to run the AJAX spider (in addition to the traditional spider) to crawl the target site"
msgstr ""
msgid "DastProfiles|Error Details" msgid "DastProfiles|Error Details"
msgstr "" msgstr ""
msgid "DastProfiles|Hide debug messages" msgid "DastProfiles|Hide debug messages"
msgstr "" msgstr ""
msgid "DastProfiles|Include debug messages in the DAST console output."
msgstr ""
msgid "DastProfiles|Manage Profiles" msgid "DastProfiles|Manage Profiles"
msgstr "" msgstr ""
...@@ -8145,6 +8142,9 @@ msgstr "" ...@@ -8145,6 +8142,9 @@ msgstr ""
msgid "DastProfiles|Profile name" msgid "DastProfiles|Profile name"
msgstr "" msgstr ""
msgid "DastProfiles|Run the AJAX spider, in addition to the traditional spider, to crawl the target site."
msgstr ""
msgid "DastProfiles|Save commonly used configurations for target sites and scan specifications as profiles. Use these with an on-demand scan." msgid "DastProfiles|Save commonly used configurations for target sites and scan specifications as profiles. Use these with an on-demand scan."
msgstr "" msgstr ""
......
Markdown is supported
0%
or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment