Complimentary 90-day, on-prem license available for entities involved in Covid19 response.
SUPPORT

24/5 Hotline Support Service

+44 (0)20 3588 3841

Open a Support Ticket

support@netsparker.com

Manual Authentication

Manual Authentication in Netsparker Standard is an authentication configuration that allows you to import requests from various file formats, such as Postman and Fiddler. Netsparker replays these requests at the beginning of a scan to implement authentication. You can also configure the logout detection so that Netsparker replays these requests while the scan is in progress if logout occurs.

Manual Authentication Fields

This table lists and explains the fields in the Manual Authentication section.

Field

Description

Authentication Settings

These are authentication settings you can add, edit, delete, clear, search import or enter.

Method

This is the method of authentication.

URL

This is the website address.

Logout Detection

This section contains the logout detection options.

None

This is if you want no logout detection.

Redirect Based

This enables redirect based detection by entering a Redirect URL.

Keyword Based

This enables keyword based detection by entering a Keyword Pattern and checking Is Regex.

For further information, see How Does Logout Detection Work?, How to Configure Redirect-Based Logout Detection in Netsparker Standard, and How to Configure Keyword-Based Logout Detection in Netsparker Standard.

How to Configure Manual Authentication with Authentication Settings in Netsparker Standard

  1. Open Netsparker Standard.
  2. The Start a New Website or Web Service Scan dialog is displayed.
  3. Click the Manual tab. The Manual Authentication section is displayed.

  1. Check Enabled.

The Authentication Settings tab is displayed.

  1. To add your requests, click:
    • Add to display the Add New Link dialog
    • Import From File to display the Import from File dropdown
    • Enter Links to display the Enter Links/HTTP Requests dialog

(See Configuring Additional Websites for information on how to import links for additional websites in Netsparker Standard.)

  1. Click Start Scan.

How to Configure Manual Authentication with Logout Detection in Netsparker Standard

  1. Open Netsparker Standard.
  2. From the Home tab, click New. The Start a New Website or Web Service Scan dialog is displayed.
  3. Click the Manual tab.
  4. Check Enabled.
  5. Click the Logout Detection tab.

  1. To add your requests, click:
    • None for no logout detection
    • Redirect Based for display the Redirect URL field
    • Keyword Based to display the Keyword Pattern and Is Regex check

See Logout Detection.

  1. Click Start Scan.
Netsparker

Dead accurate, fast & easy-to-use Web Application Security Scanner

GET A DEMO