June 2019 Update for Netsparker Enterprise
This blog post announces updates for June’s 2019 release of Netsparker Enterprise. Highlights include auto update support for scanner agents, API endpoints for managing issues, and a new Managing Issues (Restricted) permission. There are also new scan policies for PCI and OWASP, a Best Practice severity level, and support for OAuth2 and RESTful API.
Your Information will be kept private.
Stay up to date on web security trends
Your Information will be kept private.
We're delighted to announce a Netsparker Enterprise update. The highlights in this update are auto update support for scanner agents, an improved Manage Agents page, a new API endpoints for managing issues, and a new Manage Issues (Restricted) permission.
Other updated features in June 2019 for Netsparker Enterprise are new scan policies for PCI and OWASP Top Ten vulnerabilities, a new Best Practice severity level for vulnerabilities that are recommended practices but not critical, and added support for OAuth2 Authentication and the RESTful API Modeling Language (RAML) link import.
This announcement highlights what is new and improved in this latest Netsparker Enterprise update.
Auto Update Support for Scanner Agents
Netsparker Enterprise allows users to install and configure scan agents to conduct scans and then report the results back to Netsparker Enterprise. Agents are used when the target website is only available from your local network and not accessible from the internet, or when your are using the Netsparker Enterprise On-Premises edition. With this latest update, users can now enable automatic updates for each Agent instead of manually upgrading using installation files on the local machines. Enabling Auto Update means that when a new version of the Netsparker Enterprise Scanning Agent is available, the target agent will update itself as soon as possible. As this is implemented in the latest release, current users have to manually upgrade to the latest version once final time. After that, they can use Auto Update feature as required. If the user wants to make updates fully automatic, they click Enable Auto Update. No other action is required. Users can disable this new feature by clicking Disable Auto Update in the same menu. For further information, see Installing Internal Agents.Accessing Agent Logs
The Netsparker Enterprise Scanning Agent stores application logs under the Logs folder in the installation path. You can now both request and download agent logs. These logs are requested and confirmed from the Manage Agent page. With the latest version of the Agent, the last three days’ logs can then be downloaded from the same place. These logs are useful for troubleshooting. For further information, see Internal Agents in Netsparker Enterprise (On-Demand) and Agents in Netsparker Enterprise On-Premises.New API Endpoints for Managing Issues
In Netsparker Enterprise, you can view lists of Issues with all their details, each representing either a vulnerability or other useful information detected during a web application security scan. This latest update, a popular customer request, brings this capability to the Issues API Endpoints, enabling you to easily integrate with other applications or internal systems. You can now use the API Endpoints to view the following:- Addressed Issues list
- All Issues list
- Issues by Id list
- Report of Issues in CSV format
- To Do list
- Waiting for Retest list