Support
General FAQs

How can I scan a Firefox-only target?

This document is for:
Invicti Enterprise On-Demand, Invicti Enterprise On-Premises

To scan a target that is usable only by a specific browser, you can configure your Scan parameters with a custom User-Agent string.

In this example, we will assume a Firefox-only target.

You can create a Scan Policy to handle this scenario; the simplest solution will be to clone one of the already-existing policies. For example:

  • navigate to Policies -> Scan Policies

  • click the Clone button for the Default Security Checks policy

  • in the General section, assign a name for your new scan policy

  • in the Request section, add a new User Agent

  • configure the new User Agent settings:
  • set the Name field to Firefox
  • set the Value field to:

Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:135.0) Gecko/20100101 Firefox/135.0

  • ensure that the Force this value checkbox is enabled
  • the final result should be similar to the following:

  • scroll to the bottom of the page and click the Save button

Simply select this new Scan Policy for any new scan you wish to trigger:

NOTES:

Learn more about User-Agent strings.