How can I scan a Firefox-only target?
This document is for:
Invicti Enterprise On-Demand, Invicti Enterprise On-Premises
To scan a target that is usable only by a specific browser, you can configure your Scan parameters with a custom User-Agent string.
In this example, we will assume a Firefox-only target.
You can create a Scan Policy to handle this scenario; the simplest solution will be to clone one of the already-existing policies. For example:
- navigate to Policies -> Scan Policies
- click the Clone button for the Default Security Checks policy
- in the General section, assign a name for your new scan policy
- in the Request section, add a new User Agent
- configure the new User Agent settings:
- set the Name field to Firefox
- set the Value field to:
Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:135.0) Gecko/20100101 Firefox/135.0 |
- ensure that the Force this value checkbox is enabled
- the final result should be similar to the following:
- scroll to the bottom of the page and click the Save button
Simply select this new Scan Policy for any new scan you wish to trigger:
NOTES: Learn more about User-Agent strings. |