1 thought on “How to install GSC in APPSCAN”

  1. 1. Error 1603 occur during APPSCAN installation.
    Because of the installation before, it was not uninstalled and caused an error. The solution is as follows:
    1. Control panel → program and function → Select the program uninstal.
    2. Delete the AppScan installation path and everything below.
    3. In the system [Start]-> [Run (R) ...], run the command Regedit to delete all the registration keys (if existence), and the following sub-key:
    a. HKEY_LOCAL_MACHINESOFTWAREIBM Rational AppScanrn  B.HKEY_CURRENT_USERSoftwareIBM Rational AppScanrn  4、删除Windows TEMP文件夹下面的所有内容:rn  A.点击系统[开始]->[运行(R)...] Input%TEMP%and run
    B. When the folder is opened, select the menu [Edit]-> [All Select (A)], right-click the mouse at any part of the file and select [Delete delete
    (d)] (Skip the files that may still be in use, delete all files that can be deleted as much as possible)
    5. Similarly open the AppScan_temp folder:
    A. Delete inside after opening. All content
    B. If the following errors occur, ignore the error starting the next step
    %appscan_temp%
    Windows cannot find%appscan_temp%. CORRECTLY, and THEN THEN TRY AGAIN. To Search for a File, Slick The Start
    Button, and then click search.
    6. Use the disk cleaning settings with Windows to clean up your computer:
    a. In the system [Start]-> [Run (R) ...], enter the command: Cleanmgr/Sageset, select "Temporary Installation File", "Installation Log
    File", "Temporary File" and and and And with it Cancel the check of other items (the configuration of the tool has been completed).
    B. In the system [Start]-> [Run (R) ...], enter the command: Cleanmgr/Sagerun (so that the clearing function is activated, and generally it takes a few minutes to complete).
    7. Restart the computer.
    . The website code is tampered with after APPSCAN scan.
    This configuration → test strategy → checking the invasive type, may tampering the code of the website. If you tampered with, remove this check when scanning. (But this is the time, you need to place an invasion attack from the code.)

    . The C drive space is insufficient during the APPSCAN scanning process.
    1. It is recommended not to check the scanning log. When the scanning website is too large or the scanning time is too long, the system collapses as the log file changes. If you have already checked it, you can check it out in the tool → option → enable the scan log.

    2. If you want to check, save the user file to other hard disks. The default user file is: c: documens and
    Settings my
    documentsAppscan; can be modified to other paths. This path can be selected in the menu bar in turn → options → general → file location part.

    . If the above address has been modified to other disks, but during the scanning process, it is found that the space of the C drive is quickly consumed because many temporary files are stored in C drive, AppScan
    has a hidden parameter APPSCAN_TEMP
    to set the temporary file position. You can modify the system variables to modify other hard disk space. Temporary file location description: Describe the location of the temporary file to the appscan
    The location during normal operation. In the case of default, APPSCAN stores its temporary files in the following positions: C: Documents and Settingsall
    USERS Dataibmrational
    AppScan EMP If you need to modify this default position, edit the path of APPSCAN_TEMP according to the requirements.
    The method of accessing the environment variables is: right -click my computer, and then select the attribute → advanced → environment variable.
    Note: There must be no unicode character in the path of the new position.
    Pucting temporary files in appscan: Right -click the mouse on the desktop to select my computer → attribute → advanced system settings → advanced → environment variables, add a new "user environment variable", the name is "appscan_temp", setting path setting path , Point to the directory of you want to save the temporary file.
    4. You can also stop scanning and start later. Of course, there is a previous method I don't think so.

    . The virtual memory is insufficient when scanned by APPSCAN.
    1. Save once an hour to avoid the results of the previous scanning when the failure occurs; the tool → option → scanning process is automatically saved to 60 minutes and automatically saved once.

    2. You can in the tool → option → advanced search. Change the attribute value to true. Make
    ratescan automatically restart the memory when the amount of memory is relatively large is relatively large. In this way, when the remaining virtual internal stock is too low and is forced to stop, Rational
    AppScan will monitor the setting of the system registry to determine whether it is restarted.

    5. Communication problems occur during APPSCAN scanning.
    1. Reduce the number of threads, scan configuration → communication and proxy.
    2. Increased the time, scan configuration → communication and proxy.

    3. The server has a firewall. It can be scanned after the firewall is closed.
    6. APPSCAN is prompted to "damage the file" when the file is opened.
    1. Try this first, maybe because the ISSCH and ISUSPM startup items have been disabled. Run the "MSCONFIG" to see, if the state is disabled, turn on the boot to start.
    7. APPSCAN's entire scanning process briefly describe.
    Appscan use steps: planning, execution, inspection, and analysis.
    1. In the planning stage (PLAN): Clarify the purpose, carry out strategic selection and task decomposition
    a, clear purpose: Choose the appropriate scanning strategy
    B, understand object: first explore first , Understand the structure and scale of the website
    C. Determine strategy: Make the corresponding configuration
    D. Decomposition of scanning tasks according to the directory
    E. Decomposition of scanning tasks according to the scanning strategy
    2. Execution phase (do): Scan while observing
    a, first climb and then scan (continuing only test)
    . The inspection stage (Check)
    a, check and adjust the configuration (process process (process process (process process Some problems may occur in China)
    4. Analysis
    a, comparison results
    B, summary results (integrated and filtering)
    PS. Choose when scanning when scanning Comprehensive scanning will be scanned comprehensive.
    8. Verification after modification.
    1. Right -click the problem that needs to be verified, click to re -test. If it is repaired, this problem will disappear.

    2. For HTML annotation sensitive information leakage verification problems, you can click on specific questions and check the request/response. Remove this annotation.

Leave a Comment