Fortinet white logo
Fortinet white logo

Administration Guide

GitHub

GitHub

The following steps will help you integrate with a GitHub organization.

To integrate with a GitHub organization:
  1. Log in to the console.

  2. Go to Settings > Integrations > Code security.

  3. Click Add integration.

  4. Select an integration type:

    1. Select a Git provider.

    2. Select GitHub.

      You must have Owner permissions to the GitHub organization.

  5. Click Go to GitHub and sign in to your desired organization.

  6. Select the organization you wish to integrate and click Configure.

  7. Select All repositories or Only select repositories.

    • If you select Only select repositories, use the dropdown to select the repositories you would like FortiCNAPP to scan.

  8. Click Install & Authorize.

  9. GitHub automatically redirects you back to the console to confirm the integration was successful.

    If it was successful, the Console displays an updated list of your organizations and repositories. Click Close to exit the integration wizard.

    FortiCNAPP Code Security will automatically scan the default branch of all your repositories. Once the scans are completed, you will be able to see the results in the UI.

In the GitHub security Settings page, the IP allow list feature offers the ability to limit access based on IP address. This feature may impact the onboarding process of GitHub enterprises. See Managing allowed IP addresses for a GitHub App.

After integrating with GitHub, you can enable or disable different Code Security tools. The following topics provide information on navigating through the UI of each Code Security tool:

GitHub

GitHub

The following steps will help you integrate with a GitHub organization.

To integrate with a GitHub organization:
  1. Log in to the console.

  2. Go to Settings > Integrations > Code security.

  3. Click Add integration.

  4. Select an integration type:

    1. Select a Git provider.

    2. Select GitHub.

      You must have Owner permissions to the GitHub organization.

  5. Click Go to GitHub and sign in to your desired organization.

  6. Select the organization you wish to integrate and click Configure.

  7. Select All repositories or Only select repositories.

    • If you select Only select repositories, use the dropdown to select the repositories you would like FortiCNAPP to scan.

  8. Click Install & Authorize.

  9. GitHub automatically redirects you back to the console to confirm the integration was successful.

    If it was successful, the Console displays an updated list of your organizations and repositories. Click Close to exit the integration wizard.

    FortiCNAPP Code Security will automatically scan the default branch of all your repositories. Once the scans are completed, you will be able to see the results in the UI.

In the GitHub security Settings page, the IP allow list feature offers the ability to limit access based on IP address. This feature may impact the onboarding process of GitHub enterprises. See Managing allowed IP addresses for a GitHub App.

After integrating with GitHub, you can enable or disable different Code Security tools. The following topics provide information on navigating through the UI of each Code Security tool: