Fortinet black logo

User Guide

Performing a FortiDAST scan

Performing a FortiDAST scan

You can use FortiDAST to perform a vulnerability scan on your assets. By leveraging a FortiDAST integration with FortiRecon, you can identify vulnerabilities and security gaps within your assets. See the FortiDAST User Guide for more information on how the integration and scanning works.

To scan an asset with FortiDAST:
  1. Add a FortiDAST integration to FortiRecon. See Adding integrations.

  2. Go to EASM > Asset Discovery.

  3. Navigate to the asset you want to scan.

  4. Select Actions > DAST Scan.

    The DAST Scan dialog opens with number of Remaining Scans displayed.

  5. Click Add beside the asset you want to add to DAST. A confirmation message is displayed.

  6. Click Yes. The Scan, Config Scan, and View Result buttons become available for the asset.

  7. Click Config Scan. You will be redirected to FortiDAST.

    Note

    Only master or sub users will be redirected to FortiDAST to complete the configuration. Other users will be prompted with a dialog on how to proceed.

  8. Configure the scanner. See the FortiDAST User Guide for more information.

  9. Click Scan. A confirmation message is displayed.

  10. Click Yes.

  11. Once the scan has started, click View Result to view the status of the scan.

    Note

    You can scan the same asset again by selecting ReScan.

Performing a FortiDAST scan

You can use FortiDAST to perform a vulnerability scan on your assets. By leveraging a FortiDAST integration with FortiRecon, you can identify vulnerabilities and security gaps within your assets. See the FortiDAST User Guide for more information on how the integration and scanning works.

To scan an asset with FortiDAST:
  1. Add a FortiDAST integration to FortiRecon. See Adding integrations.

  2. Go to EASM > Asset Discovery.

  3. Navigate to the asset you want to scan.

  4. Select Actions > DAST Scan.

    The DAST Scan dialog opens with number of Remaining Scans displayed.

  5. Click Add beside the asset you want to add to DAST. A confirmation message is displayed.

  6. Click Yes. The Scan, Config Scan, and View Result buttons become available for the asset.

  7. Click Config Scan. You will be redirected to FortiDAST.

    Note

    Only master or sub users will be redirected to FortiDAST to complete the configuration. Other users will be prompted with a dialog on how to proceed.

  8. Configure the scanner. See the FortiDAST User Guide for more information.

  9. Click Scan. A confirmation message is displayed.

  10. Click Yes.

  11. Once the scan has started, click View Result to view the status of the scan.

    Note

    You can scan the same asset again by selecting ReScan.