Forum Discussion
ASM policy analysis for one of the web application.
There are a variety of security scanners that will check a website for known vulnerabilities, and any one of these can be ran against the ASM. The ASM can integrate with Whitehat and Cenzic for vulnerability scanning and automatic import of results, for instance.
Your best bet for normal operation would be to use one of these to check your system for known issues. If you want something more comprehensive you are likely looking at hiring someone to do a full security assessment of your website.
As to what to include, this depends on your application and on the results of the audit. You will want to use the results of the audit to reconfigure your ASM to protect your website further, and can then rescan and compare the results. Beyond that I would say let the data lead you.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com