OAAM: How To Create Exclude Criteria For Automated Scan Tools Like Webinspect (Doc ID 2177793.1)

Last updated on SEPTEMBER 28, 2016

Applies to:

Oracle Adaptive Access Manager - Version 11.1.2.0.0 and later
Information in this document applies to any platform.

Goal

we have an application which sits behind an install of OAAM (version 11.1.2.0.0). Every time we try and run HP Webinspect against the environment (to test for vulnerabilities), OAAM keeps permanently blocking my test account (I've created multiple accounts now for test and it's blocked each and every one of them). Is there a way to allow automated tools such as Webinspect to run against the environment. We do wish for the tool to go through the login process to simulate our production environment as much as possible. Please advise on how or if this can be done
 

Solution

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms