Creating and running security tests

This topic provides a high-level workflow to create security tests in HCL AppScan Tester Edition and to run them in Engineering Test Management as security test scripts.

Before you begin

An Administrator must create scan templates for you in HCL AppScan Tester Edition.

Procedure

  1. Create an AppScan Test Script in Engineering Test Management.
  2. Configure the test script's security scan in HCL AppScan Tester Edition.
  3. Save the scan and close HCL AppScan Tester Edition.
  4. Run the test script in Engineering Test Management.
  5. (optional) View the scan statistics in HCL AppScan Tester Edition while the scan is running.
  6. View execution results in Engineering Test Management.
  7. View scan results in HCL AppScan Tester Edition. For help specific to each report, click the Help icon next to the report display.
  8. Log defects from:
    1. a report in HCL AppScan Tester Edition
    2. within Engineering Test Management
  9. Assign responsibility in Engineering Test Management to fix the defect.