Auto Generate Test Plan
1. Generate a security test plan for your APIs
Click on
Test Plans
in the side panel and proceed to create a test plan by clickingNew Test Plan
.Pick
Zero Config
as the type of test plan to generateIn the
New Test Plan
dialog pick a suitable name for the plan.Pick the previously imported API catalog as the API asset for this test plan.
Proceed to generate the test plan. The generated test plan will have coverage for several security vulnerabilities.
Zero Config Test Plans do not support horizontal authorization bypass (BOLA) tests. If you skipped providing RBAC association info via the metadata.yml file, no tests for vertical authorization bypass (BFLA) will be generated.
Your new test plan will be in the
Config Complete
state, and is immediately runnable. Please proceed to the next step.