The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Burp Suite Enterprise Integration with Jenkins

Rajeshkumar | Last updated: Mar 18, 2021 09:56PM UTC

I have gone thru your forums and understood that the Burp Enterprise can be integrated with Jenkins and it triggers the DAST via Burp Enterprise during build process. My questions are, 1. Can the burp perform DAST with the latest version of code is about to deploy to app? or The burp will perform the DAST with the previous version of code which associated with my app? 2. DAST is "Outside In" model as how the user is looking at the application. How Burp Enterprise look at the application while triggering from Jenkins? Does it look at the user level functionalities and perform the DAST? or look at the code and perform the scanning? 3. While integrating burp with Jenkins, Can burp initiate fully automated crawl and auditing? Is there any option for partial scan which can be triggered from Jenkins ? 4. I have experience integrating SAST products with Jenkins. Jenkins will wait until it receive the final status from SAST product and take a call on the build process status. While integrating Burp with Jenkins, Will Jenkins wait until burp provide the final status about DAST scanning? Am asking this questions because, sometime DAST scan will take about an hour or more so.

Ben, PortSwigger Agent | Last updated: Mar 22, 2021 04:03PM UTC