Hi,
Thank you for your message.
Normally, you would scan from agents sat on dedicated agent machines. By default any agent can be used for any scan, however, you can configure the agent machines into pools and only allow specific sites to be scanned using them.
There is a handy multi-deployment diagram in the network configuration documentation
here.It is possible to use the configuration from Burp Suite Professional or Community in BSEE and vice versa, however, some of the configuration options may not work in Enterprise if they are specific to Pro
/
Community. These can be imported and exported as JSON files from the Configuration Libray in Pro
/
Community or Scan Configurations page in BSEE.
Regarding integration into your deployment pipeline, yes, you can integrate the scans and fetch the result as either individual issues or an HTML report. We have dedicated plugins for Jenkins and TeamCity, and a platform-agnostic generic CI/CD driver for other integrations. We hope to release more dedicated plugins in the future. You can also directly use either the REST or GraphQL API.
More information can be found in the links below:
CI
/
CD integration:
https://portswigger.net/burp/documentation/enterprise/administration-tasks/ci-cdDrivers:
https://portswigger.net/burp/releases#driverAPIs:
https://portswigger.net/burp/documentation/enterprise/api-reference