Burp Suite User Forum

Create new post

Enterprise Beta - Are workflows a feature yet?

Nick | Last updated: Oct 31, 2018 12:49AM UTC

Hi team, I am trialing the enterprise beta edition and just wondering if there is any feature available or in the pipeline for adding your own workflow steps? Currently can't get the scan agent to get past a terms & conditions page of a legacy test application I am running it against. Something such as hard-coding a cookie value, or an embedded javascript runner (such as what Netsparker has) or follow workflow steps (like Acunetix) would solve my problem. Love the product so far! Thanks,

PortSwigger Agent | Last updated: Oct 31, 2018 08:50AM UTC

In the medium term we intend to support both the features you mention: JavaScript support within the crawler, and the ability to record a login sequence. These are quite big jobs though; we're looking at six months after we come out of beta. We'll let you know when we make progress. You can hard code a cookie with Burp Pro now, using a session handling rule, and you can import the configuration into Enterprise. This wouldn't be useful to anything that changes like a session token, but if it's a simple terms_and_conditions_accepted=true then this should do you. Let us know if you want some specific instructions on how to set this up.

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.