Burp Suite User Forum

Create new post

keycloak - oAuth Login

Bernhard | Last updated: May 03, 2017 09:41AM UTC

Hi, How do I configure BurpSuite to automatically connect to my to test application using OpenID Connect/oAuth for Spidering, and active Scanning? I found already the EsPReSSO extension in the BurpAppStore but I cannot figure out how to configure BurpSuite to automatically connect to my application using oAuth.

Liam, PortSwigger Agent | Last updated: May 03, 2017 03:59PM UTC

Hi Bernhard Thanks for your message. Have you tried using Burp's Session Handling rules? - https://support.portswigger.net/customer/en/portal/articles/2363088-configuring-burp-s-session-handling-rules Alternatively, you could try contacting the author of the EsPReSSO extension.

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.