Burp Suite User Forum

Create new post

Explain scan configuration options in Burp Enterprise

chandraveer | Last updated: Nov 28, 2018 11:47AM UTC

I am evaluating Burp Enterprise. There is a long list of options for scan configurations to be used while scanning a site. I tried some of the options in combinations; the issues did differ from using no scan configurations. Can I assume that using no options from scan configuration, I will get the maximum coverage, thorough crawl and a complete list of issues? Are the options meant for tweaking the scan? How are those options different from each other and when to use?

PortSwigger Agent | Last updated: Nov 28, 2018 01:12PM UTC

Yes, these options are meant for configuring the scan. The default options provide a balance between scan time and thoroughness. If you want the most complete scan possible, use these options: Crawl Strategy - most complete Audit coverage - thorough Minimize false negatives The names of the configuration libraries are intended to be self-explanatory, but is there's any that aren't clear, just let us know.

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.