-The response information when the proxy log is recorded
-The response information when the signature "Scanning setting validation" is performed.
[Scanning setting validation]
This signature sends a request in which a payload is not included during scanning to see if a correct response is to be returned when performing a scan, as Test access does.
This signature is automatically performed at the following timing for each of the Message IDs under scanning.
<When Scanning setting validation is performed>
-At the beginning of the scan
-At every 200 plans
-At the end of the scan
[Cause of Scenario recreate error and the workaround]
The possible causes of Scenario recreate error are described below.
In some cases, a correct response may not be returned due to the server load, since Vex sends a large amount of requests to the target server.
You can reduce the load on the target server and prevent Scenario recreate error by specifying Wait value.
(2)Parameter values in a proxy log recorded in Vex
When proxy logs recorded in Vex holds parameters such as date/time information, session IDs, one-time tokens, etc., as time passes, the values may be no longer valid when scanning due to the target server system.
In this case, a valid value must be specified so as to be handed over.
Specify appropriate values and strings in Pre processor so as to be handed over properly, including the processing that caused an error value.
(3)Data status change affected by a scan
For some target Message IDs, data update or delete process is performed on the web application, which causes change or loss of a data status necessary for displaying pages. As a result, an error page , etc. will be returned and the response will differ from the response when the proxy log was recorded.
In this case, you must take measures such as the following.
-Review the handover settings such as Handler, etc. (especially parameter handover)
-Record the proxy log again.
-Restore the data necessary for displaying pages
-Rearrange the scan scenario (e.g. edit the page transition order)
◆An example of scenario rearrangement
[Related article]How to scan data deletion feature