proxy doesn't work for wss. Auto login doesn't work

mogsilva's Avatar

mogsilva

06 Jun, 2016 08:00 PM

It doesn't work for wss. I get the message "Firefox can't establish a connection to the server at wss://xx.xxx.xxxxx/tel." I tried other browsers as well. OWASP ZAP proxy works fine. Why am I trying to use Arachni then? Because everything is so much better, if only I could log in. I tried the auto login as well. How can I validate a JSON response? Everytime I try it says the check was not found. It seems I can only validate html fields like anchor and stuff, but the problem is all the static files can be accessed even if not authenticated lol(I know that has to be fixed). I just need to check for one of the values of the JSON response when it logs in...how do I do that? I mean there's a POST request with login and password...the response is a JSON. If I put on the check field for example "field:value" it doesn't work...again OWASP ZAP works fine for this...I can crawl the app just fine. But I want to make arachni work because it has a much better UI, generates reports, can schedule and all that. Very user friendly and configurable. It's such a pitty that I can't make it work..

  1. Support Staff 1 Posted by Tasos Laskos on 07 Jun, 2016 07:20 AM

    Tasos Laskos's Avatar

    I'm closing this since you also posted the issue at: https://github.com/Arachni/arachni/issues/729

  2. Tasos Laskos closed this discussion on 07 Jun, 2016 07:20 AM.

Comments are currently closed for this discussion. You can start a new one.

Keyboard shortcuts

Generic

? Show this help
ESC Blurs the current field

Comment Form

r Focus the comment reply box
^ + ↩ Submit the comment

You can use Command ⌘ instead of Control ^ on Mac