As we reach the end of September 2024, ThreadFix version 3.x on-premises has officially reached its End-of-Life. Therefore, there is no longer support or updates for this version of the product. We have fully transitioned our product and development teams to focus ThreadFix SaaS and migrating all customers over from the on-premises versions. Our Customer Success and Support teams are here to help you in migrating to ThreadFix SaaS and maximizing the value you see from this improved offering from Coalfire. This is the next phase of ThreadFix and our team is looking forward to continuing to support you on this journey.

Skip to end of metadata
Go to start of metadata

You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 2 Next »

This endpoint is only supported for the following scanners:

  • Checkmarx
  • Netsparker Enterprise

/rest/{version}/remoteproviders/{remoteProviderAppId}/queueScan


Descriptor

Value

HTTP Method

POST

Description

Queues a scan for the Remote Provider application.

For Checkmarx: Uses the source code repository stored in the ThreadFix application it is mapped to.

For Netsparker Enterprise: Requires a scan to have been imported from Netsparker.

Required Permission

Manage Remote Provider Scans

Version Introduced2.5.0


Request Header Parameters

Parameter

Value

Required

Description

Accept

String

Yes

A value of ‘application/json’ must be provided.


Request POST Data Parameters

Parameter

Value

Required

Description

incremental

Boolean

No

default=false; If true then Checkmarx will execute an incremental scan, where it only checks files that have changed since the last scan.

sync

Boolean

No

default=false; If true the call will wait until the scan is reported finished by the remote provider before returning.

branchName

String

No

The name of the branch in the source repository to pull.  For Checkmarx only.

commitId

String

No

The ID of the commit in the source repository to pull.  For Checkmarx only.

tag

String

No

The name of the Tag in the source repository to pull.  For Checkmarx only.


Sample Call:

curl --insecure -H 'Accept: application/json' -H "Authorization: APIKEY {apiKey}" -X POST --data 'incremental=false&sync=true&branchName=master' http://localhost:8080/threadfix/rest/latest/remoteproviders/2/queueScan


Sample Output:


{
    "message": "",
    "success": true,
    "responseCode": -1,
    "object": "10060"
}

The selected root page could not be found.

  • No labels