-
Task
-
Resolution: Unresolved
-
Undefined
-
None
-
None
-
None
-
None
-
None
-
3
-
False
-
-
False
-
Not Selected
-
ToDo
-
-
-
Very Likely
-
0
-
Unset
-
Unknown
-
None
Objective: Configure RapiDAST to automatically export scan results to the Product Security Centralized Storage for centralized tracking and analysis.
Context: Product Security is currently streamlining DAST integrations across the entire Red Hat portfolio. This initiative automates the reporting process, eliminating the need for your team to manually share results after every scan. Adopting this new workflow ensures alignment with the broader Red Hat SDLC standards.
Action Required: Please complete the following steps to adopt the centralized storage workflow:
- Obtain GCS Access: Request access to Product Security's Google Cloud Storage (GCS) bucket by creating a Merge Request in the SecAut Bucket Access Repository.
- Configure RapiDAST: Update your RapiDAST configuration to route scan results to the central bucket. You can find the required configuration snippets and examples in the following documentation: Exporting RapiDAST Scan Results to ProdSec Central Storage.
Acceptance Criteria:
- Merge Request for GCS access is submitted and approved.
- RapiDAST configuration is successfully updated to include the export step.
- A successful test run confirms that scan results are deposited into the central storage bucket.