A Dynamic Application Security Testing (DAST) scanner is a tool to identify potential security issues in applications.
NSX Advanced Load Balancer provides a script called
avi-iwaf-vpatch.py that imports a DAST scanner results. The imported results are used to construct WAF Policy that protects from the security threats found by the scanner. The technique is often called virtual patching.
NSX Advanced Load Balancer supports the following DAST scanners:
The supported scanner format is an XML file containing scanner result report.