FortiWeb
A FortiWeb can be configured to join a Security Fabric through the root or downstream FortiGate.
Ahmed_Galal
Staff
Staff
Article Id 378071
Description This article describes how to troubleshoot a non-working vulnerability scan with zero results.
Scope FortiWeb.
Solution

Step 1: Enable the vulnerability scan feature at System -> Config -> Feature Visibility.


web vulnerability scan.png

Step 2: At the Scan Profile make sure to include http:// Or https:// in the domain. 

domain.png

 

Step 3: Make sure the domain is resolving to the real server IP and not the public IP, or use the real server IP address instead of the domain.

nslookup.png

 

Step 4: Packet captures the connection between FortiWeb and the real server at Network -> Packet Capture

packet capture.png

 

Related document:
Configuring vulnerability scan profiles