Related documents

This topic describes documents that provide information about OpenText Application Security Software products.

You can find the Application Security Product Documentation at https://www.microfocus.com/support/documentation. Most guides are available in both PDF and HTML formats. Product help is available within the Fortify License and Infrastructure Manager (LIM) and the OpenText DAST products.

All products

The following documents provide general information for all products. Unless otherwise noted, these documents are available on the Product Documentation website for each product.

Document / file nameDescription

About OpenText Application Security Software Documentation

appsec-docs-n-<version>.pdf

This paper provides information about how to access OpenText Application Security Software product documentation.

This document is included only with the product download.

OpenText Application Security Software Release Notes

appsec-rn-<version>.pdf

This document provides an overview of the changes made to OpenText Application Security Software for this release and important information not included elsewhere in the product documentation.

OpenText SAST

The following documents provide information about OpenText SAST (Fortify Static Code Analyzer). Unless otherwise noted, these documents are available on the Product Documentation website at https://www.microfocus.com/documentation/fortify-static-code.

Document / file nameDescription

OpenText™ Static Application Security Testing User Guide

sast-ugd-<version>.pdf

This document describes how to install and use OpenText SAST to scan code on many of the major programming platforms. It is intended for people responsible for security audits and secure coding.

OpenText™ Static Application Security Testing Custom Rules Guide

sast-cr-ugd-<version>.zip

This document provides the information that you need to create custom rules for OpenText SAST. This guide includes examples that apply rule-writing concepts to real-world security issues.

This document is included only with the product download.

OpenText™ Fortify License and Infrastructure Manager Installation and Usage Guide

lim-ugd-<version>.pdf

This document describes how to install, configure, and use the Fortify License and Infrastructure Manager (LIM), which is available for installation on a local Windows server and as a container image on the Docker platform.

OpenText Application Security Tools

The following documents provide information about OpenText Application Security Tools. These documents are available on the Product Documentation website at https://www.microfocus.com/documentation/fortify-static-code-analyzer-and-tools.

Document / file nameDescription

OpenText™ Application Security Tools Guide

sast-tgd-<version>.pdf

This document describes how to install application security tools. It provides an overview of the applications and command-line tools that enable you to scan your code with OpenText SAST, review analysis results, work with analysis results files, and more.

OpenText™ Fortify Audit Workbench User Guide

awb-ugd-<version>.pdf

This document describes how to use Fortify Audit Workbench to scan software projects and audit analysis results. This guide also includes how to integrate with bug trackers, produce reports, and perform collaborative auditing.

OpenText™ Fortify Plugin for Eclipse User Guide

ep-udg-<version>.pdf

This document provides information about how to install and use the Fortify Plugin for Eclipse to analyze and audit your code.

OpenText™ Fortify Analysis Plugin for IntelliJ IDEA and Android Studio User Guide

iap-udg-<version>.pdf

This document describes how to install and use the Fortify Analysis Plugin for IntelliJ IDEA and Android Studio to analyze your code and optionally upload the results to Fortify Software Security Center.

OpenText™ Fortify Extension for Visual Studio User Guide

vse-ugd-<version>.pdf

This document provides information about how to install and use the Fortify Extension for Visual Studio to analyze, audit, and remediate your code to resolve security-related issues in solutions and projects.