Application settings: OpenText ALM
To access this feature, click Edit > Application Settings and then select OpenText ALM.
To integrate OpenText DAST with OpenText Application Lifecycle Management (ALM), you must create one or more profiles that describe the ALM server, project, defect priority, and other attributes. You can then convert an OpenText DAST vulnerability to an ALM defect and add it to the ALM database.
ALM License Usage
Creating or editing a profile consumes a license issued to ALM. The license is released, however, when the ALM application settings are closed. Similarly, sending a vulnerability to ALM consumes a license, but it is released after the vulnerability is sent.
Before You Begin
Make sure that the ALM Client Registration Add-in is installed on the same machine as OpenText DAST before creating a profile. Refer to your ALM documentation for more details.
Creating a Profile
To create a profile:
-
Click Add, and then enter a profile name in the Add Profile dialog box.
-
Enter or select the URL of an ALM server. If you haven't previously visited an ALM site, the list is empty. To enter a URL, use the format http://<qc-server>/qcbin/. Do not append "start_a.htm" (or other file name) to the URL.
-
Enter the user name and password that will allow you to access the server, and then click Authenticate.
If the authentication credentials are accepted, the server populates the Domain and Project lists.
-
Click Connect, and then select a subject in the Defect Reporting group.
-
From the Defect priority list, select a priority that will be assigned to all OpenText DAST vulnerabilities reported to ALM using this profile.
-
Use the Assign defects to list to select the person to whom the defect will be assigned, and then select an entry from the Project found in list.
-
Use the remaining lists to map the OpenText DASTvulnerability rating to an ALM defect rating. If you select Do Not Publish, the vulnerability will not be exported. You must select at least one of the file mappings.
-
To export notes and screenshots associated with an OpenText DAST vulnerability, select Upload vulnerability attachments to defect.
-
In the Required/Optional Fields group, double-click an entry and enter or select the requested information. If you try to save your work without supplying a required field, OpenText DAST prompts you to enter it.
See also
Application settings: Database
Application settings: Directories
Application settings: override SQL database settings
Application settings: Run as a Sensor
Application settings: Server Profiler
Application settings: Smart Update
Application settings: Step Mode