SoapUI disable replacing
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-05-2021
03:45 AM
10-05-2021
03:45 AM
SoapUI disable replacing
Hello
I'm currently using SoapUI for manual security testing. I have problem with replacing by payloads in client side.
For example entities in my request are replaced on client side. This behaviour makes impossible for me to test some security cases like billion laughs attack.
Is there option to disable that replacement?
Labels:
- Labels:
-
SOAP
1 REPLY 1
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-22-2021
08:44 AM
10-22-2021
08:44 AM
Hi @skyr00zx ,
there is no standard option to disable text evaluation in functional tests, as far as I know.
But for security testing (billion laughs etc.) you can use Security tests and use the prepared messages or define your own, see the picture bellow. The entities aren't evaluated there.
More about security testing in SoapUI at: https://www.soapui.org/docs/security-testing/getting-started/ .
Best regards,
Karel
Karel@apimate.eu
https://apimate.eu
https://apimate.eu
