Skip to main content

Configuring the Checkmarx One Vulnerability Integration

Configuration is done initially and is a one-time activity. Please ensure that the required permissions are active before proceeding. See here for a list of the permissions.

To Configure the Checkmarx One Vulnerability Integration:

  1. Navigate to your instance of Service Now and log in.

  2. Search for Checkmarx One Vulnerability Integration.

  3. Click Configuration.

    CheckmarxOne_Vulnerability_Integration_Configuration.png
  4. Provide the information required to complete the Checkmarx One configuration.

    Note

    Fields marked with a red asterisk are compulsory.

  5. Enter the following in the required fields on the Configuration page:

    • IAM URL: Checkmarx One IAM URL (remove ‘/’ from the end of the URL)

    • API Base URL: Checkmarx One Base URL (remove ‘/’ from the end of the URL)

    • Tenant: Checkmarx One Tenant

    • Client ID: Oauth 2 Client ID

    • Client Secret: Oauth 2 Client Secret

    • Select Include SCA, Include SAST, Include IaC, Include Container Security, Include API Security, Include 2MS, Include OSSF Scorecard , or all to get the scanner results.

  6. Click Save and Test Credentials.

    CxOneConfigSN.png

The URL will be the same for Single Tenant, IAM URL, and API Base.

Single_Tenant_IAM_Url_and_APL_Base_Update.png

The system tests the credentials and confirms if the validation is successful.

If the authentication is successful, continue to perform the Checkmarx One Vulnerability Integration.