Agent Token encryption

This document is for:
Invicti Enterprise On-Demand, Invicti Enterprise On-Premises

Encrypting an Invicti Agent Token serves as a fundamental security measure to safeguard sensitive information and enhance the integrity of the system. By encrypting the Agent Token, you can mitigate the risk of unauthorized access or tampering with critical data transmitted between the Invicti Agent and its corresponding components.

How to encrypt the API Token

  1. Log in to Invicti.
  2. Locate the Agent Token and use the blue copy button to copy the token.

  1. Open Terminal and execute the following command, replacing <Agent Token> with the genuine Agent Token from Invicti.

Netsparker.Cloud.Agent.exe -e <Agent Token>

  1. Terminal will return the encrypted token. Copy this token.
  2. Locate the 'appsetting.json' file and input the encrypted token value into the ‘ApiToken’ parameter.

  1. Save the file.

