
LRavipati170090 (Community Member) asked a question.
2022-04-20T07:15:53.3230421Z ##sectionStarting: Veracode
2022-04-20T07:15:53.3458139Z ==============================================================================
2022-04-20T07:15:53.3458782Z Task : Veracode Upload and Scan
2022-04-20T07:15:53.3459147Z Description : Upload an application to the Veracode Platform for security testing.
2022-04-20T07:15:53.3459466Z Version : 3.11.0
2022-04-20T07:15:53.3459671Z Author : Veracode
2022-04-20T07:15:53.3459950Z Help : [Veracode](http://www.veracode.com)
2022-04-20T07:15:53.3460302Z ==============================================================================
2022-04-20T07:15:53.6694110Z [command]"C:\Program Files\Amazon Corretto\jdk11.0.14_10\bin\java.exe" -version
2022-04-20T07:15:53.8758816Z openjdk version "11.0.14.1" 2022-02-08 LTS
2022-04-20T07:15:53.8759451Z OpenJDK Runtime Environment Corretto-11.0.14.10.1 (build 11.0.14.1+10-LTS)
2022-04-20T07:15:53.8760148Z OpenJDK 64-Bit Server VM Corretto-11.0.14.10.1 (build 11.0.14.1+10-LTS, mixed mode)
2022-04-20T07:15:53.8763183Z Veracode Upload & Scan Task Started
2022-04-20T07:15:53.8764584Z Accessing Endpoint
2022-04-20T07:15:53.8765567Z Get Endpoint URL
2022-04-20T07:15:53.8765931Z Get Auth endpoint
2022-04-20T07:15:53.8766804Z Auth Scheme :Token
2022-04-20T07:15:53.8768291Z filepath: D:\Build\Work\13\a
2022-04-20T07:15:53.8769282Z veracodeAppProfile: Manufacturing-Dev_ELS-Web-App
2022-04-20T07:15:53.8770285Z createProfile: false
2022-04-20T07:15:53.8771203Z failBuildIfUploadAndScanBuildStepFails: false
2022-04-20T07:15:53.8772292Z failBuildOnPolicyFail: false
2022-04-20T07:15:53.8773263Z importResults: false
2022-04-20T07:15:53.8774127Z version: 20220420.7
2022-04-20T07:15:53.8775110Z sandboxName: dailyscan
2022-04-20T07:15:53.8775987Z createSandBox: true
2022-04-20T07:15:53.8776851Z MaximumWaitTime: 360
2022-04-20T07:15:53.8777290Z Autoscan: true
2022-04-20T07:15:53.8778273Z isDebugEnabled: false
2022-04-20T07:15:53.8780181Z Autoscan: true
2022-04-20T07:15:53.8781635Z Directory located
2022-04-20T07:15:53.8840241Z Start Obtaining App Info
2022-04-20T07:15:53.8926807Z [command]"C:\Program Files\Amazon Corretto\jdk11.0.14_10\bin\java.exe" -jar D:\Build\Work\_tasks\Veracode_6292a058-d4f5-407b-b6c6-815df9ee59d6\3.11.0\VeracodeJavaAPI.jar -action getapplist -vid *** -vkey *** -useragent "VeracodeVSTSExtension/3.11.0 (Node/v10.24.1)"
2022-04-20T07:16:15.9957016Z [2022.04.20 02:16:15.945]
2022-04-20T07:16:15.9957864Z [2022.04.20 02:16:15.945] Connection timed out: connect
2022-04-20T07:16:15.9958491Z [xmldom error] invalid doc source
2022-04-20T07:16:15.9958962Z @#line:0,col:undefined
2022-04-20T07:16:15.9965454Z ##errorBuild Failed : Error occurred while accessing the Veracode Platform.
2022-04-20T07:16:15.9972155Z Error Occurred While Mapping Application Information
2022-04-20T07:16:15.9973839Z Problem occurred while accessing application name
2022-04-20T07:16:15.9974621Z Please make sure that either one of following are true,
2022-04-20T07:16:15.9975428Z 1. Application with given name available in Veracode account.
2022-04-20T07:16:15.9977304Z 2. Tick the “Create Application Profile” checkbox if you wish to create new application with given name.
2022-04-20T07:16:15.9978398Z Invalid Veracode Application Name
2022-04-20T07:16:15.9979127Z End Obtaining App Info
2022-04-20T07:16:15.9984382Z Start Obtaining Sandbox Info
2022-04-20T07:16:16.0006152Z [command]"C:\Program Files\Amazon Corretto\jdk11.0.14_10\bin\java.exe" -jar D:\Build\Work\_tasks\Veracode_6292a058-d4f5-407b-b6c6-815df9ee59d6\3.11.0\VeracodeJavaAPI.jar -action getsandboxlist -appid -vid *** -vkey *** -useragent "VeracodeVSTSExtension/3.11.0 (Node/v10.24.1)"
2022-04-20T07:16:16.4330002Z VeracodeJavaAPI v22.1.9.3 cUnknown
2022-04-20T07:16:16.4330658Z
2022-04-20T07:16:16.4331129Z Parsing error(s):
2022-04-20T07:16:16.4331604Z -appid is missing an argument.
2022-04-20T07:16:16.4331903Z
2022-04-20T07:16:16.4332378Z The following parameters are optional for the selected action:
2022-04-20T07:16:16.4332947Z -format -inputfilepath -logfilepath -phost
2022-04-20T07:16:16.4335774Z -ppassword -pport -puser
2022-04-20T07:16:16.4336511Z
2022-04-20T07:16:16.4338555Z Please Recheck Sandbox Name
2022-04-20T07:16:16.4339026Z Sandbox ID : undefined
2022-04-20T07:16:16.4339489Z Sandbox Name : dailyscan
2022-04-20T07:16:16.4340046Z End Obtaining Sandbox Info
2022-04-20T07:16:16.4341135Z Start Creating Application
2022-04-20T07:16:16.4361112Z [command]"C:\Program Files\Amazon Corretto\jdk11.0.14_10\bin\java.exe" -jar D:\Build\Work\_tasks\Veracode_6292a058-d4f5-407b-b6c6-815df9ee59d6\3.11.0\VeracodeJavaAPI.jar -action createsandbox -appid -sandboxname dailyscan -vid *** -vkey *** -useragent "VeracodeVSTSExtension/3.11.0 (Node/v10.24.1)"
2022-04-20T07:16:16.4363475Z [2022.04.20 02:16:16.398] Invalid input
2022-04-20T07:16:16.8851667Z VeracodeJavaAPI v22.1.9.3 cUnknown
2022-04-20T07:16:16.8852261Z
2022-04-20T07:16:16.8852679Z Parsing error(s):
2022-04-20T07:16:16.8853138Z -appid is missing an argument.
2022-04-20T07:16:16.8853441Z
2022-04-20T07:16:16.8853908Z The following parameters are optional for the selected action:
2022-04-20T07:16:16.8854502Z -autorecreate -format -inputfilepath -logfilepath
2022-04-20T07:16:16.8855038Z -phost -ppassword -pport -puser
2022-04-20T07:16:16.8855309Z
2022-04-20T07:16:16.8857217Z Error Occurred While Creating Sandbox
2022-04-20T07:16:16.8858872Z Retrieving application Id failed
2022-04-20T07:16:16.8895765Z [2022.04.20 02:16:16.835] Invalid input
2022-04-20T07:16:16.8989948Z ##sectionFinishing: Veracode
.png)
HI @LRavipati170090 (Community Member) ,
I also see you have opened an integrations ticket on this issue. I also just wanted to post their solution for you.
See below:
Also, from the connection timed out message, could you confirm that if you require proxy settings you configure the Veracode Azure DevOps Extension to use these as described
in the Veracode Documentation below?
https://docs.veracode.com/r/t_TFS_config_build_pipe
Add Veracode Static Analysis to Azure DevOps Pipelines
You can use the Veracode Azure DevOps Extension to integrate Veracode Static Analysis into your Azure DevOps and Team Foundation Server (TFS) build pipelines.
Advanced Scan Settings:
Also, please note that if you are using an Azure DevOps Server, the on-premises agent version of Micrsoft's Azure DevOps and not Azure DevOp Services with the cloud agent,
you will similarly need to confirm that you have access to all of the Veracode IP addresses from your on-premises agent as described in the allow list required by your local IT
group to setup for your communication with Veracode. Can you confirm with your local IT group that your agent has access to these required Veracode IP addresses in the Veracode
Documentation?
https://docs.veracode.com/r/IP_addresses
Allowing Veracode Domains and IP Addresses
If you block internet addresses in your organization, Veracode recommends that you allow Veracode domains and, in some limited cases, IP addresses to ensure there is no disruption in your ability to access Veracode features and products.
If your organization requires that you allow every domain and subdomain for your users to have access to Veracode, add these URLs and IP addresses to your allowlist to avoid disruption in service, based on the products you use:
All Veracode products - Core user interface
All Veracode products - Documentation and assistance
All Veracode products - APIs and integrations
The Veracode Platform and Veracode APIs are available from region-specific domains that you also need to add to your allowlist.
All Veracode products - Access from outside of the United States
All Veracode products - IP address rules
Kind regards,
Steven
Veracode Support Engineer