The scan playbook

As already mentioned, we are going to be using Docker to run both WPScan and also OWASP ZAP. The reason for this is we would end up deploying quite a bit of supporting software if we were to install both packages directly on the host—while this is not a problem, using a tool such as Docker allows to simplify the installation process as well as giving us an excuse to cover the Docker Ansible modules.

Get Learn Ansible now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.