Skip links
Vahagn Vardanian

Vahagn Vardanian

Co-founder and CTO of RedRays

How to Install the RedRays ABAP Security Plugin for Eclipse

The RedRays ABAP Security Plugin allows developers to analyze ABAP code for potential security vulnerabilities directly within Eclipse. Follow these step-by-step instructions to install and set up the plugin:


Step 1: Open Eclipse and Access the Plugin Installation Menu

  1. Launch Eclipse.

  2. Navigate to the top menu bar and click on Help.

  3. From the dropdown menu, select Install New Software… as shown in the screenshot.

    Install New Software

Step 2: Add the RedRays Plugin Repository

  1. In the “Install” dialog, click on the Add… button.

  2. In the popup dialog:

    • Enter the name: RedRays ABAP Security Plugin.

    • For the location, enter the repository URL: https://api.redrays.io/eclipse/update/.

  3. Click Add to confirm.

Add RedRays Repository

Step 3: Select and Install the Plugin

  1. Once the repository is added, the available software list will show the RedRays ABAP Security Scanner Feature.

  2. Check the box next to the plugin name.

  3. Click Next and follow the on-screen instructions to complete the installation.

 

Select RedRays Plugin
Install Plugin

Step 4: Configure the Plugin Settings

  1. After installation, restart Eclipse when prompted.

  2. Go to Window > Preferences.

Choose Preferences
  1. In the Preferences dialog, navigate to RedRays ABAP Security.

  2. Set the following fields:

    • API URL: https://api.redrays.io/api/scan

    • API Key: Enter your unique API key (you should have received this from RedRays by email after purchasing the license https://redrays.io/abap-scanner/).

  3. Click Apply and Close to save the settings.

Enter API Key

 


Step 5: Scan ABAP Code for Vulnerabilities

  1. Open an ABAP code file in Eclipse.

  2. Select the code block you want to analyze.

  3. Click on the RedRays scan icon in the toolbar (refer to the screenshot).

 

Run Scan

Step 6: Review the Scan Results

  1. The scan results will be displayed in a dedicated panel within Eclipse.

  2. Each finding will include:

    • Severity: Indicates the importance of the issue.

    • Title: A brief description of the issue.

    • Description: Detailed information about the identified vulnerability.

    • Data Flow: Shows the context of the vulnerability in the code.

Use this detailed report to address and fix potential vulnerabilities in your ABAP code.

 

Scan Result Window

Explore More

RedRays AI for ABAP Code Security

Empowering Secure, Efficient, and Compliant SAP ABAP Development—in Real Time and Without Data Retention In today’s rapidly evolving business landscape, organizations increasingly

Special offer for SAP Security Udemy course!

$ 9.99

Join “SAP Security Core Concepts and Security Administration” which is part of the Blackhat course series.