OpenVAS REST API Integration
Java Spring Boot Vulnerability Management API
Developed a Java Spring Boot REST API wrapping OpenVAS/GVM (gvm-cli) and integrated Traefik routing for secure browser access to the external scanner—extending proactive security automation within the KC platform ecosystem.
Client
Luxottica
Completion
Ongoing
Category
Security & Compliance
Also: Secure AI & Automation
Part of platform
KC Enterprise AI & Operations Platform →Situation
Infrequent external NESSUS assessments left gaps between audit cycles. Teams needed programmatic, on-demand scanning integrated with internal Azure inventory and automation tooling.
Task
Build and maintain a REST API layer over OpenVAS/Greenbone that operations and integration pipelines can call securely, aligned with azops-greenbone sync workflows.
Action
→Proxied external OpenVAS via Traefik with scoped TLS middleware and static-asset exception routes on the production retail IT host
→Wired AzTools Greenbone adapter sync for VM inventory to scanner target alignment
→Implemented Spring Boot REST API using gvm-cli to communicate with OpenVAS/GVM scanners
→Merged azops-greenbone sync features for operational alignment with Azure inventory programs
→Documented API contracts for integration with internal security and cloud asset workflows
Results
✓Enabled on-demand vulnerability scanning reducing reliance on periodic external assessments
✓Provided programmatic integration surface for security automation within Luxottica NA IT operations