Cyberoam Web Application Firewall
Secure websites and Web-based applications in organizations against attacks
Cyberoam offers Web Application Firewall subscription on its UTM appliances to secure websites and Web-based applications in organizations against attacks such as SQL injection, cross-site scripting (XSS), URL parameter tampering, session hijacking, buffer overflows, and more, including the OWASP Top 10 Web application vulnerabilities.
Cyberoam’s Web Application Firewall module follows the positive protection model based on its Intuitive Website Flow Detector that intelligently “self-learns” the legitimate behavior of Web applications. Based on the Intuitive Website Flow Detector, the Web Application Firewall ensures the sanctity of Web applications in response to server requests, protecting them against Web application manipulation attacks. The Cyberoam Web Application Firewall is deployed to intercept the traffic to and from the web servers to provide an added layer of security against attacks before they can reach the Web applications. It looks at every request and response within the HTTP/HTTPS/Web Service layers. The WAF subscription is available on CR50ia, CR100ia, CR200i, CR300i, CR500ia, CR750ia, CR1000ia, CR1500ia series of Cyberoam UTM appliances.
Feature | Feature Description | Benefit |
---|---|---|
Positive Protection model without signature tables |
|
|
Comprehensive business logic protection |
|
|
HTTPS(SSL) encryption offloading |
|
|
Instant web-server hardening |
|
|
Reverse proxy for incoming HTTP/HTTPS traffic |
|
|
URL , Cookie, and Form hardening |
|
|
Monitoring and reporting |
|
|