WAF (Web Application Firewall)

Web Application Protection from Web Vulnerabilities and Attacks

By monitoring website traffic, WAF service protects web applications from different level firewalls and IPS (Intrusion Protection System) can protect.
WAF service can effectively detect and analyze HTTP and HTTPS based security threats that attempt to take advantage of website vulnerabilities.

Overview

01

04

Service Architecture

Samsung Cloud Platform
  • Security Zone : DDoS Protection → (Secured Firewall → IPS) → WAF
  • Service Pool : VPC ( Web Attacks Detection/analysis WAF → disc )
  • WAF → Real-time Monitoring → 24/365 Monitoring
Attacker → Hacking Attacks → Samsung Cloud Platform Legitimate Service User → Samsung Cloud Platform[Security Zone's DDos Detictoin] Attacker → Hacking Attacks → Samsung Cloud Platform ※This service requires Direct Connect and customer's Uplink line connection.

Key Features

  • Intrusion detection and analysis, provide monitoring information
    1. 24/7 event monitoring (alert raising, monthly reports)
    2. Attack categorization through web firewall event analysis (injection, XSS, file include, file upload/download, web scan, etc.)
    3. Detect latest attack patterns (e.g. Apache Struts vulnerability)
  • Intrusion response
    1. Provide IP information in the event of attempted attacks on registered URLs
      (Network firewall on Samsung Cloud Platform recommends blocking)

Let’s talk

Whether you’re looking for a specific business solution or just need some questions answered, we’re here to help