WAF
Cloud Web Application Firewall WAF) service offering secures state web applications, data, services, and records that may contain Personally Identifiable Information (PII) such as financial, medical or any private data. The Cloud WAF sits in front of the application server, inspecting and filtering traffic between the web application and the internet. This service can help defend web applications from attacks such as cross-site request forgery (CSRF), cross-site-scripting (XSS), Distributed Denial of Service (DDOS) attacks, file inclusion, and SQL injection.
Cloud WAF features include:
- Continuous Security Delivery
- Device Fingerprinting for Bot Protection
- API Protection
- Unique Out-of-Path Deployment with Full Migration
- Data Leak Prevention
- Integrated Application Security and Application Delivery
The Cloud WAF service offering is charged through a flat rate per license and an allocated proportion of the overall cost of throughput based on the throughput used by a particular web application.
Bot Manager
Cloud WAF includes Bot Manager, a non-intrusive API-based Bot Management solution. Bot Manager detects, eliminates, and manages bot traffic from websites, mobile apps, and APIs in real-time. The solution leverages Intent-based Deep Behavior Analysis, device fingerprinting, and domain-specific detection technologies to identify and eliminate invalid traffic without generating false positives, protecting users against automated attacks such as account takeover, ad fraud, API abuse, application DDoS, card fraud, content scraping, form spam, skewed analytics, and other nefarious activities.
Bot Manager features include:
- Intent-based Deep Behavioral Analysis
- Ability to Handle Bot Traffic in Multiple Ways
- Transparent Reporting and Comprehensive Analytics
- Negligible False Positives
- No DNS Redirection
- Accuracy and Scalability
- Easy Integration