A Web Application Firewall (WAF) filters, monitors, and blocks HTTP traffic to and from a web application. While regular firewalls serve as a safety filter between servers, a WAF can filter the content of specific web applications. By inspecting HTTP traffic, it can prevent attacks stemming from web application security flaws, such as SQL injection, Cross-Site Scripting (XSS), Cross-Site Request Forgery (CSRF) and security misconfigurations. When used in environments such as e-commerce platforms and enterprise portals, a WAF is one of the most important security elements to defend the entire platform against attacks.
This article not only describes a solution which can easily be used on the Open Telekom Cloud but also shows how to deploy this approach. The Open Telekom Cloud already provides an anti-DDoS service which compliments and enhances the customer’s whole security solution. Our solution is composed of Open Telekom Cloud public cloud capabilities and the Imperva WAF product. Please note that the Imperva license and application has to be purchased then downloaded separately.