Sign in
Ningxia Region | Beijing Region
Categories
Your Saved List Become a Channel Partner Sell in Amazon Web Services Marketplace Global Expansion Hub Amazon Web Services Home Help
Amazon Web Services Marketplace China: DBSec DBFirewall-EnCloud-Kernel
    Listing Thumbnail

    DBSec DBFirewall-EnCloud-Kernel

     
    A cloud database firewall (DBFirewall-encloud for short) can monitor database activity on the cloud in real time, use comprehensive access control to prevent internal and external attacks on data, and is the last line of defense to protect database security. This product requires a serial proxy and requires cluster deployment. This product requires at least one management terminal (Manager) and two cluster nodes (Kernels) to be deployed. You need to buy both products together to use them together. This AMI is a cluster node (kernel) and needs to be used with the management terminal (Manager). This product supports BYOL and comes with a seven-day free trial license. You can call our technical support hotline at 400 923 1376 for help.

    Overview

    Currently, attacks on cloud databases are intensifying. The main attack methods include:

    1. Exploiting the vulnerability of the application system, intrusion into the database through SQL injection, and data theft (database corruption) is completed. An example of this is the iCloud photo leak.
    2. External hackers use database vulnerabilities to maliciously manipulate databases or obtain database files (drag-and-drop libraries). By exploiting a vulnerability in MongoDB itself, the hacker hacked multiple systems using MongoDB and sent out extortion. Cloud enterprises are increasingly aware of the importance of security, and many enterprises deploy web firewalls (WAF) to prevent attacks from the network. WAF is deployed close to the application server. The protection content is at the WEB level. It is protected based on the content in the Http protocol. It only protects the web server from being manipulated and hijacked by web programs and simple SQL injection, and is powerless against database framework vulnerabilities. Currently, it has been revealed that attackers have more than 150 ways to bypass WAF and directly attack databases. DBSEC DBFirewall-Encloud (DBFirewall-Encloud) are based on active defense mechanisms to control cloud database access behavior, block dangerous operations, and audit suspicious behavior to prevent attacks and ransomware. Cloud database firewalls provide four core product values, including preventing external hacker attacks, preventing dangerous internal operations, preventing sensitive data leaks, and auditing and tracking illegal acts.
    1. Prevent external hacker attacks: Hackers use web application vulnerabilities to inject SQL; or use the web application server as a springboard to attack and invade the database itself. Protection: Capture and block vulnerability attacks through virtual patching technology, and capture and block SQL injection behavior through the SQL injection feature library.
    2. Prevent dangerous internal operational threats: System maintainers, outsourcers, developers, etc. have direct access to the database, and intentional or unintentional high-risk operations damage the data. Protection: Avoid large-scale losses by limiting updates and deleting affected rows, limiting Nowhere updates and deletes, and restricting high-risk operations such as drops and truncates.
    3. Prevent the threat of sensitive data leakage: Hackers and developers can download sensitive data in batches through apps, and internal maintenance personnel can export sensitive data in batches remotely or locally. Protection: Limit the number of data queries and downloads, and limit who, where, and when sensitive data can be accessed.
    4. Audit tracks the threat of illegal acts: Under the temptation of a third party, business personnel complete access to sensitive information, sell information, and tamper with data through functions provided by the business system. Protection: Provides a record of all data access behavior, provides email alerts on risky behavior, and provides post-incident tracking and analysis tools. Note: This product requires an in-line proxy and requires cluster deployment. This product requires at least one management terminal (Manager) and two cluster nodes (Kernels) to be deployed. You need to buy both products together to use them together. When the product is deployed, it requires at least a 500G data disk to boot properly outside of the system disk. This product supports BYOL and comes with a seven-day free trial license. You can call our technical support hotline at 400 923 1376 for help.

    Highlights

    • Tandem proxy deployment to prevent large-scale data leaks and tampering. For different database users, cloud database firewalls provide operation rights for sensitive tables, control the number of rows accessed and affected, and restrict NO WHERE updates and deletions to prevent SQL injection, thus preventing large-scale data leaks and tampering.
    • Virtual patching of database vulnerabilities More than 2,000 database security vulnerabilities have been disclosed on CVE, and these have left the door open to intruders. Database vendors regularly release database bug fixes. Due to the complexity of database patching and application stability considerations, most companies are unable to update the patches in a timely manner. The cloud database firewall provides a virtual patching function, creating a security layer on the network layer outside the database to complete database vulnerability protection when users do not need a patch. The cloud database firewall supports more than 400 virtual patches.
    • Real-time intrusion detection, blocking, and risk alerting.

    Details

    Categories

    Delivery method

    Delivery option
    64-bit (x86) Amazon Machine Image (AMI)

    Latest version

    Operating system
    CentOs release 6.10 (Final)

    Pricing

    DBSec DBFirewall-EnCloud-Kernel

     
    Pricing and entitlements for this product are managed through an external billing relationship between you and the vendor. You activate the product by supplying a license purchased outside of Amazon Web Services Marketplace China, while Amazon Web Services provides the infrastructure required to launch the product. Amazon Web Services Subscriptions have no end date and may be canceled any time. However, the cancellation won't affect the status of the external license.
    Additional Amazon Web Services infrastructure costs may apply. Use the Amazon Web Services Pricing Calculator  to estimate your infrastructure costs.

    Vendor refund policy

    Refunds without reason are not currently supported. Technical support can be resolved for technical issues, and complaints can be made by calling 4009 231 379 for service issues. When there is a problem where the contract cannot be executed, the two parties negotiate and resolve it in a cooperative and communication manner.

    Legal

    Vendor terms and conditions

    Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA) .

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. Amazon Web Services Marketplace China does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Usage information

     

    Delivery details

    64-bit (x86) Amazon Machine Image (AMI)

    Amazon Machine Image (AMI)

    An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.

    Version release notes

    First release

    Additional details

    Usage instructions

    1. The minimum supported EC2 instance configuration is 4-core 8G.
    2. At least a 500G data disk is required.
    3. This product is a DBFirewall cluster node. Please log in to the management page of DBFirewall-enCloud-Manager.
    4. Please call the customer service hotline at 4009-231-376 to apply for a 7-day trial license. For official authorization, please contact the customer service hotline to discuss the purchase.
    5. For a detailed user guide, please call the customer service hotline 4009-231-376 and request it from technical support staff.
    6. This AMI is a cluster node (kernel) and needs to be used with the management terminal (Manager).

    Resources

    Vendor resources

    Support

    Vendor support

    It provides 7 12 hours 400 telephone support, 7 24 hours online support, and supports online service methods such as telephone, WeChat, remote, and video conferencing. For business and technical communication, please call the customer service hotline: 4009 231 376 Official website:

    Amazon Web Services infrastructure support

    Amazon Web Services Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

    Customer reviews

    Ratings and reviews

     
    0 ratings
    5 star
    4 star
    3 star
    2 star
    1 star
    0%
    0%
    0%
    0%
    0%
    0 reviews
    No customer reviews yet
    Be the first to review this product .