
Imperva WAF for Amazon Web Service
Overview
SecureSphere Web Application Firewall analyzes all user access to your business-critical web applications and protects your applications and data from cyber attacks. SecureSphere Web Application Firewall can dynamically learn the general behavior of applications and correlate it with globally crowdsourced and real-time updated threat intelligence to provide superior protection. Industry-leading SecureSphere Web identifies and addresses the risk of malicious integration into harmless website traffic and traffic that crosses traditional defenses. This can prevent application vulnerability attacks in real time, such as cross-site scripting, SQL injection, remote command execution; botnets, and DDoS attacks against the web before fraud is executed.
Highlights
- Automatically understand user and application behavior — To accurately detect attacks, a web application firewall must understand application structure, components, and expected user behavior. Imperva's patent-pending dynamic modeling technology automates this process by simply analyzing protected applications and establishing a baseline or whitelist of acceptable user behavior. The app is automatically understood as time changes. Dynamic modeling eliminates the need to manually configure and update numerous application URLs, parameters, cookies, and methods.
- Granular related policies reduce false positives - SecureSphere distinguishes attacks from unusual but legitimate behavior by correlating web requests over time in the security layer. SecureSphere's Correlated Attack Validation (Correlated Attack Validation) checks various attributes such as HTTP protocol compliance, configuration file violations, signatures, special characters, and user reputation to accurately warn or block attacks, and has the lowest false positive rate in the industry. ThreatRadar threat intelligence can be included as an attribute to ensure that policy assessments cover the latest developments in the global threat landscape.
- Research-driven security policies — Backed by the Imperva Application Protection Center (ADC), an internationally recognized security research organization, SecureSphere provides the most complete collection of application signatures and policies available. The Imperva ADC investigates vulnerabilities reported by Bugtraq, CVE®, Snort®, and confidential forums, while also conducting major research aimed at providing the latest and most comprehensive threat intelligence and available web application attack protection.
Details
Pricing
Imperva WAF for Amazon Web Service
Vendor refund policy
We do not support refunds, but customers can cancel at any time. Contact Imperva for more information.
Legal
Vendor terms and conditions
Content disclaimer
Usage information
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Additional details
Usage instructions
Log in to the https://cloud-template-tool.imperva.com/ website to generate the CloudFormation template used for deployment, and upload the generated template to Amazon CloudFormation for automated deployment. Before using CloudFormation, you need to complete a subscription. After completing the subscription, you will receive a subscription email. Without a subscription, EC2 resources cannot be launched during CloudFormation execution.
Step 1: Select WAF Management Server (BYOL) to generate relevant templates and deploy Imperva Mangement Server. Step 2: After the deployment is complete, go to https://Mangement_IP:8083 to import the license. If you need to test, please contact IMPERVA engineers to apply for a test license (Amazon Web Service Account ID required). Step 3: Select WAF Gateway (BYOL) to generate the relevant template and deploy WAF Gateway. The information entered in the management host/IP when generating the template is the IP of the relevant Mangement Server after the first step of deployment is completed.
If you want the WAF Gateway to automatically expand, you need to create an Amazon Web Services Application LB or Classic LB service in advance. After creation, fill in the Load Balancer Names parameter when generating the template. If you do not need the WAF Gateway automatic extension, simply turn off the scaling function when generating the template.
Note: Throughout the deployment process, the default route of the subnet where EC2 is deployed is required to point to the NAT Gateway. For detailed deployment documentation, please refer to the official Imperva deployment manual: https://docs.imperva.com/bundle/v13.5-waf-on-amazon-aws-byol-installation-guide/page/10449.htm
Resources
Support
Vendor support
24x7x365
Amazon Web Services infrastructure support
Amazon Web Services Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.