Waf is an application-level website intrusion prevention system.
Create background
With more and more WEB applications, WEB server has gradually become the main target of attack because of its powerful computing power, processing performance and high value. Security incidents such as SQL injection, webpage tampering, webpage hanging, etc. occur frequently.
In 2007, CNCERT/CC detected that the total number of tampered websites in Chinese mainland reached 6 1228, which was 1.5 times higher than that in 2006. Among them, the Chinese mainland government website has been tampered with 4234 times a month.
Enterprises and other users usually use firewalls as the first line of defense for security systems. However, in reality, there are various security problems in Web servers and applications, and with the progress of hacker technology, prevention becomes more difficult, because these problems are difficult to be detected and stopped by ordinary firewalls, which leads to WAF(Web Application Protection System).
Web application firewall represents a new information security technology, which is used to solve the security problems of Web applications that traditional devices such as firewalls can't do. Unlike traditional firewalls, WAF works at the application layer, so it has inherent technical advantages in protecting Web applications.
WAF, based on a deep understanding of the business and logic of Web applications, detects and verifies all kinds of requests from Web application clients to ensure their security and legality, and intercepts illegal requests in real time, thus effectively protecting all kinds of websites.
WEB application enhancement tool
These functions enhance the security of protected WEB applications, which can not only shield the inherent weaknesses of WEB applications, but also protect the security risks caused by programming errors of Web applications. It should be pointed out that not every device named Web application firewall has the above four functions at the same time.
At the same time, the WEB application firewall also has many characteristics. For example, from the perspective of network intrusion detection, WAF can be regarded as an IDS device running on the HTTP layer. From the perspective of firewall, WAF is a functional module of firewall; Some people also regard WAF as an enhancement of "deep detection firewall".