AWS WAF

Categories

Category:

Tags

Vendor

Overview

AWS Web Application Firewall was integrated by Mindflow to enable users to automate their incident management and better protect their information system.

AWS WAF Overview

AWS WAF is a web application firewall that helps protect your web applications or APIs against common web exploits and bots that may affect availability, compromise security, or consume excessive resources.

The solution gives you control over how traffic reaches your applications by enabling you to create security rules that control bot traffic and block common attack patterns, such as SQL injection or cross-site scripting. You can also customize rules that filter out specific traffic patterns.

Managed Rules for AWS WAF are available as a starting point. It’s a pre-configured and regularly updated set of rules governed by AWS or AWS Marketplace Sellers to address issues such as OWASP Top 10 security risks and automated bots that consume excess resources, skew metrics, or can cause downtime.

AWS WAF includes a full-featured API that is integrated by Mindflow. This way, you can pull the API to automate the creation, deployment, and maintenance of security rules from Mindflow without the code.

aws waf

Benefits

Agile protection against web attacks

Quickly update security across your environment when issues arise. The solution protects web applications from attacks by filtering traffic based on rules that you create, such as IP addresses, HTTP headers, HTTP body, or URI strings.

Save time with managed rules

Quickly get started with the Managed Rules set for AWS WAF. Many rule types are available, sets addressing issues like OWASP Top 10 security risks, threats specific to Content Management Systems (CMS), or emerging CVE. These rulesets are automatically updated as new issues arise.

Improved web traffic visibility

Granular control over the metrics emitted allows you to monitor the rule level and the total inbound traffic. The solution offers comprehensive logging by capturing each inspected web request’s complete header data for use in security automation, analytics, or auditing purposes.

Ease of deployment & maintenance

Deploy and protect applications deployed on Amazon CloudFront as part of CDN solution, the Application Load Balancer that fronts all your origin servers, Amazon API Gateway for REST APIs, or AWS AppSync for your GraphQL APIs. No additional software to deploy, DNS configuration, SSL/TLS certificate to manage, or a reverse proxy setup.

Easily monitor, block, or rate-limit bots

Within the WAF console, you can monitor common bots, such as status monitors and search engines, and get detailed, real-time visibility into the category, identity, and other details of bot traffic. You can also block or rate-limit traffic from pervasive bots, such as scrapers, scanners, and crawlers.

Automation Through Mindflow

Automation Use Case

Related Integrations