Access "Comparative Product Review: Six Web Application Firewalls"
This article is part of the March 2008 issue of Reviews of six top Web application firewalls
No longer can security managers focus only on perimeter and host security. The application has become the prime target for hackers. We review six leading Web application firewalls that help deliver your critical apps securely. Consider how much information gets plugged into databases through applications and then regurgitated in queries, reports and content. We live in a world of HTTP and HTTPS, where everything has been ported to Web-based interfaces and consoles. Traditional network firewalls operating lower on the stack have no way of identifying malicious requests traversing TCP ports 80 and 443 to online shopping sites, Web mail or business portals such as online banking and account services. Add PCI-DSS requirements for application security, and it's easy to see why Web application firewalls, once considered niche technology, are gaining traction in corporate data centers. They prevent attacks that network firewalls, IDS/IPS and antivirus filters cannot by limiting suspect access through combinations of behavioral analysis and policy controls. In a ... Access >>>
Premium Content for Free.
Case Study: Company deploys full disk encryption policy on laptops
One billion-dollar company isn't taking chances with data stored on its laptops. It deployed full disk encryption on every machine, an increasingly popular security strategy.
SonicWALL NSA E5500 product review
Product review of SonicWALL NSA E5500 security tool basic and advanced firewall features, setup, pricing, VPN and wireless security.
Novell's Sentinel 6.0 product review
In this product review of Novell's Sentinel 6.0, an addition to the SIEM market, learn about cost, setup, OS support, configuration and management.
Klocwork Insight Tool Dynamically Tests Security of Applications
Klocwork Insight tool sandbox technology allows developers to test code and security of applications while remaining insulated from the rest of the code.
- Viewpoint: War analogies tread a fine line
- Case Study: Company deploys full disk encryption policy on laptops
Security Services: TraceSecurity Risk Manager
At Your Service
Product review: Palo Alto Networks PA-4050
Imperva SecureSphere Database Gateway product review
Imperva's SecureSphere Database Gateway is evaluated for its installation and configuration, management and monitoring, vulnerability assessment and reporting capabilities.
Security Learning its Role in E-Discovery
Security teams are learning their crucial role in processing e-discovery requests.
Comparative Product Review: Six Web Application Firewalls
No longer can security managers focus only on perimeter and host security. The application has become the prime target for hackers. We review six leading Web application firewalls from Barracuda, Bee Ware, Breach Security, Citrix, F5 and Imperva that help deliver your critical apps securely.
- Security Services: TraceSecurity Risk Manager
Face-Off: Is Security Market Consolidation a Plague or Progress
Bruce Schneier and Marcus Ranum debate the impact of market consolidation on information security.
Interview with Macbook Hacker Dino Dai Zovi
PING: Dino Dai Zovi
E-Discovery Compliance Requires Security Pros to Think As Lawyers Do
Perspectives: Think Like a Lawyer
Researcher Puts Quantitative Measurement on Information Security Threats
Editor's Desk: Score One for Threats
- Face-Off: Is Security Market Consolidation a Plague or Progress
More Premium Content Accessible For Free
FTP gets big files to colleagues and clients fast, but as the headlines remind us, the threat of electronic break-ins is real. This guide to secure ...
As tablets and smartphones become more integrated into business environments, CISOs are scrambling to put effective countermeasures in place. But too...
This Technical Guide examines the necessary elements of, and how to implement, a sound mobile device management strategy. Devices will be lost...