incapsula cloud waf - ingelan · imperva world-class security expertise ... incapsula cloud waf...

36
Powered by Incapsula Cloud WAF Enero - 2013

Upload: lammien

Post on 21-Apr-2018

217 views

Category:

Documents


2 download

TRANSCRIPT

Page 1: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

Powered by

Incapsula Cloud WAF

Enero - 2013

Page 2: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

Incapsula Cloud WAF Overview

Page 3: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

3

Threat Central 360 Global Threat Detection & Analysis

Enables early detection across the entire proxy network:

Threats Attack vectors Instant application of protection rules

Reverse Proxy Network Globally Distributed, High-Performance Reverse Proxies

Inspect web traffic Enforce application protection

Incapsula Cloud WAF Delivery Model

Page 4: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

100% Cloud-based service + Can be consumed by any cloud-based web application

+ Other WAF solutions are software or appliance based

– Can not be deployed on public cloud infrastructures

Capacity elasticity + Customers don’t have to provision for additional capacity or pay for excess

capacity

Flexible pricing plans + Pay as you go & grow (1-yr, 2-yr, 3-yr subscriptions)

+ Payment per capacity and number of websites

4

Ideal for Cloud Platforms/Applications

Page 5: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

Perfect for Small to Mid-Enterprise Businesses

Effortless deployment + Performed by making a simple DNS change

+ No software or hardware to install, no application changes

Affordable and lowest total cost of ownership + Software-as-a-Service delivery model

+ Low annual costs significantly reduces capital expenditures and operational costs

+ Does not require additional resource investment

Imperva world-class security expertise + Around the clock health monitoring and support

+ Continuous policy tuning and proactive security event management

+ Threat alert notifications and security reports

5

Page 6: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

Service Provider Oriented

Multi-tenant architecture

Effectively manage a large portfolio of customers with minimal human resources

Extend enterprise-grade application security to customer base

Use as a platform for offering additional, value-added IT services

6

Page 7: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

Web Application Security

Full Blown, Enterprise-grade Web Application Firewall + Leverages years of Imperva security expertise with a new SaaS-based delivery

model

Protects against current application level threats + SQL Injections

+ Cross Site Scripting

+ Illegal resource access

+ Malicious bots

+ And OWASP Top 10 threats

+ Completely eliminates automated and undesired traffic to your site

o Spam bots o Content scraping o etc.

Achieve PCI compliance (PCI DSS 6.6)

7

Page 8: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

Improve Website Performance

Dynamic Content Caching + Advanced algorithms that ensure page freshness while significantly reducing

server load

Traffic Shaping + Transformation of cached content into an optimized format to speedup

delivery

Connection Optimization + Smart handling of session connections to accelerate traffic delivery

Reduce bandwidth usage (50%+)

8

Page 9: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

Monitoring & Improved Reliability

Reduce Web server load (25%+) + Improved server utilization due to caching

Ensure optimal performance + Monitor EVERY web transaction

+ Identify website errors and slow loading pages

+ Automatically alerts you to minimize downtime

Automatic alerts when site is down or errors occur + Pin-points root cause of issues

+ Correlates client characteristics, referrers and overall throughput

9

Page 10: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

Incapsula Cloud DDOS Protection

Load distribution

Scaling to multi-gigabit throughput

Preserves uptime

Load distributed on Imperva Cloud

DDoS attack traffic is blocked

Websites

2 Gbps

20 Mbps

Page 11: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

Full DDoS Attack Protection

Stops all DDoS threats

+ Application & network attacks

+ Proprietary technology

differentiates humans from bots & search engines

– Analyzes HTTP redirect, cookie, and JavaScript execution capabilities

Scales beyond customer’s Internet connection limit

+ Plans support DDoS attacks that burst to 2 Gbps or 4 Gbps

11

User Attacker Malicious Bot

Search Engine

Page 12: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

12

Security Menu Basic (Included)

Advanced

Security alert email notifications X X

Incident response Ad-hoc Pro-Active

Policy tuning Ad-hoc Pro-Active

Dashboard and stats X X

Weekly report X X

Auto-generate tickets via email or phone X X

Online customer portal to view or edit an open ticket X X

24x7 Support X X

SLA (Response time) General - 8 hr

Critical - 4 hr

General – 4 hr

Critical – 2 hr

Cloud WAF Managed Security Service

Page 13: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

Incapsula Cloud WAF Summary

Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6

Avoid search engine blacklisting

Safeguard websites from current and emerging threats

Reduce bandwidth

Reduce web server load

13

Page 14: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

Powered by

Product Demo

Imperva, Inc.

950 Tower Lane, Suite 1550, Foster City, CA 94404

Sales: +34 934 302 989 www.imperva.com

Page 15: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

15

Easy Setup - Login

Page 16: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

16

Easy Setup – Enter Domain

Page 17: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

17

Easy Setup – Automatically gather site data

Page 18: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

18

My Sites

Page 19: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

19

Easy Setup – Update A Record & CNAME

Page 20: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

20

My Sites

Page 21: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

21

Dashboard - Traffic

Page 22: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

22

Dashboard - Traffic

Page 23: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

23

Dashboard - Threats

Page 24: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

24

Dashboard - Performance

Page 25: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

25

Dashboard – Recent Updates

Page 26: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

26

Visits

Page 27: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

27

Visits - More

Page 28: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

28

Visits – Add to Whitelist

Page 29: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

29

Settings - General

Page 30: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

30

Settings - Notifications

Page 31: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

31

Settings - Threats

Page 32: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

32

Settings - Threats

Page 33: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

33

Settings - Threats

Page 34: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

34

Settings - Access

Page 35: Incapsula Cloud WAF - Ingelan · Imperva world-class security expertise ... Incapsula Cloud WAF helps organizations Meet PCI compliance requirement 6.6 Avoid search engine blacklisting

35

Settings - Permissions