Инструменты пользователя

Инструменты сайта


en:waf50

Web Application Firewall

МThe «Web Application Firewall» (WAF) module is located in the «Security» menu. This module is tracking and blocking all HTTP/HTTPS income and outcome traffic from web-application, installed on ICS or in the local network. By HTTP/HTTPS traffic analyze, WAF can prevent attacks, based on security breaches in Web-applications, like: SQL injections, inter-site scripting (XSS), files execution, misconfigured security.

In the module itself you can see the summary of all system messages of the module with timestamps. The log is divided into pages, you can navigate through it using «next» and «previous» buttons, or you can enter the number of the page you need. The log messages are coloured depending on theirs type. Usual system messages are white, system condition messages (turned on/off) are green, warnings are yellow and errors are red. In the right top corner of the module there is a search string. And also there is an opportunity of choosing a period of log to be shown. By default log is shown for the current day. If necessary, you can save the log to a file, using the «Export» button, or delete the log data for a certain period, using the «Delete logs» button.

To turn the filtering on or off, you need to mark the flag when adding or editing a virtual host (or virtual host with redirection), placed into the «File Server» - «Web» - the «Web-resourses» tab. It should be noted that the web-server should be up and running.

en/waf50.txt · Последние изменения: 2020/01/27 16:28 (внешнее изменение)