Logo of NSFOCUS
English Version Chinese Version
Solutions
Products
Web Application Firewall
Product Profile
As a new generation of security products that has independent intellectual property, the ICEYE Web Application Firewall (ICEYE WAF), deployed in front of the Web Application Server, is devoted to solve complicated Web application security problems facing our government and enterprises, such as hacker attack, viruses and worms, DDoS attacks, SQL injection, cross-site scripting (XSS), Web application security vulnerability exploitation, and webpage tamper.

ICEYE WAF not only prevents against common Web application attacks and widespread DDoS attacks based on the traditional defense theory, but also provides proactive security defense and brand-new, comprehensive Web application prevention solutions for websites of governments, enterprises, and other businesses and IDCs based on years’ accumulation of research in security problems together with the advanced Web application vulnerability scanning technology.

ICEYE WAF has the following features:
  • Comprehensive Web application prevention: ICEYE WAF prevents against common Web application attacks such as worms, hacker attacks, XSS, and leech, and provides valid defense against SQL injections based on the intelligent signature analysis technique so as to obstruct webpage tamper effectively.
  • High granularity DDoS attack prevention: ICEYE WAF identifies common attack activities such as HTTP Get Flood, and then blocks them in real time; it checks and defends CC attacks based on the intelligent association technique, and provides prevention against attacks on the online game Legend, for example, bot attack, account creation attack, and database attack.
  • Seamless integrated Web vulnerability scanning: ICEYE WAF checks Web application vulnerabilities such as SQL injection and XSS, provides proactive defense, and enforces security of web applications.
  • ICEYE WAF provides software and hardware BYPASS and dual hot standby to ensure the reliability and high availability of the Web service.
  • Considering a lot about users’ habits in using and maintaining the product, ICEYE WAF provides powerful functions, high availability, and flexible management function, and IP-, port-, protocol type-, time-, and domain name-based flexible access control function. Meanwhile, as an object-based virtual prevention product, ICEYE WAF customizes security prevention policies for each user and supports online and offline upgrades.
ICEYE WAF brings following benefits for various customers, as shown in the following table.
Customer Problems Benefits
Government/Enterprise Websites Webpage tamper Reduces the risk of intangible assets loss.
Internet Enterprises DDoS attack, worm attack, sensitive information disclosure caused by SQL injection, and leech Reduces transaction loss, advertisement loss, brand loss, and website recovery cost, etc.; provides scanning of Web application security vulnerabilities and help the website maintainer with its excellent performance/price ratio.
IDC Various common Web application attacks and denial of service attacks Ensures the service availability and continuality to satisfy end users’ high demand on SLA; acts as an important component of the IDC security value-added service platform to make security value addition possible.

ICEYE WAF consists of two models with 100M processing capability: ICEYE WAF 200 and ICEYE WAF 600. They offer single or multiple channel preventions, satisfy all kinds of networking requirements of governments, enterprises, and IDC, and ensure the steady operation of their Web systems.
Pre-Sale Consultation
Contact NSFOCUS sales
Go