Skip to main content

Web application firewall (WAF)

Keep your site and your online services out of an attacker's reach

A web application firewall reads the traffic arriving at your site the way your application does, and refuses the requests that were written to break it: SQL injection, cross-site scripting, brute force sign-in attempts and a long tail of everything else. Mashhad Cloud fits the rules to what your business actually serves and runs the thing for you, so the service stays fast, stays up, and stays yours.

Talk to us

Where a web firewall earns its place

What a web firewall does

What Mashhad Cloud's web firewall gives you

What it is worth

  • A safer website

    Intrusion and the abuse of known weaknesses both stop before they land.

  • The service stays reachable

    Fewer of the outages a flood of malicious traffic would otherwise cause.

  • Less exposure to attack

    Threats are recognised and stopped before they reach the server.

  • Your users' data protected

    Sensitive records are harder to reach and harder to leak.

Frequently asked questions

  • Does a WAF slow a website down?

    A correctly configured WAF has a very small effect on speed, small enough that in practice it is not noticed.

  • Does a WAF stop DDoS attacks?

    A WAF identifies and blocks layer 7 attacks, the ones aimed at the application. Volumetric DDoS at the lower layers usually needs a dedicated anti-DDoS service, though some WAFs offer limited protection of their own.

  • Can we define our own rules?

    Yes. Custom rules can be written around what your application or your organisation needs, blocking or allowing suspect traffic on your terms.

  • Can a WAF protect an API?

    Yes. A WAF protects APIs against the same layer 7 attacks it protects a site from: injection, request tampering and abuse of application logic.

  • What is a WAF?

    A web application firewall inspects HTTP and HTTPS traffic and blocks malicious requests, SQL injection, cross-site scripting (XSS) and other application-layer attacks among them, before they reach the server.

  • How does a WAF differ from a network firewall?

    A network firewall works at layers 3 and 4, filtering traffic by address and port. A WAF works at layer 7: it reads the content of HTTP requests and responses, and identifies the attacks aimed at the web.

Reading on web firewalls