SonicWall :: Subscriptions

Web Application Firewall

Utilising a dynamically updated signature database to detect sophisticated Web-based attacks and protect Web applications including SSL VPN portals


SonicWALL Web Application Firewall Service applies reverse proxy analysis of Layer 7 traffic against known signatures, denies access upon detecting Web application malware, and redirects users to an explanatory error page.

Select Subscription for SonicWall product:

Please Select Your Product:

Please Select Your Subscription:

None Available
Features and Benefits

Open Web Application Security Project (OWASP) Top 10 Vulnerability Protection addresses leading security risks based on prevalence and severity of attacks, as included in PCI DSS 6.6 and other industry standards.


Cross-site request forgery protection blocks this sophisticated type of Web site attack.


Automatic signature updates ensure up-to-date protection by enabling administrators to schedule automatic updates for Web application malware signatures.


Strong Authentication and Authorisation to any internal or external Web site(e.g. e-commerce Web sites). This supports compliance initiatives by preventing unauthorised access to your internal and external Web sites. Authentication support includes token-based two-factor authentication, client certificate authentication and tokenless one-time passwords. Granular Access Policies can authorize access to various Web servers based on Hostname, Subnet, IP Address, Port and URL Path.


Information disclosure protection can block access to Web sites containing administrator-defined keywords or phrases, preventing leakage of sensitive information.


Robust dashboard provides an easy-to-use Web-based management interface featuring status page overview of all monitoring and blocking activities such as signature database status information and threats detected and prevented since boot-up.


Flexible policy settings enable administrators to apply signature settings based on threat severity as well as set Exclusion List per signature.


Comprehensive audit log makes logging and reporting available for auditing, compliance and reporting purposes.


Session management allows administrators to set global timeouts based on user inactivity.


Anti-evasion measures normalize requests (e.g., standardizing encoded or suspect character sets or path names) prior to analysis.


HTTPS inspection can block attacks embedded into SSL-encrypted packets.


Acceleration features include content caching, compression and connection multiplexing, and improve the performance of protected Web sites, significantly reducing transactional costs.

0845 270 7744

SecurityMetrics for PCI Compliance, QSA, IDS, Penetration Testing, Forensics, and Vulnerability Assessment
Copyright © 2012 NetThreat Ltd.