F5 Offers Advanced Web Security With BIG-IP v10.1

Loading...

Flash Player 9 (or above) is needed to view presentations.
We have detected that you do not have it on your computer. To install it, go here.

0 comments

Post a comment

    Post a comment
    Embed Video
    Edit your comment Cancel

    Favorites, Groups & Events

    F5 Offers Advanced Web Security With BIG-IP v10.1 - Presentation Transcript

    1. BIG-IP V10.1Advanced Web Security
      November 2009
    2. F5 Announcement Highlights
      New release of BIG-IP delivers advanced Web security solutions to help customers efficiently address threats to Web applications
      • Web scraping attack protection
      • Better protection against automated scanners and bots
      • Simplified PCI compliance
      • Reporting with human readable policies to validate compliance with PCI DSS 1.2
      • Secure and Dynamic DNS
      • Meets DNSSEC 2009 government compliance
      • IP Geo-Location database
      • Integrated into F5’s TMOS architecture
      • Announcement date: Nov. 16, 2009
    3. Airline Inventory Vulnerable to Web Scraping
      Ryanair – Stolen data, litigation costs, decreasing revenue
      Wins injunction against Vtours GmBH
      Forbids screen-scraping as commercial use*
      Ryanair sent cease and desist letters to 300 sites
      easyJet warns Expedia: 'Hands off our flights‘
    4. Protection from Web Scraping
      Remote users
      Dublin Datacenter
      Frankfurt Datacenter
      Legitimate users see inventory while scrapers are remediated
      IT Staff
      IT Staff
      Automated scraper
      Comprehensive reporting on scraping attacks
      Web
      Domino
      Network
      Detect requests and determine web site is being scraped
      Web
      Domino
      Network
      BIG-IP 8900
      BIG-IP 6900
      LTM/ASM
      LTM/ASM
      Solution
      Protects valuable intellectual property
      Prices are controlled and users see airline approved inventory
      Integrated scrape reporting for PCI compliance
      Avoid litigation drastically reducing legal costs
    5. Attack Expert System
    6. Improved PCI Compliance Reporting
    7. DNS Infrastructure is VulnerableSpoofing and cache poisoning allow hijacking of domains
      Example.com
      www.example.com?
      www.example.com?
      GSLB
      123.123.123.123
      012.012.012.012
      App Servers
      LDNS
      Cache poisoning
      Problem
      Need to secure DNS infrastructure
      • Cache poisoning and spoofing can hijack DNS records
      • Need a method for trusted responses
      • Need to meet US Government mandate for DNSSEC compliance
      Hacker
    8. Securing the DNS InfrastructureDynamic and secure DNS with Global Traffic Manager
      Example.com
      www.example.com?
      www.example.com?
      BIG-IP GTM
      123.123.123.123
      + public key
      123.123.123.123
      + public key
      App Servers
      LDNS
      Client gets signed, trusted response
      Solution
      Secure and dynamic DNS
      • Ensure users get trusted DNS queries with signed responses
      • Reduce management costs – Simple to implement and maintain
      • Meet mandates with DNSSEC compliant solution
      Hacker
    9. F5 – A Better Solution For Web Security
      BestWAF with protection from Web Scraping (ASM)
      Best WAF to assist administrators in understanding security threats (ASM: Attack Expert)
      Simplified PCI Reporting (ASM)
      Only GSLB with DNSSEC (GTM)

    + DSorensenCPRDSorensenCPR, 2 weeks ago

    custom

    361 views, 0 favs, 0 embeds more stats

    With the new v10.1 release of BIG-IP, F5 tackles ex more

    More info about this document

    © All Rights Reserved

    Go to text version

    • Total Views 361
      • 361 on SlideShare
      • 0 from embeds
    • Comments 0
    • Favorites 0
    • Downloads 14
    Most viewed embeds

    more

    All embeds

    less

    Flagged as inappropriate Flag as inappropriate
    Flag as inappropriate

    Select your reason for flagging this presentation as inappropriate. If needed, use the feedback form to let us know more details.

    Cancel
    File a copyright complaint
    Having problems? Go to our helpdesk?

    Categories