Web application firewall system based on nginx + Lua and implementation method thereof
Patent Information
- Authority / Receiving Office
- CN · China
- Patent Type
- Applications(China)
- Current Assignee / Owner
- FUZHOU BOKE WANGAN INFORMATION TECH CO LTD
- Publication Date
- 2016-01-06
- Estimated Expiration
- Not applicable · inactive patent
Smart Images
Figure 1 Figure 2
Abstract
Description
technical field
[0001] The invention relates to the field of network security intrusion detection, in particular to an nginx+lua-based web application firewall system and an implementation method thereof. Background technique
[0002] The purpose of web application firewall (waf) is to enhance the security of web applications and protect web applications from known and unknown attacks. At present, the world's largest web server is none other than apache, and its development time is very long. It is precisely for this reason that the current mainstream web firewalls generally use the technical solution of apache+modsecurity. modsecurity is an open source project that can be shipped as a module of the Apache web server or as a stand-alone application.
[0003] However, the apache+modsecurity mode has the following problems:
[0004] First, there is a bottleneck in apache web server performance. The Apache server has been around for too long. In the era of its rise, the sca...