Eureka AIR delivers breakthrough ideas for toughest innovation challenges, trusted by R&D personnel around the world.

Web application protection method and system, and Web application firewall

A web application and firewall technology, applied in the Internet field, can solve the problems that WAF processing capacity cannot support large concurrent access, reduce WAF protection performance, etc., achieve the effect of good concurrent access and improve protection performance

Active Publication Date: 2018-05-11
CHINA TELECOM CORP LTD
View PDF8 Cites 11 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003] At present, the rules of WAF are compiled mainly by collecting the weaknesses of general application systems, and the configuration is all rules applicable to various applications. However, with the increase of various Web applications, when the rule base is large, the processing capacity of WAF Unable to support large concurrent access, reducing the protection performance of WAF

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Web application protection method and system, and Web application firewall
  • Web application protection method and system, and Web application firewall
  • Web application protection method and system, and Web application firewall

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0023] The following will clearly and completely describe the technical solutions in the embodiments of the present invention with reference to the accompanying drawings in the embodiments of the present invention. Obviously, the described embodiments are only some, not all, embodiments of the present invention. The following description of at least one exemplary embodiment is merely illustrative in nature and in no way taken as limiting the invention, its application or uses. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without making creative efforts belong to the protection scope of the present invention.

[0024] In the existing technology, WAF is configured with full rules applicable to various applications. With the increase of various web applications, when the rule base is large, the processing capability of WAF cannot support large concurrent access, which reduces the WAF In order to solve th...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a Web application protection method and system, and a Web application firewall, and relates to the technical field of the Internet. The method disclosed by the invention comprises the following steps: the Web application firewall obtains an access request of a user, obtains a corresponding protection rule of a Web application to be accessed by the user according to the access request of the user, loads the protection rule, and uses the protection rule to protect the access request of accessing the Web application. In the Web application protection method and system disclosed by the invention, corresponding protection rules are flexibly set for different Web applications, the WAF does not uniformly configure all protection rules, and when an access request arrives, the WAF obtains the protection rule of the Web application to be accessed by the access request, dynamically loads the protection rule and finally uses the protection rule to perform protection processing on the access request. As the WAF neither needs to configure full rules, nor needs to perform full-rule matching protection for each request, concurrent access can be better supported, and the protection performance of the WAF is improved.

Description

technical field [0001] The invention relates to the technical field of the Internet, in particular to a protection method and system for Web applications and a Web application firewall. Background technique [0002] WAF (Web Application Firewall, Web Application Firewall) is designed for Web applications by implementing a series of security policies for HTTP (Hyper Text Transfer Protocol, Hypertext Transfer Protocol) or HTTPS (Hyper Text Transfer Protocol Secure, Hypertext Transfer Security Protocol). A product that offers protection. [0003] At present, the rules of WAF are compiled mainly by collecting the weaknesses of general application systems, and the configuration is all rules applicable to various applications. However, with the increase of various Web applications, when the rule base is large, the processing capacity of WAF It cannot support large concurrent access, which reduces the protection performance of WAF. Contents of the invention [0004] A technical...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06H04L29/08
CPCH04L63/0263H04L67/02
Inventor 张建宇王锦华黄铖斌龙洋
Owner CHINA TELECOM CORP LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Eureka Blog
Learn More
PatSnap group products