-
Protect against common application vulnerabilities
Signatures and ID tools block hacking methods like SQL injection and cross-site scripting by securing common vulnerabilities such as unchecked input data and weak authentication.
Proactive security
Surround your web applications with a strong security perimeter that establishes a secure session identifier, proactively encrypts cookies and URLs, and applies site usage enforcement.
Real-time alerts and comprehensive reporting
Get immediate real-time alerts and reports on attack trends, application behavior, and more for full audit tracking and logging.
Why choose Stingray Application Firewall software
Sophisticated security policies
The software learns and monitors application patterns. You can test ruleset suggestions in shadow mode prior to enforcing behavior, and improve performance by creating white and black lists.
Distributed architecture avoids common performance limitations
Operations are spread across physical, virtual, cloud, or hybrid environments to avoid hardware bottlenecks and web server constraints.
Helps meet PCI-DSS 6.6 requirements
Business rules protect applications, mask data, and help meet PCI-DSS (Payment Card Industry Data Security Standard) requirements.
"Riverbed Stingray Application Firewall software provides an additional layer of security, giving us peace of mind and optimum protection for our online presence."
— Rob Wilmshurst, CEO, See Tickets
Back to Top
-
Security policies are managed by an administration server and pushed out to a farm of decider processes. Enforcer modules on web and application servers capture traffic bi-directionally and forward to available deciders for validation.
Step 1: Receive, analyze, and act on requests
At runtime, requests are analyzed and assigned a class:
- Legitimate requests are passed to the web application
- Definite attacks are repelled and data is saved to identify and trace the attacker
- Requests whose danger cannot be assessed are either rejected or passed on, depending on the local rating and installed security policy
Step 2: Analyze return traffic from your web applications
Stingray application firewall software also analyzes your web applications’ responses Security-related information such as credit card numbers is filtered so it cannot escape even when the attack is successful, and gathers key behavioral information to further optimize protection.
Step 3: Logging, analysis, tuning
Logging and analyzing of user activities and attack profiles help tune rulesets to eliminate additional suspicious behavior and reduce false positives. Logging and automatic weekly and monthly reports help demonstrate compliance for legal and contractual requirements.
Back to Top
-
Stingray Application Firewall scalable clustered solution
Stingray Application Firewall is available in a uniquely scalable, clustered architecture for data centers and public cloud platforms. Security policies are managed by an administration server and Enforcer and decider components may be scaled as required to meet traffic requirements.
Add-on for Stingray Traffic Manager software
Stingray Application Firewall software is also available as an add-on module to Stingray Traffic Manager software, providing a fully integrated application delivery controller (ADC) and web application firewall solution.

Back to Top
-
Stingray Application Firewall consists of three scalable components:
- Decider Modules apply security policy to traffic bi-directionally. Decider modules are deployed on a cluster of one or more multi-core servers.
- Enforcer Plugins are deployed on origin webservers or proxies and are configured to forward selected traffic to decider cluster.
- An administration Server manages and deploys security policies to the decider cluster and reports on security.
-
System Requirements: Stingray Application Firewall Defender module
|
System Requirements: Stingray Application Firewall Defender module
|
|
Platform requirements
|
Linux 2.6+ (x86_32 and x86_46), Solaris 10 (x86_64 and SPARC), Microsoft Windows 2008 Server x86/x64, or Microsoft Windows 2008 Server R2 x64
|
|
Minimum resource requirements
|
1 GB disk space for program data and logging; 1 GB per core
|
-
System Requirements: Stingray Application Firewall Enforcer Plugin
|
System Requirements: Stingray Application Firewall Enforcer Plugin
|
|
Web server compatibility
|
Apache 2.0 or 2.2 on Linux 2.6+ (x86_32 and x86_46), Solaris 10 (x86_64 and SPARC); J2EE servers running Java 1.2 and later and Servlet API 2.3 and later (e.g. Apache Tomcat); IIS 6 or 7; ISA 2004 or 2006; IAG Server 2007
|
|
Minimum resource requirements
|
1 GB disk space for program data and logging, CPU utilization of webserver should not exceed 60% before deployment of Enforcer plugin
|
-
System Requirements: Stingray Application Firewall Administration Server
|
System Requirements: Stingray Application Firewall Administration Server
|
|
Platform requirements
|
Linux 2.6+ (x86_32 and x86_46), Solaris 10 (x86_64 and SPARC), Microsoft Windows 2008 Server x86/x64, or Microsoft Windows 2008 Server R2 x64
|
|
Minimum resource requirements
|
1 GB disk space for program data and logging; 2 GB memory
|
Back to Top
-
Recent Community Discussions
Back to Top