NSE 2 - Web Application Firewall Flashcards
What is WAFs ?
A WAF is an Appliance or Software , that monitors HTTP, HTTPS Traffic and block malicious traffic to and from web Application, it includes SQL Injection ,croos-site scripting file inclusion, security misconfigurations
Who is the ancestor of WAF ?
Application Firewall that was developed in 1990s
What is RSH
Remote shell
When was the debut of internet
1991
Port numbers of HTTP protocol
Port 80 & port 443
What is an SQL injection ?
A SQL injection attack consists of insertion or “injection” of a SQL query via the input data from the client to the application.
What is Sandboxing ?
Sandboxing is a technique in which you create an isolated test environment, a “sandbox,” to test code without affecting production data.
What are the moder features of web application firewall
- The DDOS Defence
- IP Reputation
- Data loss prevention
What is DLP ?
Dlp stand for data loss prevention /