Protects Web Applications and APIs
Web App and API Protection (WAAP) is a specialized tool for protecting web applications and APIs (including web or micro services), This concept is also called web application and API protection (WAAP). Airlock Gateway protects business-critical, web-based applications and APIs from attacks and unwanted visitors.
Providing a central security service, it examines every HTTP(S) request for attacks and blocks any attempt to steal and manipulate data. APIs are the keystones of digitization. Protecting these applications requires a holistic approach that combines the functions of a modern web application firewall (WAF) with an API security gateway.
Central security interface
Airlock Gateway offers plenty of interfaces to further systems such as SIEM solutions, virus scanners, fraud prevention systems or HSMs. The integrated threat intelligence feed allows Airlock Gateway to respond immediately to current threat situations from the internet and protects against botnets and other dangers that were only discovered in the last 24 hours. A high-availability ICAP interface enables the easy integration of additional components.
Identity-centric access control and single sign-on
Combined with Airlock IAM, Airlock Gateway ensures that every user identity is authenticated and its access is authorized. Airlock IAM determines permissions based on various information, e.g. user roles, sensitivity and context of access or context of access or authentication strength and forwards them to Airlock Gateway. Identity federation standards such as OAuth 2.0, OpenID Connect 1.0, and SAML 2.0 are supported in this process.
Core functions of a WAAP solution
- Bot Management: Protection against malicious bots (incl. automated attacks from vulnerability scanners or content scrapers).
- Protection against DDoS attacks at application level (L7)
- Web Application Firewall (WAF): Protection against web application attacks such as OWASP Top 10 vulnerabilities
- API Protection: Defense against attacks and unauthorized access to internal and public APIs, incl. protection of OWASP API Top 10 vulnerabilities
- Access Management: Modern WAAP solutions cooperate with an IAM system to offer upstream authentication and to achieve continuous adaptive trust.
Key Benefits
- API Gateway protection
- Top 10 OSWAP
- Fraud detection
- Filtering (Attack blocking)
- Threat Intelligence
- Rapid deployment – DevSecOps
- Reporting & monitoring
- SIEM integration
- Virtual patching
- Learning Mode for easier administration
- MS applications
What are you waiting for?
Give us a call or drop by anytime, we endeavour to answer all inquiries
within 24 hours on business days. We will be happy to answer your questions.
Alyasmin – Riyadh
13322 Saudi Arabia
Copyrights All rights reserved by Looptech - Our Privacy Policy