Netinfo Security ›› 2015, Vol. 15 ›› Issue (11): 53-59.doi: 10.3969/j.issn.1671-1122.2015.11.009
Previous Articles Next Articles
XIN Xiao-jie, XIN Yang, JI Shuo
Received:
Online:
Published:
Abstract:
With the rapid development of Web application, the security situation is not optimistic, the majority of Web applications have security vulnerabilities, and the traditional network security equipment for the application layer attack prevention is very limited. The traditional firewall can only protect the network layer, IPS, IDS cannot effectively protect the application layer attacks by flexible encoding and packet segmentation. The Web application firewall works in the application layer, it analysis the HTTP requests and responses, then compares the analysis results to the HTTP attack feature library, blocking Web application attacks, protect application layer effectively. This paper analyzed the HTTP protocol and mainstream web attacks and bypass mode, aiming at the deficiency of the HTTP protocol and the defect of model matching, and it adopted Simhash feature extraction and block prevention and filtering search technology, to propose a based on feature matching of Web Application Firewall System. Experiments show that the Web application firewall can defend against all kinds of Web application layer attacks, effectively solve the problem of the Web attack detection.
Key words: Web application firewall, HTTP, Web attack, Simhash, block search
CLC Number:
TP309
XIN Xiao-jie, XIN Yang, JI Shuo. Research and Design of Web Application Firewall Based on Feature Matching[J]. Netinfo Security, 2015, 15(11): 53-59.
0 / / Recommend
Add to citation manager EndNote|Ris|BibTeX
URL: http://netinfo-security.org/EN/10.3969/j.issn.1671-1122.2015.11.009
http://netinfo-security.org/EN/Y2015/V15/I11/53