CYB 310 : 5-2 Activity: Web Application Firewalls ...
Web Application Firewalls
Overview
Throughout this program, you have studied firewall rules, access control, and how different types of network communication can impact an organization. Now, you will build on these skills and explore web application firewalls.
In this assignment, you will investigate the capabilities and strengths of web application firewalls. These next-generation firewalls are not used as pervasively as basic firewalls. However, it is important to anticipate more widespread use of these in the industry. Understanding web application firewalls will prepare you for the technology that evolves after them. This course will not ask you to create web application firewall rules; however, as you are shaping the traffic, challenge yourself to think about how you could affect the traffic flow if you did create rules for this layer of the OSI model.
Prompt
Using the module’s resources on Snort packages and your other readings from this course, you will explore the capabilities and security benefits of web application firewalls.
You must address the following rubric criteria:
Firewall Fundamentals
Compare the different functions of a web application firewall and a basic firewall.
Identify where a web application firewall and a basic firewall operate in the layers of the OSI model.
Discuss the significance of the layers for responding to threats.
Layered Security Strategy
Describe the organizational security needs that would prompt the use of a web application firewall.
Discuss how a web application firewall assists with the overall defense in depth strategy of an organization.
CIA Triad
Explain how the web application firewall specifically addresses one tenet of the CIA triad (confidentiality, integrity, and availability).