Tag: policy enforcement

This Isn’t Just a Firewall, This… is a Web Application Firewall

Posted on Thursday, May 3rd, 2018

  Firewalls are, in technology terms, as old as the hills. There’s been more ‘next generation’ firewalls than musical genre’s in the 40 odd years they’ve been about. At their heart, they permit or deny packets entering or leaving a network and, useful as that is, little else. Each generation adds something new to the […]

Read More

Simplicity and Security with SSO and Pre-Authentication

Posted on Thursday, August 31st, 2017

Don’t just Authenticate users on your web or application servers. Find out who they are before hand. Why – Would you invite someone into your house (who you had no idea who they were) , sit them down on your sofa and then ask them for ID? Authenticate them as close to the edge as possible […]

Read More

Simple Content Security Policies to Defend Against XSS Attacks

Posted on Saturday, July 8th, 2017

  We’ve covered quite a few security related HTTP headers on the blog in recent weeks but the boss of them all has to be Content-Security-Policy (CSP). The boss, both because of the level of protection it provides but unfortunately also because of the difficulty of implementing it correctly on the first go. As with […]

Read More

How to Secure HTTP Traffic and Protect Users with the HTTP Strict Transport Security Header

Posted on Friday, April 29th, 2016

  It’s amazing that so many specific and active steps still need to be taken to ensure our clients’ and their HTTPS traffic really are as secure as we and they hope. Luckily those steps are quick and simple when you can utilise our flightPATH traffic management rules. flightPATH is a dynamic, event-based rule engine […]

Read More

A HTTP Security Header to Combat ‘Clickjacking’ – How to Improve your Site’s Security with the X-Frame Options Header

Posted on Wednesday, April 13th, 2016

  Perhaps it comes to your attention after a security penetration test or perhaps because you are trying to prevent some party hijacking your site or overlaying it with advertisements. Either way the X-Frame-Options header is a good one to always include in website responses to improve your site’s security and provide some safety to […]

Read More