 |
Forum XWall™ Specifications |
 |
|
XML INTRUSION PREVENTION |
 |
Detect and control XML 1.0 and SOAP 1.1/1.2 traffic based on pre-defined criteria
|
 |
Prevent attacks and isolate vulnerabilities
|
 |
Real-time responses: logging, allowing/denying and dropping sessions
|
 |
Malicious Payloads
|
 |
Denial of Web Service
|
 |
WSDL Scanning
|
 |
Parameter Tampering
|
 |
SQL Injection
|
 |
Command Injection
|
 |
External Entity Attack
|
 |
Schema Poisoning
|
 |
Routing Detours
|
 |
Buffer Overflows
|
 |
Replay Attack
|
|
| DATA-LEVEL AUTHORIZATION |
 |
Authentication using HTTP username/password and SSL X.509 Certificates
|
 |
Granular access control at the SOAP operation & message level
|
 |
WSDL based policy configuration and enforcement
|
 |
Ability to publish / search WSDL document via secure UDDI directory
|
 |
Web Services Virtualization based on access control lists and WSDL aggregation
|
|
| MONITORING & AUDITING |
 |
Digitally signed logs, SNMP traps and Syslog support
|
 |
Quarantine and archive suspicious transactions
|
 |
Web services traffic activity reporting and anomaly notification
|
 |
Real-time monitoring of SOAP service, operation and message
|
 |
SOAP fault and exception management
|
|
| DATA-LEVEL VALIDATION |
 |
Check requests and responses, for conformance of data types, structure and content
|
 |
Protect against unsecured namespaces, URIfs and external references
|
 |
Prevent attacks against WSDL ports, operations & messages
|
 |
WS-I Basic Profile design-time and run-time enforcement
|
 |
Content filtering using XPath, Schema editing and regular expressions
|
|
| STANDARDS AND INTEROPERABILITY |
 |
WS-I Basic Profile
|
 |
XML 1.0, SOAP 1.1/1.2 and WSDL 1.1
|
 |
HTTP 1.0/1.1, SSL 2.x, v3 and TLS
|
 |
XML Schema 1.0, DTD, XPath 1.0 and SOAP with Attachments
|
|
SSL ACCELERATION & POLICY ENFORCEMENT |
 |
SSL/TLS proxy origination and termination
|
 |
Client/Server (2-way) X.509 mutual authentication
|
 |
FIPS 140-2 Level III Hardware Security Module
|
|
|
|
|
© Copyright 2001-2008, Forum Systems, Inc. All rights reserved.