Version: 2008
  • On MovieTome: See the villain of IRON MAN 2!
Advanced Search
advertisement
advertisement
Click Here

Forum display:

Small business: Help! WAF or Web Application Software.. Which one is better?

by GMan415 - 7/28/09 4:42 PM
Post 1 of 2

Help! WAF or Web Application Software.. Which one is better?

by GMan415 - 7/28/09 4:42 PM

Debating between a WAF from Barracuda Networks or this new Web Application Software called XyberShield (www.xybershield.com).

Any suggestion or feedback would be great....

Thanks,

Post 2 of 2

Since you mentioned XyberShield . . .

by imtheben - 8/3/09 1:01 PM In reply to: Help! WAF or Web Application Software.. Which one is better? by GMan415

Hi, this is Ben English. I'm on the team that developed the XyberShield service.

The Barracuda product is a good WAF; if you're going the hardware route you probably couldn't do better from a price-for-value standpoint.

Few things to be aware of regarding XyberShield:

Because XyberShield is software-as-a-service, it's very unobtrusive. No hardware, obviously, but no real "agent" in the traditional sense -- all you have to add a single line of code to each web page. Similar to adding Google Analytics to a website. Install the code and go. In contrast, setting up a hardware WAF requires you to use someone with technical expertise to redesign your network architecture.

Ongoing maintenance is just as easy. You never have to worry about installing patches or updates. Improvements we make to the defense modules, called XyberFrames, are delivered instantly to all users.

The XyberShield user interface runs in your browser, and is actually pretty fun. Guy who built it is a big James Bond fan, so the dashboard looks like something an ambitious genius would use to rule the world, but an average movie fan would understand most of its functions.

The "behavior-based" aspect of the service is different than anything else you'll see for some time in the web app protection market. This allows XyberShield to protect against types of attacks that a WAF most likely wouldn’t even see -- business logic attacks, navigational abuse attacks, session fixation, and format string attacks.

Do you have any specific questions? Always willing to help. Let me know if you’d like a free trial of the full version of the service.

Best,

Ben

Ben English
benglish@xybersecure.com

Forum legend:
Locked Locked thread
Moderator Moderator
CNET staff CNET staff
Samsung staff Samsung staff
Norton Authorized Support team Norton Authorized Support team
AVG staff AVG staff
Windows Outreach team Windows Outreach team
Dell staff Dell staff
Intel staff Intel staff
Powered by Jive Software