Valari Web Application Firewall v10.3.11

 
PROJECT ID
C083
ASSURANCE LEVEL
EAL2
Security Target (ST)
 
Certification Report (CR)
 
PRODUCT NAME AND VERSION
Valari Web Application Firewall v10.3.11
PRODUCT TYPE
Web Application Firewall & Security Management System
PRODUCT SPONSOR / DEVELOPER
Kaapagam Technologies Sdn Bhd.

PRODUCT SPONSOR / DEVELOPER CONTACT DETAILS

B15-15, I-SOVO@I-City
No. 6, Persiaran Multimedia, Section 7
40000 Shah Alam, Selangor Darul Ehsan

URL: Valari Web Application Firewall
Email: This email address is being protected from spambots. You need JavaScript enabled to view it.
Phone: +603 8992 3172

The TOE is designed to secure web applications from the attacks and provide a security layer by proxy-ing all HTTP(S) traffic and shield web servers and databases from direct access of the attackers irrespective of the underlying application vulnerabilities.

The TOE primary features include:

  • Identification and Authentication: The TOE enables audit functionality to tracks all activities within the TOE boundary network inclusive of its own operations as TOE Application Server.
  • User Data Protection: The TOE protects the web application from external network intrusions by using information flow control between internal and external network. The TOE will log all HTTP requests and responses before allowing or rejecting the HTTP requests.
  • Security Management: TOE functions can be managed through command-line interface. The TOE only allows limited user access to run a limited set of commands.
  • These do not affect the running mode of the TOE.
  • Security Audit: The TOE will generate audit records for HTTP Request and responses. Each audited events will be recorded along with date and time of event, source IP, account user who performed the event, event name, system filename related to event and other event details.