cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2431
Views
5
Helpful
3
Replies

Can the ASA block sql injection

shanemcanuff
Level 1
Level 1

I would like to know which model of the ASA can block sql injections to help keep a web server safe.

3 Replies 3

bwallander
Level 1
Level 1

All ASA models should be able to accommodate for this using a specific enough regex string within an inspect class-map riding in an http inspect policy-map. You'd have to know what you are looking for to match with regex, whose config lines are limited to 100-something chars. For something more scalable and configurable, a full-fledged IPS would probably be preferred.

jim_berlow
Level 3
Level 3

You might also take a look at the ACE Web Application Firewall (WAF). This product is specifically designed for protecting websites against attacks like this (and a number of other web specific attacks).

Jim

suschoud
Cisco Employee
Cisco Employee

Any ASA with IPS module in it can take care of all types of known attacks.

the signature definition database of ips gets updated every week/ 15 days.you can set it up to auto update and it'll fetch those definitions on it's own.

f/w with intrusion prevention system is the complete solution to go for.Alone,f/w is not effective enough when it comes to layer 7 inspection.

hTh

Sushil

TAC

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card