The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
May. 30, 2023

Filed:

Dec. 30, 2019
Applicant:

Radware, Ltd., Tel Aviv, IL;

Inventors:

Vladimir Shalikashvili, Petah-Tiqwa, IL;

Dekel Cohen, Neve Yarak, IL;

Ayelet Shomer, Shoham, IL;

Assignee:

RADWARE LTD., Tel Aviv, IL;

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 9/40 (2022.01); H04L 9/32 (2006.01); H04L 67/02 (2022.01);
U.S. Cl.
CPC ...
H04L 63/0209 (2013.01); H04L 9/3242 (2013.01); H04L 9/3247 (2013.01); H04L 63/0245 (2013.01); H04L 63/0263 (2013.01); H04L 63/0838 (2013.01); H04L 63/0846 (2013.01); H04L 63/101 (2013.01); H04L 63/126 (2013.01); H04L 63/20 (2013.01); H04L 67/02 (2013.01);
Abstract

A method and system for continuously configuring a web application firewall (WAF) are provided. The method includes receiving a request directed at a protected web application, wherein the request is received from a client device associated with a trusted user account, and wherein the protected web application is protected by the WAF; validating the received request based on at least a signature included in a header of the received request; when the received request is validated, generating an authorization rule based on the received request, wherein the authorization rule allows access to a resource of the protected web application designated in the received request, wherein the generated authorization rule is included in at least one whitelist the WAF is configured with; and configuring the WAF with the generated authorization rule to allow the received request and subsequent request to be directed to the resource of the protected web application.


Find Patent Forward Citations

Loading…