A tad on the pricey side, but still a great value
Use Cases and Deployment Scope
The Imperva WAF acts as our go-between (proxy) for our public-facing websites. They intercept known bad actor IPs, and we can also block certain countries that have shown to be problematic and we don't do business in. More dynamic attacks are also detected and blocked, making this largely a "fire and forget" tool. We rarely even need to log into the tool, except to pull our weekly reports.
Pros
- Block some dynamic attacks such as SQL injection.
- Block unfriendly accesses based on geographic source.
- Helps us implement SSL in cases where the original server can't (yet).
Cons
- The UI can use a little work (but is largely decent)
Likelihood to Recommend
Imperva web application firewall does a great job in giving us control over access to our public web servers. With our regular hosting provider, we couldn't block access based on geography, or really anything. So we had to rely on traditional access controls to protect the data. But with the WAF, we can block countries such as North Korea, or we could stop any SQL Injection attempts, or even do a temporary block of IP in the case of detected brute-forcing.
