Set website tamer-resistant

Products

Web Application Firewall

2022-02-22 05:44:58

Set webpage tamper-proofing

You can activate the webpage tamper-proofing function for the website after it is connected to WAF. Webpage tamper-proofing helps you to lock down the website pages that need to be protected. When a request is received, the locked page will return to the cached page that has been set up to prevent the impact of malicious tampering with the content of the page on the origin server. You can set webpage tamper-proofing rules according to actual needs.

Precondition

Use Restrictions

The webpage tamper-proofing function of the yearly / monthly WAF instance has the following restrictions.

Function Description Advanced Version Enterprise Version Flagship Version
Webpage Tamper-Proofing The maximum number of webpage tamper-proofing rule to be supported. 10(pieces) 20(pieces) 50(pieces)

Operation Steps

  1. Log in to the Web Application Firewall Console.

  2. In the navigation bar at left side, click Website Configuration.

  3. Navigate to the domain name to be protected on the Website Configuration page, and click Protection Configuration in the operation bar.

  4. Click the Website Compliance tab on the protection configuration page, navigate to the Webpage Tamper-Proofing module to activate the Status switch, and click Add Rule.

    image

    Note Webpage tamper-proofing must be turned on before the protection rules can take effect.

  5. Add webpage Tamper-proofing rules.

    1. Click Add Rule on the Webpage Tamper-Proofing page.

    2. Enter the Rule Name and URL corresponding to the webpage to be protected in the Add Rule dialog box.

      • Rule Name: Enter a rule name, which cannot exceed 30 characters.
      • URL: The http or https protocol can be selected for URL prefix, and the exact path to be protected is filled in as the suffix. Wildcards (eg /*) or parameters (eg /abc?xxx=) are not supported.

      image

    3. Click OK.

    After successfully adding a webpage Tamper-proofing rule, it is not enabled by default. You can see the newly added rule in the rule list, and its Protection Status switch is not turned on.

    image

  6. Turn on the rule. Navigate to the rule to be turned on in the rule list, and turn on its Protection Status switch.

    The cache records in the Web Application Firewall will be uniformly returned when the page corresponding to the rule is requested after the rule is successfully enabled.

    image

  7. Optional:

    Update Cache Positioned to enabled rules in the rule list, click the Update Cache under its protection status.

    Note You must click Update Cache to update the cache record in WAF if the content of the protected page is updated. WAF will always return the last cached record if you don't update the cache after the page is updated.

Feedback

开始与售前顾问沟通

可直接拨打电话 400-098-8505转1

我们的产品专家为您找到最合适的产品/解决⽅案

在线咨询 5*8⼩时

1v1线上咨询获取售前专业咨询

点击咨询
企微服务助手

专业产品顾问,随时随地沟通