Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
WAF BASICS- Part1
Rating: 4.1 out of 5(587 ratings)
3,475 students

WAF BASICS- Part1

Application Security Manager Basics
Created byVineet Singh
Last updated 12/2020
English
English [Auto],

What you'll learn

  • Candidates will gain knowledge on product solution- ASM

Course content

1 section11 lectures6h 54m total length
  • Application Traffic Flow49:40

    Explore the application traffic flow and how F5 ACM protects apps from web attacks. Cover dns resolution, http requests, tcp handshakes, and using wireshark or fiddler to analyze traffic.

  • Setting Up the BIG-IP1:00:07

    Learn how to set up a new Big-IP appliance, configure the management port, license and provisioning, and implement core network objects like VLANs and self IPs using GUI or CLI.

  • Traffic Processing Components46:45

    Explore traffic processing with F5 big-ip components: nodes, pool members, pools, and virtual servers, along with profiles, layer 7 policies, and security policies to optimize and secure http traffic.

  • HTTP_Headers & OWASP_Top1044:19

    Explore HTTP headers and request components while surveying OWASP Top ten vulnerabilities, from broken authentication to injection attacks, with hands-on analysis using Fiddler.

  • Web_App_Vulnerabilities & Security Model28:33

    Explore web app vulnerabilities through hands-on attacks like parameter tampering, hidden field manipulation, forceful browsing, and SQL injection, and learn to design security policies that blend positive and negative models.

  • Security_Policy_Deployment34:44

    Deploy security policies by selecting policy types (standalone or parent/child) and templates (rapid, fundamental, comprehensive, application-ready, vulnerability baseline, passive), using automatic or manual methods, with enforcement and learning modes.

  • Rapid_Policy_Deployment11:42

    Create and map a rapid deployment security policy to a virtual server, enable logging, and review event logs to monitor requests and potential violations.

  • Data Guard13:15

    discover how data guard protects data by detecting leakage of credit card information and social security numbers, enforcing blocking or masking modes, and masking with asterisks in logs and responses.

  • Policy Tuning&Violations - Part 149:21

    Fine-tune your security policy to classify traffic violations and distinguish entities like urls, parameters, and file types, while using staging, enforcement, and learning to manage false positives.

  • Policy Tuning&Violations - Part 228:56

    Explore policy tuning and violations using advanced mode to manage attack signatures, learn and block settings, and header and method controls, with Fiddler tests and enforcement steps.

  • Attack Signatures47:15

    Attack signatures detect web application attacks by matching patterns in request buffers (content, headers, query) after normalization, using default and user defined signature sets enforced via staging or blocking modes.

Requirements

  • VE, Fiddler, Web Server Image

Description

The  Application Security Manager course gives participants a  functional understanding of how to deploy, tune, and operate Application Security Manager (ASM) to protect their web applications  from HTTP-based attacks.

The course includes lecture, hands-on labs, and discussion about  different ASM components.

This course starts right from the fundamentals of application traffic flow and will help you understand how does  ASM behave to attacks and how can you start exploring ASM as a WAF product.

The course includes lecture, hands-on labs, and discussion about  different ASM components.

In this course we will be discussing below topics:

  1. Application Traffic Flow.

  2. Initial setup of BIG-IP

  3. Basic traffic processing components on F5

  4. HTTP header and explanation of OWASP Top 10

  5. Security Model

  6. Ways to deploy initial security policy on ASM.

  7. Tuning of your policy

  8. Attack Signatures


Who this course is for:

  • This course is intended for security and network administrators who will be responsible for the installation, deployment, tuning, and day-to-day maintenance of the Application Security Manager.