Skip Links

Network World

  • Social Web 
  • Email 
  • Close

How we did it

By Thomas Powell , Network World , 05/17/2004
  • Share/Email
  • Comment
  • Print

We tested the security appliances using three primary sites hosted on stock installations of Windows 2000 and Windows 2003 - a base site with simple static content and minimal interactivity for protocol testing, a corporate site with some dynamic database features and a content management system susceptible to application attacks written in Active Server Pages, and a complex intranet/extranet application written ASP.NET. Limited testing also was performed with a vendor-provided PHP application.

We carefully monitored the HTTP interactions using browser proxy tools such as Achilles and Fiddler and other network utilities such as SamSpade. Reconnaissance and exploit-detection tools such as NMAP, HTTPrint, and N-Stealth Security scanner were used to probe the appliance and, where possible, via HTTP the back-end servers. Load testing was performed using freely available load-generation offerings including Microsoft's Web Application Stress Tool. Multiple browsers, such as Internet Explorer, Firebird and Safari, were used during testing.

We encountered occasional problems with Safari, particularly when running an exploit. Because these results could not be attributed solely to the tested devices and might have been related to the browser's handling of chunked HTTP responses of HTTP encoded response, we did not factor this into the findings. We encourage any readers looking to evaluate HTTP terminating devices, such as application firewalls, acceleration appliances and reverse-proxy caches, to carefully evaluate them against their browser population.

Back to review: Application Firewall Appliances
  • Share/Email
  • Comment
  • Print
Partner Content

Brilliantly simple security and control solutions for email, web and endpoint

www.sophos.com

Stopping data leakage

Learn how to exploit your current security investment to control the information that flows into, through and out of your network.

Download the white paper.

Why detection rates aren't enough

Evaluating endpoint security products is a time-consuming and daunting task. Learn the six critical questions you need to ask prospective vendors to get the right endpoint solution.

Download the white paper.

Applications: taking back control

Employees installing unauthorized applications is a growing threat to business security and productivity. Cost-effectively reduce this threat by integrating control into your malware protection.

Learn more today.

Comment
Login
Forgot your account info?
Add comment
Anonymous comments subject to approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed