Graphic Airlock Secure Acces Hub

Filtering and blocking

Attackers and other invalid requests are prevented from reaching the back-end

Strict filtering of all data traffic prevents current and future attacks as described in the OWASP Top 10 security risks, for example. Attacks such as XSS, XSRF, injection attacks or session stealing attempts have topped the list for years. All requests are verified for their conformity with well-established standards. Since many attacks fail to comply to the standards, many attackers are already blocked.

The Secure Access Hub terminates incoming TLS connections, making it possible to detect attacks in encrypted connections as well. The filtering itself is carried out on the application layer. This sets Airlock apart from conventional firewalls, which work on the network layer.

Filter functions

Blacklist filtering

  • Signatures for known attack patterns
  • Lexical analysis in the case of suspected SQL or Javascript injection
  • To Threat intelligence feeds: IP addresses are blocked based on reputation information
  • Geolocation: IP addresses are blocked based on their geographical origins

Dynamic whitelists

generated on the fly from back-end analysis

  • URL encryption
  • Smart form protection
  • Cookie store
  • Dynamic Value Endorsement (DyVE)

Filtering of structured data

  • JSON (JavaScript Object Notation)
  • OpenAPI (validation of REST calls against a formal specification)
  • XML (Extensible Markup Language)
  • SOAP (Simple Object Access Protocol)

Further filter functions

  • Filtering of unauthorised access
  • Learned whitelists: generated using integrated policy learning
  • Malware filtering (ICAP): incoming requests can be forwarded via ICAP
  • Client fingerprinting
  • Static whitelists
  • Use-specific filtering

Ready for excellent IT security?

Contact us now.
Ergon Informatik AG+41 44 268 87 00

Information for you

-Our whitepapers-

Executive View: KuppingerCole - Airlock Secure Access Hub for applications and APIs

This KuppingerCole Executive View report provides an architectural and functional overview of the Airlock Secure Access Hub, an integrated platform for secure access management - a multicloud-native security tool for web applications, APIs and beyond.

 

Fill out the form now and receive Executive View!

Whitepaper: Security for cloud-native applications

You can read about how companies can ensure the security of web applications and APIs in Kubernetes in the white paper "Security for cloud-native applications", which was created in collaboration between heise and Airlock.

 

Request whitepaper

Whitepaper: Zero Trust is a journey

The ongoing digital transformation of the world is progressing and having a profound impact on our personal and professional lives in ways that were difficult to imagine just a few years ago.


This white paper discusses the effects of continuous digitalization and its impact.

Request free of charge

Off to DevSecOps

In this white paper, you will learn the most important insights into how you can implement DevSecOps successfully and efficiently, which security components are required for this and the advantages of a microgateway architecture.

 

Request free of charge

Airlock 2FA - Strong authentication. Simple.

Double security - this is what two-factor authentication offers in the field of IT security.


Find out more about strong authentication and the possibilities offered by Airlock in our white paper.

Download for free

Further whitepapers

We provide you with free white papers on these and other topics:

 

  • Successful IAM projects
  • compliance
  • Data protection (DSGVO)
  • Introduction of PSD2
  • PCI DSS requirementsPCI DSS requirements
Request free of charge