VMware

This Question is Possibly Answered

1 "correct" answer available (10 pts)
7 Replies Last post: Nov 7, 2009 2:25 PM by gonzo4477  

How to Allow/Deny specific Applications using Vshield? posted: Jun 11, 2009 6:53 AM

Click to view secura's profile Novice 18 posts since
Oct 19, 2008

Hi,

As per my current understanding we can deny/allow a specific protocol port on a specific IP. I was exploring how to deny/allow specific apps running on that port?

For example , suppose I deny all but one webapp running on Port 80 on a specific IP? Can we set such policies currently on Vshield?

Secura

Click to view vSerge's profile Enthusiast 24 posts since
Mar 17, 2009
Hey there, we would be interested in understanding your use case a bit better. Would you be interested in doing application firewalling filtering where you prevent a specific WebApp from being accessable by filtering at URI level?
Click to view Josh26's profile Hot Shot 208 posts since
Mar 15, 2009
I'm not sure this would make much sense for a transparent firewall product to be able to do so.
Click to view vSerge's profile Enthusiast 24 posts since
Mar 17, 2009

Please elaborate :-)

The reason I found this thread interesting is that when Blue Lane was a standalone company before the VMware acquisition, we used the platform that the vShield is built upon today (transparent bridge/transparent tcp/udp proxy) to deliver functionality to mitigate XSS scripting, handle some PHP vulnerabilities in the HTTP content, SQL Injection, plus other content-based vulnerabilities covered in the OWASP Top Ten - and we had good success helping w/ PCI Compliance on this front. Curious to see why transparent/bridging firewall should not offer this type of functionality.

Click to view vSerge's profile Enthusiast 24 posts since
Mar 17, 2009

Btw, found your web security doc:

http://www.lolware.net/web_security.pdf

Good read...

Click to view Josh26's profile Hot Shot 208 posts since
Mar 15, 2009

Thanks for that vSerge.

That would describe an IDS scenario of looking for certain patterns in packets, which I can see would be acheivable in the current environment (if it was written to support it).

I guess I read "specific applications" more as "doing what a host based firewall does".

Click to view gonzo4477's profile Novice 2 posts since
Nov 7, 2009

Hi

Could anyone please explain more precisely which application's traffic could be secured via vShield by default and how it is configured?

I am also curious if I could apply my own rules ?

I will be very thankful for an answer.

Click to view gonzo4477's profile Novice 2 posts since
Nov 7, 2009
Hi

Could anyone please explain more precisely which application's traffic
could be secured via vShield by default and how it is configured?


I am also curious if I could apply my own rules ?


I will be very thankful for an answer.

VMware Developer

SDKs, APIs, Videos, Learn and much more in the Developer community.

Learn More

Developer Sample Code

Increase your developer productivity with VMware API sample code.

Learn More

VMworld Sessions & Labs

Online access to the latest VMworld Sessions & Labs and online services.

Learn more

Purchase PSO Credits Online

Purchase credits to redeem training and consulting services online.

Buy Now

Community Hardware Software

View reported configurations or report your own.

Learn More

VMware vSphere

Come witness the next giant leap in virtualization.

Register Today

Communities