Chapter 1. Profense

Table of Contents

1. Load Balancer
1.1. Session persistence
1.2. Guaranteed secure persistence
1.3. HTTP and HTTPS request switching
2. Web Accelerator
2.1. Caching
2.2. HTTP compression
2.3. SSL acceleration
2.4. TCP connection off-loading
3. Web Application Firewall
3.1. Automated application profiling
3.2. Adaptive learning with instant protection
3.3. Positive security model
3.4. Negative security model
3.5. Proactive protection
3.6. Filtering
3.7. Management
3.8. Log functions
4. The Profense™ Platform
4.1. Platform features
4.2. Platform technology

The Profense™ platform is a modular web application assurance system offering acceleration, scalability and proactive protection of web systems. The following modules are available:

Load Balancer

Enabling scalability and acceleration of even complex SSL-enabled stateful web applications.

Web Accelerator

Reducing traffic cost, improving response time and off-loading web servers.

Web Application Firewall

Proactive protection of web servers and web applications by employing a positive security model.

The Profense™ Load Balancer module enables scalability and acceleration of even complex SSL-enabled web applications.


The web accelerator module accelerates web application and web system performance by:

  • Lowering the web and application server workload

  • Optimizing and reducing bandwidth usage

  • Offloading SSL operations from web servers

  • Optimizing TCP-connection handling

Profense™ Web Application Firewall is implemented in the network as a filtering gateway which validates all requests to the web systems.

On a general level the web application firewall module has the following protective features:

  • Web server cloaking and customizable HTTP error handling completely shield web servers from direct Internet access and defeat fingerprinting attacks.

  • White-list based filtering of input data (including all URLs and parameters) allows for protection against threats from unpublished vulnerabilities in web server software and web applications.

  • Validation of requests using a combination of positive and negative policy rules. Available in Profense Professional.

  • HTTPS termination allows for white-list based protection from SSL-encrypted attacks.

  • The protection is always updated as there is no dependence on signatures due to the positive security model.

Profense™ is based on proven methods and technology.

With Profense™ the organization gets transparent state of the art protection of web systems and web applications - without compromising functionality and software and hardware policies.

© 2007 Armorlogic