Download PDF
Imperva's SecureSphere: A Robust Web Application Firewall Solution for vli Limited
Technology Category
- Application Infrastructure & Middleware - Event-Driven Application
- Cybersecurity & Privacy - Database Security
Applicable Industries
- Construction & Infrastructure
- National Security & Defense
Use Cases
- Construction Management
- Tamper Detection
The Challenge
vli Limited, a UK-based company that develops and manages innovative web-based solutions, faced a significant challenge in securing its hosted web application platforms. With a customer base of around 100, all of vli’s servers were co-hosted at a data centre operated by a third-party provider. While managed firewalls were already deployed at the data centre, vli had not yet implemented a Web application firewall solution. The company was particularly concerned about SQL injection, a common form of automated application attack that could potentially pose a significant threat to their critical infrastructure. The company's expansion plan for 2009, which involved aggressively targeting the SME market and increasing the number of platforms hosted by them, further compounded the issue. vli needed a robust security solution that could secure their entire legacy, current, and future code, and be fully interoperable with other layers of security architecture.
About The Customer
vli Limited is a UK-based company that has been developing and managing innovative web-based solutions for over ten years. The company has created bespoke platforms that help businesses to share information, improve productivity, and fully harness the potential that web-based applications can bring to the enterprise. vli's major clients include WSP Group plc, Iomega, Ca Corp., Crown Agents, and the Communication Workers Union. The company's expansion plan for 2009 involved aggressively targeting the SME market with a predominantly pre-built platform offering, which would significantly increase the number of platforms hosted by them.
The Solution
vli's search for a robust security solution led them to Imperva's SecureSphere Web Application Firewall. The solution promised the protection vli required, with outstanding functionality, performance transparency, and ease of management. SecureSphere was deployed inline between the data centre managed network firewalls and critical applications, complementing vli’s defence-in-depth strategy. The solution integrated seamlessly with vli's existing network infrastructure without requiring changes to applications or network. During a meticulous pilot of the solution, vli found the reduction in administrative strain significant, and the detailed reporting extremely helpful. Imperva's SecureSphere not only fully secured vli's infrastructure but also fully integrated with it, standing out from the competition.
Operational Impact
Related Case Studies.
Case Study
IoT System for Tunnel Construction
The Zenitaka Corporation ('Zenitaka') has two major business areas: its architectural business focuses on structures such as government buildings, office buildings, and commercial facilities, while its civil engineering business is targeted at structures such as tunnels, bridges and dams. Within these areas, there presented two issues that have always persisted in regard to the construction of mountain tunnels. These issues are 'improving safety" and "reducing energy consumption". Mountain tunnels construction requires a massive amount of electricity. This is because there are many kinds of electrical equipment being used day and night, including construction machinery, construction lighting, and ventilating fan. Despite this, the amount of power consumption is generally not tightly managed. In many cases, the exact amount of power consumption is only ascertained when the bill from the power company becomes available. Sometimes, corporations install demand-monitoring equipment to help curb the maximum power demanded. However, even in these cases, the devices only allow the total volume of power consumption to be ascertained, or they may issue warnings to prevent the contracted volume of power from being exceeded. In order to tackle the issue of reducing power consumption, it was first necessary to obtain an accurate breakdown of how much power was being used in each particular area. In other words, we needed to be able to visualize the amount of power being consumed. Safety, was also not being managed very rigorously. Even now, tunnel construction sites often use a 'name label' system for managing entry into the work site. Specifically, red labels with white reverse sides that bear the workers' names on both sides are displayed at the tunnel work site entrance. The workers themselves then flip the name label to the appropriate side when entering or exiting from the work site to indicate whether or not they are working inside the tunnel at any given time. If a worker forgets to flip his or her name label when entering or exiting from the tunnel, management cannot be performed effectively. In order to tackle the challenges mentioned above, Zenitaka decided to build a system that could improve the safety of tunnel construction as well as reduce the amount of power consumed. In other words, this new system would facilitate a clear picture of which workers were working in each location at the mountain tunnel construction site, as well as which processes were being carried out at those respective locations at any given time. The system would maintain the safety of all workers while also carefully controlling the electrical equipment to reduce unnecessary power consumption. Having decided on the concept, our next concern was whether there existed any kind of robust hardware that would not break down at the construction work site, that could move freely in response to changes in the working environment, and that could accurately detect workers and vehicles using radio frequency identification (RFID). Given that this system would involve many components that were new to Zenitaka, we decided to enlist the cooperation of E.I.Sol Co., Ltd. ('E.I.Sol') as our joint development partner, as they had provided us with a highly practical proposal.
Case Study
Splunk Partnership Ties Together Big Data & IoT Services
Splunk was faced with the need to meet emerging customer demands for interfacing IoT projects to its suite of services. The company required an IoT partner that would be able to easily and quickly integrate with its Splunk Enterprise platform, rather than allocating development resources and time to building out an IoT interface and application platform.
Case Study
Bridge monitoring in Hamburg Port
Kattwyk Bridge is used for both rail and road transport, and it has played an important role in the Port of Hamburg since 1973. However, the increasing pressure from traffic requires a monitoring solution. The goal of the project is to assess in real-time the bridge's status and dynamic responses to traffic and lift processes.
Case Study
Bellas Landscaping
Leading landscaping firm serving central Illinois streamlines operations with Samsara’s real-time fleet tracking solution: • 30+ vehicle fleet includes International Terrastar dump trucks and flatbeds, medium- and light-duty pickups from Ford and Chevrolet. Winter fleet includes of snow plows and salters.
Case Study
Condition Based Monitoring for Industrial Systems
A large construction aggregate plant operates 10 high horsepower Secondary Crusher Drive Motors and associated conveyor belts, producing 600 tons of product per hour. All heavy equipment requires maintenance, but the aggregate producer’s costs were greatly magnified any time that the necessary maintenance was unplanned and unscheduled. The product must be supplied to the customers on a tight time schedule to fulfill contracts, avoid penalties, and prevent the loss of future business. Furthermore, a sudden failure in one of the drive motors would cause rock to pile up in unwanted locations, extending the downtime and increasing the costs.Clearly, preventative maintenance was preferable to unexpected failures. So, twice each year, the company brought in an outside vendor to attach sensors to the motors, do vibration studies, measure bearing temperatures and attempt to assess the health of the motors. But that wasn’t enough. Unexpected breakdowns continued to occur. The aggregate producer decided to upgrade to a Condition Based Monitoring (CBM) sensor system that could continually monitor the motors in real time, apply data analytics to detect changes in motor behavior before they developed into major problems, and alert maintenance staff via email or text, anywhere they happened to be.A wired sensor network would have been cost prohibitive. An aggregate plant has numerous heavy vehicles moving around, so any cabling would have to be protected. But the plant covers 400 acres, and the cable would have to be trenched to numerous locations. Cable wasn’t going to work. The aggregate producer needed a wireless solution.