Web Application Firewall (WAF) keeps web services stable and secure. It examines all HTTP and HTTPS requests to detect and block the following attacks: Structured Query Language (SQL) injection, cross-site scripting (XSS), webshells, command and code injections, file inclusion, sensitive file access, third-party vulnerability exploits, Challenge Collapsar (CC) attacks, malicious crawlers, and cross-site request forgery (CSRF).

Progressive Knowledge

WAF knowledge for users from beginner level to expert level


Understand the features and application scenarios of HUAWEI CLOUD WAF, helping you accurately match actual services, quickly connect your domain name to WAF, and efficiently migrate your services to HUAWEI CLOUD.

After purchasing WAF, you can connect your website services to WAF (that is, enable protection by WAF), and configure protection policies based on your service scenario.

Best practices based on service scenarios and customer requirements help you quickly use WAF to protect your website.

If the default domain quantity and bandwidth cannot meet your requirements, you can purchase a domain extension package and bandwidth expansion package.

You can change specifications, add protected domain names, modify server configurations, and change protection rules at any time, based on service development requirements. In addition, you can view protection logs in real time and analyze protection event data to adjust protection policies in time and better protect your website services.

