Cloudbric Managed Rules for AWS WAF - Malicious IP Protection
Granular api security has freed team resources and reduced effort but detection accuracy needs work
What is our primary use case?
Currently, I use Cloudbric Managed Rules for AWS WAF for one of my AWS Load Balancer integrations, placing the managed rules in front of my load balancer as a form of security measure for traffic coming into the application. My application is a public internet-facing application, which is unique about my environment and setup.
What is most valuable?
The feature that stands out to me the most about Cloudbric Managed Rules for AWS WAF is the API protection, as many managed WAF rule sets are originally designed around traditional websites, but Cloudbric integrates a dedicated API protection module aimed at REST APIs, GraphQL endpoints, XML validation, and API-specific attacks.
My experience with the API protection module is positive, as I had one implementation for a mobile backend and some FinTech APIs where Cloudbric Managed Rules for AWS WAF really worked wonders for that setup, requiring minimal modifications or tweaking.
Another thing I appreciate about Cloudbric Managed Rules for AWS WAF is that it does not force me into a monolithic package, allowing for selective deployments where I can choose specific protections such as only malicious IP, thus providing flexibility to control costs and capacity consumption.
Cloudbric Managed Rules for AWS WAF has positively impacted my organization by freeing up human resources that would otherwise be dedicated to creating and managing WAF rules, helping me reduce costs as I can streamline WAF rules for some applications and deploy protection in less than an hour instead of days or weeks.
What needs improvement?
I find that the only drawbacks with Cloudbric Managed Rules for AWS WAF are its less market penetration, especially in North America and Europe, resulting in fewer community reviews, published case studies, and a small ecosystem of users, along with less third-party validation and occasional false positives triggered by API payload or JSON bodies.
For how long have I used the solution?
I have been using Cloudbric Managed Rules for AWS WAF for just over a year.
What do I think about the stability of the solution?
Cloudbric Managed Rules for AWS WAF has been fairly stable in my experience.
What do I think about the scalability of the solution?
In terms of scalability, Cloudbric Managed Rules for AWS WAF has been fairly scalable for my use case, working really well.
How are customer service and support?
Customer support for Cloudbric Managed Rules for AWS WAF has been quite good, and although I have not had to use it often, the few times I have reached out, they have been satisfactory.
Which solution did I use previously and why did I switch?
Previously, I was using Imperva and F5 for that particular use case, but I switched to Cloudbric Managed Rules for AWS WAF because I did not need the full protection those tools provided; I needed something more flexible.
How was the initial setup?
My experience with Cloudbric Managed Rules for AWS WAF's pricing and setup was positive; the setup was fairly straightforward and took less than an hour, and the pricing is very good and flexible, allowing me to choose the parts of WAF protection I want.
What's my experience with pricing, setup cost, and licensing?
I can definitely say that since using Cloudbric Managed Rules for AWS WAF, I need fewer employees because those who would have been dedicated to creating and managing WAF rules are now free to pursue higher priorities, leading to reduced cost in human resources.
Which other solutions did I evaluate?
The only other option I evaluated before choosing Cloudbric Managed Rules for AWS WAF was Fortinet, but it was still too much for what I needed.
What other advice do I have?
I have not had to use the AI capabilities of Cloudbric Managed Rules for AWS WAF yet, but from others' feedback, it has been fairly standard performance for the markets.
I have not noticed anything specific regarding the accuracy and reliability of output from Cloudbric Managed Rules for AWS WAF since I have not really made use of the AI capabilities, so that is still to be seen on my end.
I did purchase Cloudbric Managed Rules for AWS WAF through the AWS Marketplace.
My advice for others looking into using Cloudbric Managed Rules for AWS WAF is that if you have a use case for granular WAF rules where you do not need full traditional rule protection, especially for securing APIs, Cloudbric Managed Rules for AWS WAF is really effective at API-specific protection. I would rate this product a seven out of ten.
Comprehensive Malicious IP Protection with XFF Detection
One of the standout features is its ability to perform detection in the X-Forwarded-For (XFF) header, rather than relying solely on the host header. This ensures more comprehensive protection against malicious IP traffic, offering an extra layer of security against spoofing and unauthorized access attempts.
Additionally, the implementation process was incredibly straightforward. The rules are well-structured, intuitive to configure, and seamlessly integrate with AWS WAF. Whether managing dynamic threats or refining security policies, this solution makes it easy to enhance web application protection without unnecessary complexity.
great add-on for your aws waf
Most neat and basic IP set
It blocks malicious IPs without any complicated setup, which makes it super easy to implement. I will see how it would go.
It’s a great option for people like me who need an affordable solution because I can’t afford security experts.
Plus, their customer support has been really helpful, making everything even easier.
This is my second product with them, and I’ve got to say, so far so good.
If you're looking for more control over what gets blocked, this might feel too basic.
They offered me their managed service for deeper control, but I'm satisfied with what I have for now, so I’ll consider it later if I need more.
This product helps me maintain security without the need for hiring experts.
It provides me with confidence knowing that my application is protected from known malicious IPs, improving my project’s overall security.
Easy Threat IP Blocking
It's good to be able to easily apply and block threat IPs to the division.
Easy to use with WAF services.