on ‎2018 Apr 03 10:34 PM
Hello,
We are working on SAP Cloud Platform and SAP Cloud Connector integration. Our web security team recommended us to implement Web application firewall (WAF) between SAP Cloud Platform and SAP Cloud Connector integration to monitor, filter or block the data packets. Has any one implemented this approch? any suggestions or recommendations?
Thanks and Regards,
Prasad
Request clarification before answering.
Dear Prasad,
seems your web security team hasn't looked into the details of SAP Cloud Connector (SCC) yet. Putting it between SCP and the Cloud Connector will break it's functionality as the WAF has to break into the SSL connection. Which will result into changed certificates that should be rejected by SCC. But putting the WAF between SCC and the Gateway Frontend Server (FES) is a valid option. But also there you can run into issues when you would like to use X.509 based Principal Propagation.
Best regards
Gregor
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Thanks Gregor and Morten for your input. Are there any documents which talk about this? if yes, could you please point me to that guide, as I am unable to locate.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Hi Prasad
The Security section of the Cloud Connector documentation is a good place to start.
Regards,
Morten
| User | Count |
|---|---|
| 15 | |
| 9 | |
| 6 | |
| 5 | |
| 4 | |
| 4 | |
| 3 | |
| 2 | |
| 2 | |
| 2 |
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.