WafCharm is an automated managed service that sits on top of your AWS WAF to simplify and strengthen your firewall protection. WafCharm automatically configures, curates and updates AWS WAF rules in order to respond to new vulnerabilities. In addition to responding to new vulnerabilities quickly, WafCharm also helps reduce dealing with false positives by configuring WAF rules that are unique to your application.
WafCharm is an automated managed service that sits on top of your AWS WAF to simplify and strengthen your firewall protection. WafCharm automatically configures, curates and updates AWS WAF rules in order to respond to new vulnerabilities.
Features
Easy management - no new dashboard
Easy to manage as there is no new platform to deploy. WafCharm integrates seamlessly with the AWS dashboard, keeping your data secure and private.
Your new AWS WAF engineer - automatic and capable
WafCharm configures and builds rules within AWS WAF for you. Those rules are fully customized, continuously monitored and automatically updated to keep your AWS environment secure.
With the use of WafCharm, it's like having an expert managing your AWS WAF. Without disrupting or altering the existing rules or system, your IT and security team can focus on other strategic initiatives.
24 hour security - checks your website constantly
Your website (FQDN) is monitored every day to check for website defacement. You will be notified by email immediately if compromised.
With WafCharm, website defacement is detected at an early stage and damage can be reduced.
Key Benefits
Provides additional layer of protection for advanced web application firewall (WAF) users
Simplifies the security, deployment, and management of AWS WAF
Automatically configures, curates, and updates AWS WAF rules
Greatly reduces false positives, keeping site traffic flowing
Supported by Cyber Security Cloud security experts
Built on AWS which allows easy integration
Provides the following security operational support functions for web servers (FQDNs) protected by AWS WAF
Content crawling to detect defacement
Periodically perform name resolution for the DNS that manages the FQDN, and automatically monitor the DNS
Check HTTPS connection settings for compromised or deprecated settings
Notes
WAF log storage option and Log Intelligence Option, which are listed in the pricing dimensions, are not available for now (will be released soon).
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
You pay as you go, with charges combining several usage dimensions. A base hourly fee applies, plus an hourly charge per configured Web ACL, pro-rated by hour. Request processing scales through four tiers priced per 1 million requests, moving from Tier 1 up to Tier 4 as request volume grows. Two optional add-ons bill separately: WAF log storage above 1 million lines, charged per 1 million lines and pro-rated daily, and the Log Intelligence Option, billed hourly. Your total reflects how many Web ACLs you run, your request volume, and which options you enable.
Top-of-mind questions for buyers
What counts as one configured Web ACL for the hourly Web ACL charge?
A Web ACL is the AWS WAF rule group you attach to a protected resource. You enter each Web ACL's details in the WafCharm dashboard. Each one you configure adds an hourly charge, pro-rated by the hour. Running more Web ACLs raises this portion of your bill.
How do the four request tiers apply when my request volume grows past a tier boundary?
Requests are priced per 1 million and grouped into four tiers by monthly volume. Tier 1 covers 10M–100M by default, up to Tier 4 above 10B. Only requests within each tier's range bill at that tier's rate. Higher tiers apply to the additional requests, not your whole volume.
Which dimensions drive most of my bill, and do the optional add-ons bill separately?
Your request volume across the four tiers usually drives most cost, alongside the base hourly fee and per-Web-ACL hourly charge. Two add-ons bill independently: WAF log storage above 1 million lines, charged per 1 million lines and pro-rated daily, and the Log Intelligence Option, billed hourly.
www.wafcharm.com
Helpful?
Vendor refund policy
Non-Refundable. You will pay usage fees for all Software usage up to the time of termination (measured rate). For Entitlement Pricing, you will not be entitled to refund of such fees nor relieved of any future payment obligations for any unused portion of the Service. You may terminate the subscription without cause by using the termination or cancellation functionality available through the AWS
Request a private offer to receive a custom quote.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Automatically configures, curates, and updates AWS WAF rules to respond to new vulnerabilities and maintain security posture
False Positive Reduction
Configures WAF rules that are customized to individual applications to reduce false positives and maintain legitimate traffic flow
Website Defacement Detection
Monitors website FQDN daily for defacement, performs DNS monitoring, and checks HTTPS connection settings for compromised or deprecated configurations
AWS Native Integration
Integrates seamlessly with AWS dashboard without requiring a separate platform deployment, keeping data secure and private
Continuous Security Monitoring
Provides 24-hour monitoring and automatic updates to AWS WAF rules with immediate email notifications upon detection of compromises
OWASP Top 10 Protection Coverage
Comprehensive ruleset protecting against all OWASP Top 10 web application threats including SQL Injection, Cross Site Scripting, General and Known Exploits, Malicious Bots, and Common Vulnerabilities and Exposures (CVE)
Threat Intelligence Updates
Regular updates based on latest threat information from FortiGuard Labs security research
Configurable Response Actions
Rules can be configured to log, alert, and/or block detected threats
AWS WAF Integration
Managed rule group compatible with AWS WAF for web application firewall deployment
Multi-Region Support
Deployable across multiple AWS regions with per-region configuration capabilities
OWASP Top 10 Attack Protection
Protects against web attacks including SQL injection, cross-site scripting (XSS), command injection, NoSQL injection, path traversal, and predictable resource exploitation as defined in OWASP Top 10.
Managed Rule Updates
Rules are written, managed, and regularly updated by security specialists to ensure protection against evolving threats without requiring manual intervention.
AWS WAF Integration
Rules are designed to be attached to AWS WAF instances for immediate deployment and protection enhancement.
Rule Management by Security Experts
Rulesets are continuously monitored and maintained by F5's security experts to address emerging threat vectors.
Rapid Deployment Capability
Rules can be attached to AWS WAF instances within minutes following a three-step deployment process.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.