株式会社オブライト
Infrastructure2026-05-17

WAF (Web Application Firewall)

Also known as: WAF / Web Application Firewall / ウェブアプリケーションファイアウォール

A security device or service that monitors and filters HTTP traffic to web applications. It defends against OWASP Top 10 attacks such as SQL injection, XSS, and path traversal without modifying application code. Cloudflare WAF is a leading SaaS WAF.


Overview

A WAF inspects incoming HTTP requests upstream of the application and blocks malicious patterns. Cloud WAFs like Cloudflare WAF and AWS WAF can be deployed without server-side changes, and are effective against contact form spam and account takeover attacks.

Combination with DDoS Protection

Cloudflare integrates WAF with DDoS mitigation in a single service, covering L3 through L7 attacks comprehensively. See zero-trust security guide for details.

Related Columns

Related Terms

Feel free to contact us

Contact Us