WAF configuration for server behind firewall

Muqri Lv1Posted 2026-Jun-18 09:49

My firewall has WAF function. Is there any official documentation, administration guides, best practice documents, or video tutorials related to the WAF feature?

A detailed explanation of the protection capabilities offered by the WAF, including the types of web attacks, threats, and malicious requests that can be detected, filtered, or blocked.

Recommended test scenarios or validation methods that can be used to verify the effectiveness of the WAF policies and protection mechanisms.

Let say i ve server under under my firewall. This server (1.2.3.4) hosts a website; how do i apply WAF protection to this server i want to protect the https for example.

how do i configure this? what are the best practice for above scenario

By solving this question, you may help 994 user(s).

Posting a reply earns you 2 coins. An accepted reply earns you 20 coins and another 10 coins for replying within 10 minutes. (Expired) What is Coin?

Enter your mobile phone number and company name for better service. Go

Humayun Ahmed Lv4Posted 2026-Jun-18 12:40
  
Best Practices:
Publish only required ports (80/443).
Enable HTTPS Decryption for HTTPS inspection.
Keep WAF signatures updated.
Begin in Monitor Mode, then switch to Block Mode after tuning.
Enable IP Reputation to block known malicious IP addresses.
Enable Botnet Detection and Vulnerability Protection.
Restrict administrative interfaces by source IP.
Regularly review WAF logs to identify false positives and refine policies.

Sangfor provides WAF documentation through its Support Portal and partner resources, including:

NGAF/NGFW Administrator Guide
WAF Configuration Guide
Deployment Guide
Best Practice Guide
Technical training materials available to partners and customers

If you have access to the Sangfor Support Portal, search for "NGAF WAF Administrator Guide" or "Athena NGFW WAF Configuration Guide" for version-specific instructions.
AR Lv3Posted 2026-Jun-18 17:24
  
Best Practices: Only publish on the ports that are necessary (80/443).
For HTTPS inspection, turn on HTTPS decryption.
Update WAF signatures.
Start in monitor mode, then, after fine-tuning, move to block mode.
To ban known malicious IP addresses, enable IP Reputation.
Turn on vulnerability protection and botnet detection.
Limit administrative interfaces based on the source IP.
To find false positives and improve policy, examine WAF logs on a regular basis.

Sangfor offers WAF documentation via partner sites and its Support Portal, such as the following:

Administrator's Guide for NGAF/NGFW
WAF Configuration Manual
Guide for Deployment
A Guide to Best Practices
Technical training resources accessible to clients and partners

For version-specific instructions, look for "NGAF WAF Administrator Guide" or "Athena NGFW WAF Configuration Guide" on the Sangfor Support Portal.
Zonger Lv5Posted 2026-Jun-18 17:48
  
For Sangfor Athena NGFW, official WAF documentation can be found in the Athena NGFW Administration Guide, WAF Feature Guide, Knowledge Base articles and Sangfor Partner Training materials.

Sangfor WAF protects web servers against SQL Injection, Cross-Site Scripting (XSS), Command Injection, Directory Traversal, File Inclusion, WebShell uploads, malicious bots, HTTP protocol anomalies and other OWASP attacks. To protect a web server hosting HTTPS services, create a Server Protection/WAF policy, define the protected server and HTTPS service, import the SSL certificate if SSL inspection is required, enable recommended protection templates and signatures and bind the policy to the corresponding security rule. Best practice is to start in monitoring mode, review logs and false positives, then switch to blocking mode. Validation can be performed using OWASP ZAP, Burp Suite or test SQLi/XSS payloads to confirm that malicious requests are detected and blocked while legitimate traffic remains unaffected. Keep WAF signatures updated, enable logging and reporting, use IP Reputation and Bot Protection where applicable and regularly review security events through the SOC dashboard for optimal protection.

I Can Help:

Change

Moderator on This Board

1
154
3

Started Topics

Followers

Follow

1023
211
99

Started Topics

Followers

Follow

Board Leaders