Imperva Incapsula Load Balancer

Similar documents
Imperva Incapsula Product Overview

Imperva Incapsula Website Security

SOLUTION BRIEF. Enabling and Securing Digital Business in API Economy. Protect APIs Serving Business Critical Applications

Imperva SecureSphere Appliances

WEBSCALE CONVERGED APPLICATION DELIVERY PLATFORM

Oracle PeopleSoft 9.2 with NetScaler for Global Server Load Balancing

SOLUTION BRIEF FPO. Imperva Simplifies and Automates PCI DSS Compliance

Global DDoS Threat Landscape

Imperva CounterBreach

WHITE PAPER. Attackers Use DDoS Pulses to Pin Down Multiple Targets, Send Shock Waves Through Hybrids

KillTest ᦝ䬺 䬽䭶䭱䮱䮍䭪䎃䎃䎃ᦝ䬺 䬽䭼䯃䮚䮀 㗴 㓸 NZZV ]]] QORRZKYZ PV ٶ瀂䐘މ悹伥濴瀦濮瀃瀆ݕ 濴瀦

jetnexus Virtual Load Balancer

jetnexus Virtual Load Balancer

Guide to Deploying NetScaler as an Active Directory Federation Services Proxy

ForeScout CounterACT Resiliency Solutions

DEPLOYMENT GUIDE DEPLOYING THE BIG-IP SYSTEM WITH BEA WEBLOGIC SERVER

A Guide to Architecting the Active/Active Data Center

THE UTILITY OF DNS TRAFFIC MANAGEMENT

ScaleArc for SQL Server

Deploying the BIG-IP System v10 with Oracle s BEA WebLogic

InterCall Virtual Environments and Webcasting

Replicator Disaster Recovery Best Practices

High Availability and Disaster Recovery for the Genesys SMS Aggregation Service. Disaster Recovery

SolarWinds Orion Platform Scalability

BIG-IP Global Traffic Manager

BlackBerry Enterprise Server for IBM Lotus Domino Version: 5.0. Administration Guide

Optimal Gateway Selection for Pulse Connect Secure with Pulse Secure Virtual Traffic Manager

Cloud Load Balancer CDNetworks Inc. All rights reserved.

What is New in Cisco ACE 4710 Application Control Engine Software Release 3.1

Deploying PeopleSoft with Stingray Traffic Manager

Hybride Cloud Szenarien HHochverfügbar mit KEMP Loadbalancern. Köln am 10.Oktober 2017

Radware's Application Front End solution for Microsoft Exchnage 2003 Outlook Web Access (OWA)

How Teridion Works. A Teridion Technical Paper. A Technical Overview of the Teridion Virtual Network. Teridion Engineering May 2017

How Teridion Works. A Teridion Technical Paper. A Technical Overview of the Teridion Virtual Network. Teridion Engineering March 2017

DELIVERING PERFORMANCE, SCALABILITY, AND AVAILABILITY ON THE SERVICENOW NONSTOP CLOUD

ECS High Availability Design

Clusters Your Way. SQL Server in "The Cloud": High Availability and Disaster Recovery in Azure, AWS and Google

jetnexus Load Balancer

BIG-IP Analytics: Implementations. Version 13.1

CNS-205 Citrix NetScaler 10.5 Essentials and Networking

Windows Server 2012 R2 DirectAccess. Deployment Guide

Equalizer DATASHEET AND PRODUCT GUIDE FEATURES

SCALE AND SECURE MOBILE / IOT MQTT TRAFFIC

WHITE PAPER. Good Mobile Intranet Technical Overview

DEPLOYMENT GUIDE Version 1.2. Deploying the BIG-IP System v10 with Microsoft IIS 7.0 and 7.5

Stingray Traffic Manager 9.0

Document Sub Title. Yotpo. Technical Overview 07/18/ Yotpo

Deploying NetScaler with Microsoft Exchange 2016

Cloud Computing Architecture

F5 IPv6 Solutions. Ariel Santa Cruz FSE SoLA F5 Networks Inc. F5 Networks, Inc.

ForeScout CounterACT. Resiliency Solutions. CounterACT Version 8.0

DEPLOYMENT GUIDE Version 1.2. Deploying the BIG-IP System v9.x with Microsoft IIS 7.0 and 7.5

With Aruba Central, you get anywhere-anytime access to ensure that your network is up and performing efficiently.

Citrix NetScaler 10.5 Essentials and Networking (CNS-205)

Making Remote Network Visibility Affordable for the Distributed Enterprise

Connection Broker Advanced Connections Management for Multi-Cloud Environments. DNS Setup Guide

ForeScout Extended Module for MaaS360

Veritas Volume Replicator Option by Symantec

Configuring Gmail (G Suite) with Cisco Cloud Security

CNS-207-2I Implementing Citrix NetScaler 10.5 for App and Desktop Solutions

DEPLOYMENT GUIDE DEPLOYING F5 WITH ORACLE ACCESS MANAGER

Achieving High Availability with Oracle Cloud Infrastructure Ravello Service O R A C L E W H I T E P A P E R J U N E

Failover Configuration Bomgar Privileged Access

Citrix NetScaler 10 Essentials and Networking Course CNS205; 5 Days, Instructor-led

BlackBerry Enterprise Server for Microsoft Office 365. Version: 1.0. Administration Guide

Configuring Failover

Failover Dynamics and Options with BeyondTrust 3. Methods to Configure Failover Between BeyondTrust Appliances 4

Flex Tenancy :48:27 UTC Citrix Systems, Inc. All rights reserved. Terms of Use Trademarks Privacy Statement

High Availability for Citrix XenDesktop

Symantec System Recovery 2013 Management Solution FAQ

Object Storage Service. Product Introduction. Issue 04 Date HUAWEI TECHNOLOGIES CO., LTD.

VERITAS Volume Replicator. Successful Replication and Disaster Recovery

Introducing the Global Site Selector

Cato Cloud. Solution Brief. Software-defined and Cloud-based Secure Enterprise Network NETWORK + SECURITY IS SIMPLE AGAIN

Computer Networks. HTTP and more. Jianping Pan Spring /20/17 CSC361 1

BIG-IP Analytics: Implementations. Version 12.1

MULE ESB High Availability (HA) CLUSTERING

The OnApp Cloud Platform

Veritas Storage Foundation for Windows by Symantec

Disclaimer This presentation may contain product features that are currently under development. This overview of new technology represents no commitme

Microsoft Exchange Server 2013 and 2016 Deployment

DNS Setup Guide. Connection Broker. Advanced Connection Management For Multi-Cloud Environments

CNS-205 Citrix NetScaler 11 Essentials and Networking

INNOVATIVE SD-WAN TECHNOLOGY

Elastic Cloud Storage (ECS)

Disaster Recovery Solutions for Oracle Database Standard Edition RAC. A Dbvisit White Paper By Anton Els

ForeScout CounterACT. Centralized Licensing. How-to Guide. Version 8.0

Equitrac Office and Express DCE High Availability White Paper

Application Delivery Product Technology White Paper 2015 V2. Venusense 2015 V2

Incapsula Guide to Selecting a DDoS Solution WHITE PAPER

This Readme describes the NetIQ Access Manager 3.1 SP5 release.

Deploying Microsoft SharePoint with the F5 WebAccelerator

A10 Thunder ADC with Oracle E-Business Suite 12.2 DEPLOYMENT GUIDE

EMC VPLEX with Quantum Stornext

Citrix NetScaler 10.5 Essentials for ACE Migration (CNS-208)

GIS - Clustering Architectures. Raj Kumar Integration Management 9/25/2008

agility17dns Release latest Jun 15, 2017

Privileged Remote Access Failover Configuration

vrealize Orchestrator Load Balancing

A10 DDOS PROTECTION CLOUD

Transcription:

Imperva Incapsula Load Balancer DATASHEET Optimize Traffic Distribution and Application Delivery from the Cloud The Incapsula Load Balancer enables organizations to replace their costly appliances with an enterprise-grade cloud-based application delivery solution. Based on a global CDN, the Load Balancer supports a single data center with multiple servers, site failover (for DR scenarios), and Global Server Load Balancing (GSLB). Real-time health monitoring and notifications ensure that traffic is always routed to a viable web server. What You Get Application level Load Balancing solution for optimal resource utilization Built-in flexibility to support single data center, multiple data centers (GSLB) and disaster recovery scenarios Application Delivery Rules to intelligently route traffic Real-time monitoring and failover capabilities for high availability Intelligent Application Level Load Balancing Through real-time monitoring of actual HTTP requests to each server, application level load balancing intelligently distributes the load among servers. By understanding the actual flow of traffic to each server, Incapsula guarantees optimal resource utilization. Other load balancing methods, such as Layer 3 and DNS-based load balancing, are not able to provide true load balancing because they do not monitor the actual traffic. Unlike DNS-based load balancing, which is TTL-dependent, routing changes in Incapsula are immediate and across-the-board for all users. A variety of traffic distribution methods is supported, all of which are session-persistent. 1

Why Incapsula? Cloud-based load balancing for fast and cost-effective scalability Optimal traffic distribution for enhanced application performance and reduced server loads Client Classification identifies bots and enables targeted rerouting Activated by simple DNS change - no hardware or software installation, integration or changes to the website Meeting All Your Load Balancing Needs The Incapsula Load Balancer supports the following: Server Load Balancing Incapsula balances traffic across multiple web servers within a data center directly from the cloud. This allows websites and applications to cost-effectively scale their operations without requiring a local load balancing appliance or virtual appliance. Acting as a dedicated load balancer for the target website or application, Incapsula accurately balances traffic between servers according to load, while removing nonresponsive servers from the pool. Traffic Imperva Incapsula Network Data Center Incapsula supports various load balancing methods. By default, all of these methods are also session-persistent, meaning the same HTTP session will always return to the same preferred server (if it is responsive). The website administrator can select one of the following distribution options when setting up the service: Least Pending Requests The most accurate way of ascertaining the load on the server is by measuring how many HTTP requests it is currently processing. This enables distribution of the load according to the real time load on the server. Least Open Connections This method distributes traffic by forwarding requests to the web server that has the smallest number of open connections. 2

Site Failover (Disaster Recovery) Incapsula supports automatic failover between primary and secondary sites to accelerate disaster recovery in the event of an outage. As soon as Incapsula detects that the primary site has gone down, it automatically kick-starts the standby data center. Incapsula s real-time health monitoring enables immediate detection of outages to ensure high availability even in the case of a catastrophic failure. Data Center Traffic Imperva Incapsula Network Data Center Global Server Load Balancing (GSLB) Global server load balancing for organizations operating multiple data centers ensures high availability and consistent performance of applications and websites. New York DC Traffic Imperva Incapsula Network London DC 3

Leveraging a global CDN, Incapsula performs global load balancing using the following methods: Best Connection Time Incapsula samples the network connection times between Incapsula and the customer s data centers on a periodic and frequent basis. Based on this sampling, traffic is sent to the data center with the best connection time. Geo-Targeting Preferred This method enables website owners to set their own policy for routing traffic to a particular data center based on the visitor s geographical location. For example, an organization may wish to serve different content (for example, ads) to different end users based on their location. Under this method, if the preferred data center is unavailable for any reason, Incapsula re-routes the traffic to an available one. Geo-Targeting Required This geography-based load balancing method is similar to Geo-Targeting Preferred. However, using this method, if the required data center is unavailable, the traffic is null routed. This method is used by international organizations that maintain multiple data centers in different countries to comply with regulatory issues. Application Delivery Rules Rewrite, forward or redirect requests at the edge and return different assets based on Incapsula intelligence and request attributes, without changing the client-facing URL. Switch content and redirect users based on layer 7 attributes, such as URL patterns, cookies, HTTP headers, and client classification attributes. Improve user experience and SEO ranking by rewriting relative and dynamic URLs to clean customer-facing URLs. Offload connections and reduce round trip times between your web server and other backend servers. Leverage Incapsula client classification to identify bad bots and redirect them to a special site or server with fake content. Define rules based on client behavior, using customizable rate thresholds for various parameters. Implement backend logic without changing application code. Extend role-based control to non-technical users. 4

Monitoring and Alerts Health Monitoring Real-time health and performance checks of server activity are used to detect outages and eliminate downtime. In this way, Incapsula ensures that traffic is always routed to a viable web server. Passive monitoring is used to evaluate server responses to the actual traffic that is forwarded to them. The determination that a server is down is based on an extensive set of user-configurable parameters, which can be fine-tuned to the specific needs/policies of each organization. These include, for example, what is considered an error, the amount of errors in a given time period that constitute a failure, etc. Once a server has been flagged as down, Incapsula performs active verification checks to determine whether the server has resumed operation. Active verification is based on sending a dedicated HTTP request to a predefined URL and checking whether the expected response is received. If so, the load balancer will renew the flow of traffic to it. 5

Alerts Incapsula Users can receive email alerts to notify them of virtually any possible failover scenario. The Incapsula management console allows users to fine-tune the sensitivity of the precise scenarios that will trigger an alert. For example: Specific server is down Data center is down Flexible parameters such as number of proxies re-routing traffic, etc. 2016, Imperva, Inc. All rights reserved. Imperva, the Imperva logo, SecureSphere, Incapsula, Skyfence, CounterBreach and ThreatRadar are trademarks of Imperva, Inc. and its subsidiaries. All other brand or product names are trademarks or registered trademarks of their respective holders. imperva.com 6