Akamai Kona WAF

Kona Web Application Firewall provides protection against web application attacks including SQL injections, cross-site scripting, and remote file inclusion.

Asset Types Fetched

  • Devices, Domains & URLs, Network/Firewall Rules

Before You Begin

Ports

  • TCP port 80/443

Authentication Method

  • Client Token/Client Secret
  • Access Token

APIs

Axonius uses the Application Security API.

Permissions

Consult with your vendor for the exact permissions to fetch the objects.

Supported From Version

Supported from Axonius version 4.6

Connecting the Adapter in Axonius

To connect the adapter in Axonius, provide the following parameters:

Required Parameters

  1. Host Name or IP Address - The hostname or IP address of the Akamai Kona WAF server.

  2. Client Token and Client Secret - The credentials for a user account that has permissions to fetch assets.

  3. Access Token - An API Key associated with a user account that has permissions to fetch assets.

Akamai

Optional Parameters

  1. Verify SSL - Select whether to verify the SSL certificate of the server against the CA database inside of Axonius. For more details, see SSL Trust & CA Settings.

  2. HTTPS Proxy - Connect the adapter to a proxy instead of directly connecting it to the domain.

  3. HTTPS Proxy User Name - The user name to use when connecting to the value supplied in Host Name or IP Address via the value supplied in HTTPS Proxy.

  4. HTTPS Proxy Password - The password to use when connecting to the server using the HTTPS Proxy.

To learn more about common adapter connection parameters and buttons, see Adding a New Adapter Connection.

Advanced Settings

📘

Note

Advanced settings can either apply to all connections for this adapter, or to a specific connection. Refer to Advanced Configuration for Adapters.

  1. Fetch Firewall - Select this option to fetch firewalls.

  2. Fetch URLs - Select this option to fetch URLs.

  3. Fetch Dynamic IP Firewall & Network Lists - Select this option to fetch dynamic IP firewall and network lists, using the following endpoints:

    For this configuration to work properly, make sure that the “Fetch Firewall” configuration is also enabled.

  4. Fetch Rules tree and hostnames list from Property Manager - Enabling this option will create a URL entity, identify the Akamai property and version, list its hostnames, and retrieve the final edge URL and rule configuration.

  5. Parse URL IPs - Select this option to parse IPs for URL assets.

📘

Note

To learn more about Adapter Configuration tab advanced settings, see Adapter Advanced Settings.