<!DOCTYPE html>
<html class="client-nojs vector-feature-night-mode-disabled vector-feature-language-in-header-enabled vector-feature-language-in-main-page-header-disabled vector-feature-page-tools-pinned-disabled vector-feature-toc-pinned-clientpref-1 vector-feature-main-menu-pinned-disabled vector-feature-limited-width-clientpref-1 vector-feature-limited-width-content-enabled vector-feature-custom-font-size-clientpref-1 vector-feature-appearance-pinned-clientpref-1 vector-sticky-header-enabled" lang="en" dir="ltr"><head>
<meta charset="UTF-8">
<title>Application firewall</title>
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<link rel="canonical" href="https://en.wikipedia.org/wiki/Application_firewall"> <link href="./mw/ext.cite.styles.css" rel="stylesheet" type="text/css">
<link href="./mw/skins.vector.icons.css" rel="stylesheet" type="text/css">
<link href="./mw/skins.vector.search.codex.styles.css" rel="stylesheet" type="text/css">
<link href="./mw/skins.vector.styles.css" rel="stylesheet" type="text/css">
<link href="./mw/user.styles.css" rel="stylesheet" type="text/css">
<meta name="ResourceLoaderDynamicStyles" content="">
<link rel="stylesheet" type="text/css" href="./mw/site.styles.css">
<link rel="stylesheet" type="text/css" href="./mw/noscript.css">
<link rel="stylesheet" type="text/css" href="./footer.css">
<link rel="stylesheet" type="text/css" href="./vector-2022.css">
</head>
<body class="skin--responsive skin-vector skin-vector-search-vue mediawiki ltr sitedir-ltr mw-hide-empty-elt ns-0 ns-subject page-Application_firewall rootpage-Application_firewall skin-vector-2022 action-view">
<div class="mw-page-container">
<div class="mw-page-container-inner">
<div class="mw-content-container">
<main id="content" class="mw-body">
<header class="mw-body-header vector-page-titlebar">
<h1 id="firstHeading" class="firstHeading mw-first-heading">
<span id="openzim-page-title" class="mw-page-title-main"><span class="mw-page-title-main">Application firewall</span></span>
</h1>
</header>
<a id="top"></a>
<div id="bodyContent" class="vector-body ve-init-mw-desktopArticleTarget-targetContainer" aria-labelledby="firstHeading" data-mw-ve-target-container="">
<div id="mw-content-text" class="mw-body-content mw-content-ltr" lang="en" dir="ltr"><div class="mw-content-ltr mw-parser-output" lang="en" dir="ltr">
<style data-mw-deduplicate="TemplateStyles:r1236090951">
/* start https://en.wikipedia.org/ */
.mw-parser-output .hatnote{font-style:italic}.mw-parser-output div.hatnote{padding-left:1.6em;margin-bottom:0.5em}.mw-parser-output .hatnote i{font-style:normal}.mw-parser-output .hatnote+link+.hatnote{margin-top:-0.5em}@media print{body.ns-0 .mw-parser-output .hatnote{display:none!important}}
/* end https://en.wikipedia.org/ */
</style><div role="note" class="hatnote navigation-not-searchable">This article is about a sub-type of network firewall. For the primary topic of firewalls, see <a href="Firewall_(computing)" title="Firewall (computing)">Firewall (computing)</a>.</div>
<style data-mw-deduplicate="TemplateStyles:r1251242444">
/* start https://en.wikipedia.org/ */
.mw-parser-output .ambox{border:1px solid #a2a9b1;border-left:10px solid #36c;background-color:#fbfbfb;box-sizing:border-box}.mw-parser-output .ambox+link+.ambox,.mw-parser-output .ambox+link+style+.ambox,.mw-parser-output .ambox+link+link+.ambox,.mw-parser-output .ambox+.mw-empty-elt+link+.ambox,.mw-parser-output .ambox+.mw-empty-elt+link+style+.ambox,.mw-parser-output .ambox+.mw-empty-elt+link+link+.ambox{margin-top:-1px}html body.mediawiki .mw-parser-output .ambox.mbox-small-left{margin:4px 1em 4px 0;overflow:hidden;width:238px;border-collapse:collapse;font-size:88%;line-height:1.25em}.mw-parser-output .ambox-speedy{border-left:10px solid #b32424;background-color:#fee7e6}.mw-parser-output .ambox-delete{border-left:10px solid #b32424}.mw-parser-output .ambox-content{border-left:10px solid #f28500}.mw-parser-output .ambox-style{border-left:10px solid #fc3}.mw-parser-output .ambox-move{border-left:10px solid #9932cc}.mw-parser-output .ambox-protection{border-left:10px solid #a2a9b1}.mw-parser-output .ambox .mbox-text{border:none;padding:0.25em 0.5em;width:100%}.mw-parser-output .ambox .mbox-image{border:none;padding:2px 0 2px 0.5em;text-align:center}.mw-parser-output .ambox .mbox-imageright{border:none;padding:2px 0.5em 2px 0;text-align:center}.mw-parser-output .ambox .mbox-empty-cell{border:none;padding:0;width:1px}.mw-parser-output .ambox .mbox-image-div{width:52px}@media(min-width:720px){.mw-parser-output .ambox{margin:0 10%}}@media print{body.ns-0 .mw-parser-output .ambox{display:none!important}}
/* end https://en.wikipedia.org/ */
</style>
<p>An <b>application firewall</b> is a form of <a href="Firewall_(computing)" title="Firewall (computing)">firewall</a> that controls <a href="Input/output" title="Input/output">input/output</a> or <a href="System_call" title="System call">system calls</a> of an application or service. It operates by monitoring and blocking communications based on a configured policy, generally with predefined rule sets to choose from. The two primary categories of application firewalls are <i>network-based</i> and <i>host-based</i>.
</p>
<meta property="mw:PageProp/toc">
<div class="mw-heading mw-heading2"><h2 id="History">History</h2></div>
<p><a href="Gene_Spafford" title="Gene Spafford">Gene Spafford</a> of <a href="Purdue_University" title="Purdue University">Purdue University</a>, <a href="Bill_Cheswick" class="mw-redirect" title="Bill Cheswick">Bill Cheswick</a> at <a href="AT%26T_Laboratories" class="mw-redirect" title="AT&T Laboratories">AT&T Laboratories</a>, and <a href="Marcus_Ranum" class="mw-redirect" title="Marcus Ranum">Marcus Ranum</a> described a third-generation firewall known as an application layer firewall. Marcus Ranum's work, based on the firewall created by <a href="Paul_Vixie" title="Paul Vixie">Paul Vixie</a>, <a href="Brian_Reid_(computer_scientist)" title="Brian Reid (computer scientist)">Brian Reid</a>, and Jeff Mogul, spearheaded the creation of the first commercial product. The product was released by DEC, named the DEC SEAL by <a href="Geoff_Mulligan" title="Geoff Mulligan">Geoff Mulligan</a> - Secure External Access Link. DEC's first major sale was on June 13, 1991, to Dupont.
</p><p>Under a broader DARPA contract at TIS, Marcus Ranum, Wei Xu, and Peter Churchyard developed the Firewall Toolkit (FWTK) and made it freely available under license in October 1993.<sup id="cite_ref-1" class="reference"><a href="#cite_note-1"><span class="cite-bracket">[</span>1<span class="cite-bracket">]</span></a></sup> The purposes for releasing the freely available, not for commercial use, FWTK were: to demonstrate, via the software, documentation, and methods used, how a company with (at the time) 11 years experience in formal security methods, and individuals with firewall experience, developed firewall software; to create a common base of very good firewall software for others to build on (so people did not have to continue to "roll their own" from scratch); to "raise the bar" of firewall software being used. However, FWTK was a basic application proxy requiring the user interactions.
</p><p>In 1994, Wei Xu extended the FWTK with the Kernel enhancement of IP stateful filter and socket transparent. This was the first transparent firewall, known as the inception of <a href="Firewall_(computing)#Application_layer" title="Firewall (computing)">the third generation firewall</a>, beyond a traditional application proxy (<a href="Firewall_(computing)#Connection_tracking" title="Firewall (computing)">the second generation firewall</a>), released as the commercial product known as Gauntlet firewall. Gauntlet firewall was rated one of the top application firewalls from 1995 until 1998, the year it was acquired by Network Associates Inc, (NAI). Network Associates continued to claim that Gauntlet was the "worlds most secure firewall" but in May 2000, security researcher <a href="Jim_Stickley" title="Jim Stickley">Jim Stickley</a> discovered a large vulnerability in the firewall, allowing remote access to the operating system and bypassing the security controls.<sup id="cite_ref-2" class="reference"><a href="#cite_note-2"><span class="cite-bracket">[</span>2<span class="cite-bracket">]</span></a></sup> <a href="Jim_Stickley" title="Jim Stickley">Stickley</a> discovered a second vulnerability a year later, effectively ending Gauntlet firewalls' security dominance.<sup id="cite_ref-3" class="reference"><a href="#cite_note-3"><span class="cite-bracket">[</span>3<span class="cite-bracket">]</span></a></sup>
</p>
<div class="mw-heading mw-heading2"><h2 id="Description">Description</h2></div>
<p><a href="Application_layer" title="Application layer">Application layer</a> filtering operates at a higher level than traditional security appliances. This allows packet decisions to be made based on more than just source/destination IP Address or ports and can also use information spanning across multiple connections for any given host.
</p>
<div class="mw-heading mw-heading3"><h3 id="Network-based_application_firewalls">Network-based application firewalls</h3></div>
<div role="note" class="hatnote navigation-not-searchable">See also: <a href="Web_application_firewall" title="Web application firewall">Web application firewall</a></div>
<p>Network-based application firewalls operate at the application layer of a <a href="Protocol_stack" title="Protocol stack"> TCP/IP stack</a><sup id="cite_ref-4" class="reference"><a href="#cite_note-4"><span class="cite-bracket">[</span>4<span class="cite-bracket">]</span></a></sup> and can understand certain applications and protocols such as <a href="File_Transfer_Protocol" title="File Transfer Protocol">File Transfer Protocol</a> (FTP), <a href="Domain_Name_System" title="Domain Name System">Domain Name System</a> (DNS), or <a href="Hypertext_Transfer_Protocol" class="mw-redirect" title="Hypertext Transfer Protocol">Hypertext Transfer Protocol</a> (HTTP). This allows it to identify unwanted applications or services using a non standard port or detect if an allowed protocol is being abused.<sup id="cite_ref-5" class="reference"><a href="#cite_note-5"><span class="cite-bracket">[</span>5<span class="cite-bracket">]</span></a></sup>
</p><p>Modern versions of network-based application firewalls can include the following technologies:
</p>
<ul><li><a href="TLS_acceleration" title="TLS acceleration"> Encryption offloading </a></li>
<li><a href="Intrusion_prevention_system" class="mw-redirect" title="Intrusion prevention system">Intrusion prevention system</a></li>
<li><a href="Data_loss_prevention" class="mw-redirect" title="Data loss prevention">Data loss prevention</a></li></ul>
<p>Web application firewalls (WAF) are a specialized version of a network-based appliance that acts as a <a href="Reverse_proxy" title="Reverse proxy">reverse proxy</a>, inspecting traffic before being forwarded to an associated server.
</p>
<div class="mw-heading mw-heading3"><h3 id="Host-based_application_firewalls">Host-based application firewalls</h3></div>
<p>A host-based application firewall monitors application <a href="System_call" title="System call"> system calls</a> or other general system communication. This gives more granularity and control, but is limited to only protecting the host it is running on. Control is applied by filtering on a per process basis. Generally, prompts are used to define rules for processes that have not yet received a connection. Further filtering can be done by examining the process ID of the owner of the data packets. Many host-based application firewalls are combined or used in conjunction with a packet filter.<sup id="cite_ref-Symantec_6-0" class="reference"><a href="#cite_note-Symantec-6"><span class="cite-bracket">[</span>6<span class="cite-bracket">]</span></a></sup>
</p><p>Due to technological limitations, modern solutions such as <a href="Sandbox_(computer_security)" title="Sandbox (computer security)"> sandboxing</a> are being used as a replacement of host-based application firewalls to protect system processes.<sup id="cite_ref-7" class="reference"><a href="#cite_note-7"><span class="cite-bracket">[</span>7<span class="cite-bracket">]</span></a></sup>
</p>
<div class="mw-heading mw-heading2"><h2 id="Implementations">Implementations</h2></div>
<p>Application firewalls are available in various forms, including free and open-source software as well as commercial products.
</p>
<div class="mw-heading mw-heading3"><h3 id="Mac_OS_X">Mac OS X</h3></div>
<p>Starting with Mac OS X Leopard, an implementation of the TrustedBSD MAC framework (taken from FreeBSD), was included.<sup id="cite_ref-8" class="reference"><a href="#cite_note-8"><span class="cite-bracket">[</span>8<span class="cite-bracket">]</span></a></sup> The TrustedBSD MAC framework is used to sandbox services and provides a firewall layer, given the configuration of the sharing services in <a href="Mac_operating_systems" title="Mac operating systems">Mac OS</a> X Leopard and Snow Leopard. Third-party applications can provide extended functionality, including filtering out outgoing connections by app.
</p>
<div class="mw-heading mw-heading3"><h3 id="Linux">Linux</h3></div>
<p>This is a list of security software packages for Linux, allowing filtering of application to OS communication, possibly on a by-user basis:
</p>
<ul><li><a href="AppArmor" title="AppArmor">AppArmor</a></li>
<li>Kerio Control โ a commercial product from <a href="Kerio_Technologies" title="Kerio Technologies">Kerio Technologies</a></li>
<li><a href="ModSecurity" title="ModSecurity">ModSecurity</a> โ also works under Windows, Mac OS X, <a href="Oracle_Solaris" title="Oracle Solaris">Oracle Solaris</a> and other versions of <a href="Unix" title="Unix">Unix</a>. ModSecurity is designed to work with the Web servers IIS, Apache2 and NGINX.</li>
<li>Portmaster โ an activity monitoring application by Safing. It is also available for <a href="Microsoft_Windows" title="Microsoft Windows">Microsoft Windows</a>.<sup id="cite_ref-9" class="reference"><a href="#cite_note-9"><span class="cite-bracket">[</span>9<span class="cite-bracket">]</span></a></sup></li>
<li><a href="Systrace" title="Systrace">Systrace</a></li>
<li>Zorp firewall</li></ul>
<div class="mw-heading mw-heading3"><h3 id="Windows">Windows</h3></div>
<ul><li><a rel="nofollow" class="external text" href="https://github.com/deminimis/minimalfirewall">Minimal Firewall</a></li></ul>
<ul><li><a href="Windows_Defender_Firewall" class="mw-redirect" title="Windows Defender Firewall">Microsoft Defender Firewall</a></li></ul>
<ul><li><a rel="nofollow" class="external text" href="https://github.com/Safing/portmaster">Portmaster</a></li></ul>
<ul><li><a rel="nofollow" class="external text" href="https://github.com/henrypp/simplewall">Simplewall</a></li></ul>
<ul><li><a rel="nofollow" class="external text" href="https://github.com/pylorak/TinyWall">Tinywall</a></li></ul>
<ul><li><a href="WinGate" title="WinGate">WinGate</a></li></ul>
<div class="mw-heading mw-heading3"><h3 id="Network_appliances">Network appliances</h3></div>
<p>These devices may be sold as hardware, software, or virtualized network appliances.
</p><p><br>
<b>Next-Generation Firewalls:</b>
</p>
<ul><li>Cisco Firepower Threat Defense</li>
<li><a href="Check_Point" title="Check Point">Check Point</a></li>
<li><a href="Fortinet" title="Fortinet">Fortinet</a> FortiGate Series</li>
<li><a href="Juniper_Networks" title="Juniper Networks">Juniper Networks</a> SRX Series</li>
<li><a href="Palo_Alto_Networks" title="Palo Alto Networks">Palo Alto Networks</a></li>
<li><a href="SonicWALL" class="mw-redirect" title="SonicWALL">SonicWALL</a> TZ/NSA/SuperMassive Series</li></ul>
<p><br>
<b>Web Application Firewalls/LoadBalancers:</b>
</p>
<ul><li><a href="A10_Networks" title="A10 Networks">A10 Networks</a> Web Application Firewall</li>
<li><a href="Barracuda_Networks" title="Barracuda Networks">Barracuda Networks</a> Web Application Firewall/Load Balancer ADC</li>
<li><a href="Citrix_Systems" title="Citrix Systems">Citrix NetScaler</a></li>
<li><a href="F5_Networks" class="mw-redirect" title="F5 Networks">F5 Networks</a> BIG-IP Application Security Manager</li>
<li><a href="Fortinet" title="Fortinet">Fortinet</a> FortiWeb Series</li>
<li><a href="KEMP_Technologies" class="mw-redirect" title="KEMP Technologies">KEMP Technologies</a></li>
<li><a href="Imperva" title="Imperva">Imperva</a></li></ul>
<p><br>
<b>Others:</b>
</p>
<ul><li><a href="CloudFlare" class="mw-redirect" title="CloudFlare">CloudFlare</a></li>
<li><a href="Cisco_Meraki" title="Cisco Meraki">Meraki</a></li>
<li><a href="Smoothwall" title="Smoothwall">Smoothwall</a></li>
<li>Snapt Inc</li></ul>
<div class="mw-heading mw-heading2"><h2 id="See_also">See also</h2></div>
<style data-mw-deduplicate="TemplateStyles:r1184024115">
/* start https://en.wikipedia.org/ */
.mw-parser-output .div-col{margin-top:0.3em;column-width:30em}.mw-parser-output .div-col-small{font-size:90%}.mw-parser-output .div-col-rules{column-rule:1px solid #aaa}.mw-parser-output .div-col dl,.mw-parser-output .div-col ol,.mw-parser-output .div-col ul{margin-top:0}.mw-parser-output .div-col li,.mw-parser-output .div-col dd{page-break-inside:avoid;break-inside:avoid-column}
/* end https://en.wikipedia.org/ */
</style><div class="div-col" style="column-width: 15em;">
<ul><li><a href="ModSecurity" title="ModSecurity">ModSecurity</a></li>
<li><a href="Computer_security" title="Computer security">Computer security</a></li>
<li><a href="Content-control_software" class="mw-redirect" title="Content-control software">Content-control software</a></li>
<li><a href="Proxy_server" title="Proxy server">Proxy server</a></li>
<li><a href="Information_security" title="Information security">Information security</a></li>
<li><a href="Application_security" title="Application security">Application security</a></li>
<li><a href="Network_security" title="Network security">Network security</a></li></ul>
</div>
<div class="mw-heading mw-heading2"><h2 id="References">References</h2></div>
<style data-mw-deduplicate="TemplateStyles:r1239543626">
/* start https://en.wikipedia.org/ */
.mw-parser-output .reflist{margin-bottom:0.5em;list-style-type:decimal}@media screen{.mw-parser-output .reflist{font-size:90%}}.mw-parser-output .reflist .references{font-size:100%;margin-bottom:0;list-style-type:inherit}.mw-parser-output .reflist-columns-2{column-width:30em}.mw-parser-output .reflist-columns-3{column-width:25em}.mw-parser-output .reflist-columns{margin-top:0.3em}.mw-parser-output .reflist-columns ol{margin-top:0}.mw-parser-output .reflist-columns li{page-break-inside:avoid;break-inside:avoid-column}.mw-parser-output .reflist-upper-alpha{list-style-type:upper-alpha}.mw-parser-output .reflist-upper-roman{list-style-type:upper-roman}.mw-parser-output .reflist-lower-alpha{list-style-type:lower-alpha}.mw-parser-output .reflist-lower-greek{list-style-type:lower-greek}.mw-parser-output .reflist-lower-roman{list-style-type:lower-roman}
/* end https://en.wikipedia.org/ */
</style><div class="reflist reflist-columns references-column-width" style="column-width: 30em;">
<ol class="references">
<li id="cite_note-1"><span class="mw-cite-backlink"><b><a href="#cite_ref-1">^</a></b></span> <span class="reference-text"><style data-mw-deduplicate="TemplateStyles:r1238218222">
/* start https://en.wikipedia.org/ */
.mw-parser-output cite.citation{font-style:inherit;word-wrap:break-word}.mw-parser-output .citation q{quotes:"\"""\"""'""'"}.mw-parser-output .citation:target{background-color:rgba(0,127,255,0.133)}.mw-parser-output .id-lock-free.id-lock-free a{background:url("./mw/Lock-green.svg")right 0.1em center/9px no-repeat}.mw-parser-output .id-lock-limited.id-lock-limited a,.mw-parser-output .id-lock-registration.id-lock-registration a{background:url("./mw/Lock-gray-alt-2.svg")right 0.1em center/9px no-repeat}.mw-parser-output .id-lock-subscription.id-lock-subscription a{background:url("./mw/Lock-red-alt-2.svg")right 0.1em center/9px no-repeat}.mw-parser-output .cs1-ws-icon a{background:url("./mw/Wikisource-logo.svg")right 0.1em center/12px no-repeat}body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-free a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-limited a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-registration a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .id-lock-subscription a,body:not(.skin-timeless):not(.skin-minerva) .mw-parser-output .cs1-ws-icon a{background-size:contain;padding:0 1em 0 0}.mw-parser-output .cs1-code{color:inherit;background:inherit;border:none;padding:inherit}.mw-parser-output .cs1-hidden-error{display:none;color:var(--color-error,#d33)}.mw-parser-output .cs1-visible-error{color:var(--color-error,#d33)}.mw-parser-output .cs1-maint{display:none;color:#085;margin-left:0.3em}.mw-parser-output .cs1-kern-left{padding-left:0.2em}.mw-parser-output .cs1-kern-right{padding-right:0.2em}.mw-parser-output .citation .mw-selflink{font-weight:inherit}@media screen{.mw-parser-output .cs1-format{font-size:95%}html.skin-theme-clientpref-night .mw-parser-output .cs1-maint{color:#18911f}}@media screen and (prefers-color-scheme:dark){html.skin-theme-clientpref-os .mw-parser-output .cs1-maint{color:#18911f}}
/* end https://en.wikipedia.org/ */
</style><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://www.avolio.com/papers/FWTKv1.0Announcement.html">"Firewall toolkit V1.0 release"</a><span class="reference-accessdate">. Retrieved <span class="nowrap">2018-12-28</span></span>.</cite></span>
</li>
<li id="cite_note-2"><span class="mw-cite-backlink"><b><a href="#cite_ref-2">^</a></b></span> <span class="reference-text"><cite id="CITEREFKevin_Pulsen2000" class="citation web cs1">Kevin Pulsen (May 22, 2000). <a rel="nofollow" class="external text" href="https://www.securityfocus.com/news/40">"Security Hole found in NAI Firewall"</a>. securityfocus.com<span class="reference-accessdate">. Retrieved <span class="nowrap">2018-08-14</span></span>.</cite></span>
</li>
<li id="cite_note-3"><span class="mw-cite-backlink"><b><a href="#cite_ref-3">^</a></b></span> <span class="reference-text"><cite id="CITEREFKevin_Pulsen2001" class="citation web cs1">Kevin Pulsen (September 5, 2001). <a rel="nofollow" class="external text" href="https://www.theregister.co.uk/2001/09/05/gaping_hole_in_nais_gauntlet/">"Gaping hole in NAI's Gauntlet firewall"</a>. theregister.co.uk<span class="reference-accessdate">. Retrieved <span class="nowrap">2018-08-14</span></span>.</cite></span>
</li>
<li id="cite_note-4"><span class="mw-cite-backlink"><b><a href="#cite_ref-4">^</a></b></span> <span class="reference-text"><cite id="CITEREFLuis_F._Medina2003" class="citation book cs1">Luis F. Medina (2003). <a rel="nofollow" class="external text" href="https://books.google.com/books?id=Yz34zXV7VB8C&q=application+layer+firewall&pg=PA54"><i>The Weakest Security Link Series</i></a> (1st ed.). IUniverse. p. 54. <a href="ISBN_(identifier)" class="mw-redirect" title="ISBN (identifier)">ISBN</a> <bdi>978-0-595-26494-0</bdi>.</cite></span>
</li>
<li id="cite_note-5"><span class="mw-cite-backlink"><b><a href="#cite_ref-5">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://www.cloudflare.com/learning/ddos/what-is-layer-7/">"What is Layer 7? How Layer 7 of the Internet Works"</a>. <i>Cloudflare</i><span class="reference-accessdate">. Retrieved <span class="nowrap">Aug 29,</span> 2020</span>.</cite></span>
</li>
<li id="cite_note-Symantec-6"><span class="mw-cite-backlink"><b><a href="#cite_ref-Symantec_6-0">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://community.broadcom.com/symantecenterprise/communities/community-home/librarydocuments/viewdocument?DocumentKey=54428548-10f1-4643-92d9-487740e72db7&CommunityKey=1ecf5f55-9545-44d6-b0f4-4e4a7f5f5e68&tab=librarydocuments">"Software Firewalls: Made of Straw? Part 1 of 2"</a>. <i>Symantec.com</i>. Symantec Connect Community. 2010-06-29<span class="reference-accessdate">. Retrieved <span class="nowrap">2013-09-05</span></span>.</cite></span>
</li>
<li id="cite_note-7"><span class="mw-cite-backlink"><b><a href="#cite_ref-7">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://searchsecurity.techtarget.com/definition/sandbox">"What is sandbox (software testing and security)? - Definition from WhatIs.com"</a>. <i>SearchSecurity</i><span class="reference-accessdate">. Retrieved <span class="nowrap">2020-11-15</span></span>.</cite></span>
</li>
<li id="cite_note-8"><span class="mw-cite-backlink"><b><a href="#cite_ref-8">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="http://www.trustedbsd.org/mac.html">"Mandatory Access Control (MAC) Framework"</a>. TrustedBSD<span class="reference-accessdate">. Retrieved <span class="nowrap">2013-09-05</span></span>.</cite></span>
</li>
<li id="cite_note-9"><span class="mw-cite-backlink"><b><a href="#cite_ref-9">^</a></b></span> <span class="reference-text"><cite class="citation web cs1"><a rel="nofollow" class="external text" href="https://safing.io/portmaster/">"Safing Portmaster"</a>. <i>safing.io</i><span class="reference-accessdate">. Retrieved <span class="nowrap">2021-11-04</span></span>.</cite></span>
</li>
</ol></div>
<div class="mw-heading mw-heading2"><h2 id="External_links">External links</h2></div>
<ul><li><a rel="nofollow" class="external text" href="http://www.owasp.org/index.php/Web_Application_Firewall">Web Application Firewall</a>, Open Web Application Security Project</li>
<li><a rel="nofollow" class="external text" href="http://www.webappsec.org/projects/wafec/">Web Application Firewall Evaluation Criteria</a>, from the <a rel="nofollow" class="external text" href="http://www.webappsec.org">Web Application Security Consortium</a></li>
<li><a rel="nofollow" class="external text" href="http://www.net-security.org/article.php?id=1270">Safety in the cloud(s): 'Vaporizing' the Web application firewall to secure cloud computing</a></li></ul>
<div class="navbox-styles"><style data-mw-deduplicate="TemplateStyles:r1129693374">
/* start https://en.wikipedia.org/ */
.mw-parser-output .hlist dl,.mw-parser-output .hlist ol,.mw-parser-output .hlist ul{margin:0;padding:0}.mw-parser-output .hlist dd,.mw-parser-output .hlist dt,.mw-parser-output .hlist li{margin:0;display:inline}.mw-parser-output .hlist.inline,.mw-parser-output .hlist.inline dl,.mw-parser-output .hlist.inline ol,.mw-parser-output .hlist.inline ul,.mw-parser-output .hlist dl dl,.mw-parser-output .hlist dl ol,.mw-parser-output .hlist dl ul,.mw-parser-output .hlist ol dl,.mw-parser-output .hlist ol ol,.mw-parser-output .hlist ol ul,.mw-parser-output .hlist ul dl,.mw-parser-output .hlist ul ol,.mw-parser-output .hlist ul ul{display:inline}.mw-parser-output .hlist .mw-empty-li{display:none}.mw-parser-output .hlist dt::after{content:": "}.mw-parser-output .hlist dd::after,.mw-parser-output .hlist li::after{content:" ยท ";font-weight:bold}.mw-parser-output .hlist dd:last-child::after,.mw-parser-output .hlist dt:last-child::after,.mw-parser-output .hlist li:last-child::after{content:none}.mw-parser-output .hlist dd dd:first-child::before,.mw-parser-output .hlist dd dt:first-child::before,.mw-parser-output .hlist dd li:first-child::before,.mw-parser-output .hlist dt dd:first-child::before,.mw-parser-output .hlist dt dt:first-child::before,.mw-parser-output .hlist dt li:first-child::before,.mw-parser-output .hlist li dd:first-child::before,.mw-parser-output .hlist li dt:first-child::before,.mw-parser-output .hlist li li:first-child::before{content:" (";font-weight:normal}.mw-parser-output .hlist dd dd:last-child::after,.mw-parser-output .hlist dd dt:last-child::after,.mw-parser-output .hlist dd li:last-child::after,.mw-parser-output .hlist dt dd:last-child::after,.mw-parser-output .hlist dt dt:last-child::after,.mw-parser-output .hlist dt li:last-child::after,.mw-parser-output .hlist li dd:last-child::after,.mw-parser-output .hlist li dt:last-child::after,.mw-parser-output .hlist li li:last-child::after{content:")";font-weight:normal}.mw-parser-output .hlist ol{counter-reset:listitem}.mw-parser-output .hlist ol>li{counter-increment:listitem}.mw-parser-output .hlist ol>li::before{content:" "counter(listitem)"\a0 "}.mw-parser-output .hlist dd ol>li:first-child::before,.mw-parser-output .hlist dt ol>li:first-child::before,.mw-parser-output .hlist li ol>li:first-child::before{content:" ("counter(listitem)"\a0 "}
/* end https://en.wikipedia.org/ */
</style><style data-mw-deduplicate="TemplateStyles:r1236075235">
/* start https://en.wikipedia.org/ */
.mw-parser-output .navbox{box-sizing:border-box;border:1px solid #a2a9b1;width:100%;clear:both;font-size:88%;text-align:center;padding:1px;margin:1em auto 0}.mw-parser-output .navbox .navbox{margin-top:0}.mw-parser-output .navbox+.navbox,.mw-parser-output .navbox+.navbox-styles+.navbox{margin-top:-1px}.mw-parser-output .navbox-inner,.mw-parser-output .navbox-subgroup{width:100%}.mw-parser-output .navbox-group,.mw-parser-output .navbox-title,.mw-parser-output .navbox-abovebelow{padding:0.25em 1em;line-height:1.5em;text-align:center}.mw-parser-output .navbox-group{white-space:nowrap;text-align:right}.mw-parser-output .navbox,.mw-parser-output .navbox-subgroup{background-color:#fdfdfd}.mw-parser-output .navbox-list{line-height:1.5em;border-color:#fdfdfd}.mw-parser-output .navbox-list-with-group{text-align:left;border-left-width:2px;border-left-style:solid}.mw-parser-output tr+tr>.navbox-abovebelow,.mw-parser-output tr+tr>.navbox-group,.mw-parser-output tr+tr>.navbox-image,.mw-parser-output tr+tr>.navbox-list{border-top:2px solid #fdfdfd}.mw-parser-output .navbox-title{background-color:#ccf}.mw-parser-output .navbox-abovebelow,.mw-parser-output .navbox-group,.mw-parser-output .navbox-subgroup .navbox-title{background-color:#ddf}.mw-parser-output .navbox-subgroup .navbox-group,.mw-parser-output .navbox-subgroup .navbox-abovebelow{background-color:#e6e6ff}.mw-parser-output .navbox-even{background-color:#f7f7f7}.mw-parser-output .navbox-odd{background-color:transparent}.mw-parser-output .navbox .hlist td dl,.mw-parser-output .navbox .hlist td ol,.mw-parser-output .navbox .hlist td ul,.mw-parser-output .navbox td.hlist dl,.mw-parser-output .navbox td.hlist ol,.mw-parser-output .navbox td.hlist ul{padding:0.125em 0}.mw-parser-output .navbox .navbar{display:block;font-size:100%}.mw-parser-output .navbox-title .navbar{float:left;text-align:left;margin-right:0.5em}body.skin--responsive .mw-parser-output .navbox-image img{max-width:none!important}@media print{body.ns-0 .mw-parser-output .navbox{display:none!important}}
/* end https://en.wikipedia.org/ */
</style></div><div role="navigation" class="navbox" aria-labelledby="Information_security92" style="padding:3px"><table class="nowraplinks mw-collapsible autocollapse navbox-inner" style="border-spacing:0;background:transparent;color:inherit"><tbody><tr><th scope="col" class="navbox-title" colspan="3"><style data-mw-deduplicate="TemplateStyles:r1239400231">
/* start https://en.wikipedia.org/ */
.mw-parser-output .navbar{display:inline;font-size:88%;font-weight:normal}.mw-parser-output .navbar-collapse{float:left;text-align:left}.mw-parser-output .navbar-boxtext{word-spacing:0}.mw-parser-output .navbar ul{display:inline-block;white-space:nowrap;line-height:inherit}.mw-parser-output .navbar-brackets::before{margin-right:-0.125em;content:"[ "}.mw-parser-output .navbar-brackets::after{margin-left:-0.125em;content:" ]"}.mw-parser-output .navbar li{word-spacing:-0.125em}.mw-parser-output .navbar a>span,.mw-parser-output .navbar a>abbr{text-decoration:inherit}.mw-parser-output .navbar-mini abbr{font-variant:small-caps;border-bottom:none;text-decoration:none;cursor:inherit}.mw-parser-output .navbar-ct-full{font-size:114%;margin:0 7em}.mw-parser-output .navbar-ct-mini{font-size:114%;margin:0 4em}html.skin-theme-clientpref-night .mw-parser-output .navbar li a abbr{color:var(--color-base)!important}@media(prefers-color-scheme:dark){html.skin-theme-clientpref-os .mw-parser-output .navbar li a abbr{color:var(--color-base)!important}}@media print{.mw-parser-output .navbar{display:none!important}}
/* end https://en.wikipedia.org/ */
</style><div id="Information_security92" style="font-size:114%;margin:0 4em"><a href="Information_security" title="Information security">Information security</a></div></th></tr><tr><th scope="row" class="navbox-group" style="width:1%"><a href="Threat_(computer)" class="mw-redirect" title="Threat (computer)">Threats</a></th><td class="navbox-list-with-group navbox-list navbox-odd hlist" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Adware" title="Adware">Adware</a></li>
<li><a href="Advanced_persistent_threat" title="Advanced persistent threat">Advanced persistent threat</a></li>
<li><a href="Arbitrary_code_execution" title="Arbitrary code execution">Arbitrary code execution</a></li>
<li><a href="Backdoor_(computing)" title="Backdoor (computing)">Backdoors</a></li>
<li>Bombs
<ul><li><a href="Fork_bomb" title="Fork bomb">Fork</a></li>
<li><a href="Logic_bomb" title="Logic bomb">Logic</a></li>
<li><a href="Time_bomb_(software)" title="Time bomb (software)">Time</a></li>
<li><a href="Zip_bomb" title="Zip bomb">Zip</a></li></ul></li>
<li><a href="Hardware_backdoor" title="Hardware backdoor">Hardware backdoors</a></li>
<li><a href="Code_injection" title="Code injection">Code injection</a></li>
<li><a href="Crimeware" title="Crimeware">Crimeware</a></li>
<li><a href="Cross-site_scripting" title="Cross-site scripting">Cross-site scripting</a></li>
<li><a href="Cross-site_leaks" title="Cross-site leaks">Cross-site leaks</a></li>
<li><a href="DOM_clobbering" title="DOM clobbering">DOM clobbering</a></li>
<li><a href="History_sniffing" title="History sniffing">History sniffing</a></li>
<li><a href="Cryptojacking" title="Cryptojacking">Cryptojacking</a></li>
<li><a href="Botnet" title="Botnet">Botnets</a></li>
<li><a href="Data_breach" title="Data breach">Data breach</a></li>
<li><a href="Drive-by_download" title="Drive-by download">Drive-by download</a></li>
<li><a href="Browser_Helper_Object" title="Browser Helper Object">Browser Helper Objects</a></li>
<li><a href="Computer_virus" title="Computer virus">Viruses</a></li>
<li><a href="Data_scraping" title="Data scraping">Data scraping</a></li>
<li><a href="Denial-of-service_attack" title="Denial-of-service attack">Denial-of-service attack</a></li>
<li><a href="Eavesdropping" title="Eavesdropping">Eavesdropping</a></li>
<li><a href="Email_fraud" title="Email fraud">Email fraud</a></li>
<li><a href="Email_spoofing" title="Email spoofing">Email spoofing</a></li>
<li><a href="Exploit_(computer_security)" title="Exploit (computer security)">Exploits</a></li>
<li><a href="Dialer#Fraudulent_dialer" title="Dialer">Fraudulent dialers</a></li>
<li><a href="Hacktivism" title="Hacktivism">Hacktivism</a></li>
<li><a href="Infostealer" title="Infostealer">Infostealer</a></li>
<li><a href="Insecure_direct_object_reference" title="Insecure direct object reference">Insecure direct object reference</a></li>
<li><a href="Keystroke_logging" title="Keystroke logging">Keystroke loggers</a></li>
<li><a href="Malware" title="Malware">Malware</a></li>
<li><a href="Payload_(computing)" title="Payload (computing)">Payload</a></li>
<li><a href="Phishing" title="Phishing">Phishing</a>
<ul><li><a href="Voice_phishing" title="Voice phishing">Voice</a></li></ul></li>
<li><a href="Polymorphic_engine" title="Polymorphic engine">Polymorphic engine</a></li>
<li><a href="Privilege_escalation" title="Privilege escalation">Privilege escalation</a></li>
<li><a href="Ransomware" title="Ransomware">Ransomware</a></li>
<li><a href="Rootkit" title="Rootkit">Rootkits</a></li>
<li><a href="Scareware" title="Scareware">Scareware</a></li>
<li><a href="Shellcode" title="Shellcode">Shellcode</a></li>
<li><a href="Spamming" title="Spamming">Spamming</a></li>
<li><a href="Social_engineering_(security)" title="Social engineering (security)">Social engineering</a></li>
<li><a href="Spyware" title="Spyware">Spyware</a></li>
<li><a href="Software_bug" title="Software bug">Software bugs</a></li>
<li><a href="Trojan_horse_(computing)" title="Trojan horse (computing)">Trojan horses</a></li>
<li><a href="Hardware_Trojan" title="Hardware Trojan">Hardware Trojans</a></li>
<li><a href="Remote_access_trojan" class="mw-redirect" title="Remote access trojan">Remote access trojans</a></li>
<li><a href="Vulnerability_(computer_security)" title="Vulnerability (computer security)">Vulnerability</a></li>
<li><a href="Web_shell" title="Web shell">Web shells</a></li>
<li><a href="Wiper_(malware)" title="Wiper (malware)">Wiper</a></li>
<li><a href="Computer_worm" title="Computer worm">Worms</a></li>
<li><a href="SQL_injection" title="SQL injection">SQL injection</a></li>
<li><a href="Rogue_security_software" title="Rogue security software">Rogue security software</a></li>
<li><a href="Zombie_(computing)" title="Zombie (computing)">Zombie</a></li></ul>
</div></td><td class="noviewer navbox-image" rowspan="3" style="width:1px;padding:0 0 0 2px"><div></div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Defenses</th><td class="navbox-list-with-group navbox-list navbox-even hlist" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Application_security" title="Application security">Application security</a>
<ul><li><a href="Secure_coding" title="Secure coding">Secure coding</a></li>
<li>Secure by default</li>
<li><a href="Secure_by_design" title="Secure by design">Secure by design</a>
<ul><li><a href="Misuse_case" title="Misuse case">Misuse case</a></li></ul></li></ul></li>
<li><a href="Computer_access_control" title="Computer access control">Computer access control</a>
<ul><li><a href="Authentication" title="Authentication">Authentication</a>
<ul><li><a href="Multi-factor_authentication" title="Multi-factor authentication">Multi-factor authentication</a></li></ul></li>
<li><a href="Authorization" title="Authorization">Authorization</a></li></ul></li>
<li><a href="Computer_security_software" title="Computer security software">Computer security software</a>
<ul><li><a href="Antivirus_software" title="Antivirus software">Antivirus software</a></li>
<li><a href="Security-focused_operating_system" title="Security-focused operating system">Security-focused operating system</a></li></ul></li>
<li><a href="Data-centric_security" title="Data-centric security">Data-centric security</a></li>
<li><a href="Obfuscation_(software)" title="Obfuscation (software)">Software obfuscation</a></li>
<li><a href="Data_masking" title="Data masking">Data masking</a></li>
<li><a href="Encryption" title="Encryption">Encryption</a></li>
<li><a href="Firewall_(computing)" title="Firewall (computing)">Firewall</a></li>
<li><a href="Intrusion_detection_system" title="Intrusion detection system">Intrusion detection system</a>
<ul><li><a href="Host-based_intrusion_detection_system" title="Host-based intrusion detection system">Host-based intrusion detection system</a> (HIDS)</li>
<li><a href="Anomaly_detection" title="Anomaly detection">Anomaly detection</a></li></ul></li>
<li><a href="Information_security_management" title="Information security management">Information security management</a>
<ul><li><a href="Information_risk_management" class="mw-redirect" title="Information risk management">Information risk management</a></li>
<li><a href="Security_information_and_event_management" title="Security information and event management">Security information and event management</a> (SIEM)</li></ul></li>
<li><a href="Runtime_application_self-protection" title="Runtime application self-protection">Runtime application self-protection</a></li>
<li><a href="Site_isolation" title="Site isolation">Site isolation</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Related<br>security<br>topics</th><td class="navbox-list-with-group navbox-list navbox-odd hlist" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Computer_security" title="Computer security">Computer security</a></li>
<li><a href="Automotive_security" title="Automotive security">Automotive security</a></li>
<li><a href="Cybercrime" title="Cybercrime">Cybercrime</a>
<ul><li><a href="Cybersex_trafficking" title="Cybersex trafficking">Cybersex trafficking</a></li>
<li><a href="Computer_fraud" title="Computer fraud">Computer fraud</a></li></ul></li>
<li><a href="Cybergeddon" title="Cybergeddon">Cybergeddon</a></li>
<li><a href="Cyberterrorism" title="Cyberterrorism">Cyberterrorism</a></li>
<li><a href="Cyberwarfare" title="Cyberwarfare">Cyberwarfare</a></li>
<li><a href="Electronic_warfare" title="Electronic warfare">Electronic warfare</a></li>
<li><a href="Information_warfare" title="Information warfare">Information warfare</a></li>
<li><a href="Internet_security" title="Internet security">Internet security</a></li>
<li><a href="Mobile_security" title="Mobile security">Mobile security</a></li>
<li><a href="Network_security" title="Network security">Network security</a></li>
<li><a href="Copy_protection" title="Copy protection">Copy protection</a></li>
<li><a href="Digital_rights_management" title="Digital rights management">Digital rights management</a></li></ul>
</div></td></tr></tbody></table></div>
<div class="navbox-styles"></div><div role="navigation" class="navbox" aria-labelledby="Firewall_software268" style="padding:3px"><table class="nowraplinks hlist mw-collapsible autocollapse navbox-inner" style="border-spacing:0;background:transparent;color:inherit"><tbody><tr><th scope="col" class="navbox-title" colspan="2"><div id="Firewall_software268" style="font-size:114%;margin:0 4em"><a href="Firewall_(computing)" title="Firewall (computing)">Firewall software</a></div></th></tr><tr><td class="navbox-abovebelow" colspan="2"><div>
<ul>
<li><a href="Context-based_access_control" title="Context-based access control">Context-based access control</a></li>
<li><a href="Personal_firewall" title="Personal firewall">Personal firewall</a></li>
<li><a href="Stateful_firewall" title="Stateful firewall">Stateful firewall</a></li>
<li><a href="Virtual_firewall" title="Virtual firewall">Virtual firewall</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%"><a href="Linux" title="Linux">Linux</a></th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em"></div><table class="nowraplinks navbox-subgroup" style="border-spacing:0"><tbody><tr><th scope="row" class="navbox-group" style="width:1%">Apps</th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="FireHOL" title="FireHOL">FireHOL</a></li>
<li><a href="Firestarter_(firewall)" title="Firestarter (firewall)">Firestarter</a></li>
<li><a href="Firewalld" title="Firewalld">firewalld</a></li>
<li><a href="Netfilter" title="Netfilter">Netfilter</a>
<ul><li><a href="Iptables" title="Iptables">iptables</a></li>
<li><a href="Nftables" title="Nftables">nftables</a></li></ul></li>
<li><a href="MoBlock" title="MoBlock">MoBlock</a></li>
<li><a href="Privoxy" title="Privoxy">Privoxy</a></li>
<li><a href="Shorewall" title="Shorewall">Shorewall</a></li>
<li><a href="Squid_(software)" title="Squid (software)">Squid</a></li>
<li><a href="Uncomplicated_Firewall" title="Uncomplicated Firewall">Uncomplicated Firewall</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%"><a href="Linux_distribution" title="Linux distribution">Distros</a></th><td class="navbox-list-with-group navbox-list navbox-even" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Endian_Firewall" title="Endian Firewall">Endian Firewall</a></li>
<li><a href="IPFire" title="IPFire">IPFire</a></li>
<li><a href="LEDE" class="mw-redirect" title="LEDE">LEDE</a></li>
<li><a href="OpenWrt" title="OpenWrt">OpenWrt</a></li>
<li><a href="SmoothWall" class="mw-redirect" title="SmoothWall">SmoothWall</a></li>
<li><a href="VyOS" title="VyOS">VyOS</a></li>
<li><a href="Zeroshell" title="Zeroshell">Zeroshell</a></li></ul>
</div></td></tr></tbody></table><div></div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%"><a href="BSD" class="mw-redirect" title="BSD">BSD</a></th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em"></div><table class="nowraplinks navbox-subgroup" style="border-spacing:0"><tbody><tr><th scope="row" class="navbox-group" style="width:1%">Apps</th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="IPFilter" title="IPFilter">IPFilter</a></li>
<li><a href="Ipfirewall" title="Ipfirewall">ipfirewall</a></li>
<li><a href="NPF_(firewall)" title="NPF (firewall)">NPF</a></li>
<li><a href="PF_(firewall)" title="PF (firewall)">PF</a>
<ul><li><a href="Pfsync" title="Pfsync">pfsync</a></li></ul></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Distros</th><td class="navbox-list-with-group navbox-list navbox-even" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="OPNsense" title="OPNsense">OPNsense</a></li>
<li><a href="PfSense" title="PfSense">pfSense</a></li></ul>
</div></td></tr></tbody></table><div></div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%"><a href="MacOS" title="MacOS">macOS</a></th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Little_Snitch" title="Little Snitch">Little Snitch</a></li>
<li><a href="NetBarrier_X4" title="NetBarrier X4">NetBarrier X4</a></li>
<li><a href="PeerGuardian" title="PeerGuardian">PeerGuardian</a></li>
<li><a href="Intego#VirusBarrier" title="Intego">VirusBarrier X6</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%"><a href="Microsoft_Windows" title="Microsoft Windows">Windows</a></th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em"></div><table class="nowraplinks navbox-subgroup" style="border-spacing:0"><tbody><tr><th scope="row" class="navbox-group" style="width:1%">Commercial</th><td class="navbox-list-with-group navbox-list navbox-even" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Check_Point_Integrity" title="Check Point Integrity">Check Point Integrity</a></li>
<li><a href="Kaspersky_Internet_Security" title="Kaspersky Internet Security">Kaspersky Internet Security</a></li>
<li><a href="McAfee_Personal_Firewall_Plus" class="mw-redirect" title="McAfee Personal Firewall Plus">McAfee Personal Firewall Plus</a></li>
<li><a href="Norton_360" title="Norton 360">Norton 360</a></li>
<li><a href="Symantec_Endpoint_Protection" title="Symantec Endpoint Protection">Symantec Endpoint Protection</a></li>
<li><a href="Trend_Micro_Internet_Security" title="Trend Micro Internet Security">Trend Micro Internet Security</a></li>
<li><a href="Windows_Firewall" title="Windows Firewall">Windows Firewall</a></li>
<li><a href="WinGate" title="WinGate">WinGate</a></li>
<li><a href="WinRoute" class="mw-redirect" title="WinRoute">WinRoute</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%"><a href="Freemium" title="Freemium">Freemium</a></th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Comodo_Internet_Security" title="Comodo Internet Security">Comodo Internet Security</a></li>
<li><a href="ZoneAlarm" title="ZoneAlarm">ZoneAlarm</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">Open-source</th><td class="navbox-list-with-group navbox-list navbox-even" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="PeerBlock" title="PeerBlock">PeerBlock</a></li>
<li><a href="PeerGuardian" title="PeerGuardian">PeerGuardian</a></li></ul>
</div></td></tr><tr><th scope="row" class="navbox-group" style="width:1%">discontinued</th><td class="navbox-list-with-group navbox-list navbox-odd" style="width:100%;padding:0"><div style="padding:0 0.25em">
<ul><li><a href="Microsoft_Forefront_Threat_Management_Gateway" title="Microsoft Forefront Threat Management Gateway">Microsoft Forefront Threat Management Gateway</a></li>
<li><a href="Norton_Internet_Security" title="Norton Internet Security">Norton Internet Security</a></li>
<li><a href="Norton_Personal_Firewall" title="Norton Personal Firewall">Norton Personal Firewall</a></li>
<li><a href="Outpost_Firewall_Pro" title="Outpost Firewall Pro">Outpost Firewall Pro</a></li>
<li><a href="Windows_Live_OneCare" title="Windows Live OneCare">Windows Live OneCare</a></li></ul>
</div></td></tr></tbody></table><div></div></td></tr><tr><td class="navbox-abovebelow" colspan="2"><div>
<ul><li><a href="List_of_router_or_firewall_distributions" class="mw-redirect" title="List of router or firewall distributions">List of router or firewall distributions</a></li></ul>
</div></td></tr></tbody></table></div></div><!--htdig_noindex--><div><div class="zim-footer">
This article is issued from <a class="external text" title="Last edited on 2025-07-05" href="https://en.wikipedia.org/wiki/?title=Application_firewall&oldid=1298950082">Wikipedia</a>. The text is available under <a class="external text" href="https://creativecommons.org/licenses/by-sa/4.0/deed.en">Creative Commons Attribution-Share Alike 4.0</a> unless otherwise noted. Additional terms may apply for the media files.
</div>
</div><!--/htdig_noindex--></div>
</div>
</main>
</div>
</div>
</div>
</body></html>