Published capability

Secure Global Supply Chain - L7 WAF enhancement for Cloudera on Cloud

Secure Global Supply Chain: Advanced real-time protection for data ingestion & consumption scalability; Customer-owned domain behind CloudFront+ WAF, ACM, Route53, and access logging, with WAF

Provider
AI Exchange
Version
v1.1
Published
Implementation time (provider-declared)
2–3 weeks
Indicative price (provider-declared)
From €9,850

Overview

Highly secure internet-facing WAF solution to enhance Cloudera public cloud data ingestion & consumption scalability.

This new Layer 7 + WAF (Web Application Firewall) consumption layer architecture address by design huge supply chain scalabilities issues, allowing to decommission costly VPN hardware, while seamlessly elevating security posture for modern threads.

Key Highlights & Architecture

  • Strategic Shift: We are enhancing the existing CDP ingress stack with a Cloudfront or Application Load Balancer (ALB) paired with a WAF filtering, adding a robust perimeter shield that complements Apache Knox/Istio without requiring intrusive changes to Cloudera products.
  • Advanced Threat Protection: The L7 consumption layer offloads edge TLS termination, advanced HTTPS payload real-time inspection, DDoS mitigation, and active threat mitigation with AWS-Managed rules. By default, it exposes Cloudera endpoints with Post-Quantum Cryptography ciphers.
  • Proven Performance: WAF successfully blocked simulated SQL injections and malicious file uploads. We also confirmed zero performance degradation when routing high-volume traffic (200,000 rows) through external JDBC connections.

What it does

  • Data Ingestion & Integration
  • Data Platform Access Security
  • Infrastructure Deployment Automation
  • Data Consumption Enablement

Where it applies

Industry

  • Cross Industry

What it needs

  • Human Final Approval
  • Cloud Provider
  • Cloud Provider
  • Cloud Provider
  • Data Residency Region
  • Data Residency Region
  • Data Residency Region

Browse capabilities