Published capability
Secure Global Supply Chain - L7 WAF enhancement for Cloudera on Cloud
Secure Global Supply Chain: Advanced real-time protection for data ingestion & consumption scalability; Customer-owned domain behind CloudFront+ WAF, ACM, Route53, and access logging, with WAF
- Provider
- AI Exchange
- Version
- v1.1
- Published
- Implementation time (provider-declared)
- 2–3 weeks
- Indicative price (provider-declared)
- From €9,850
Overview
Highly secure internet-facing WAF solution to enhance Cloudera public cloud data ingestion & consumption scalability.
This new Layer 7 + WAF (Web Application Firewall) consumption layer architecture address by design huge supply chain scalabilities issues, allowing to decommission costly VPN hardware, while seamlessly elevating security posture for modern threads.
Key Highlights & Architecture
- Strategic Shift: We are enhancing the existing CDP ingress stack with a Cloudfront or Application Load Balancer (ALB) paired with a WAF filtering, adding a robust perimeter shield that complements Apache Knox/Istio without requiring intrusive changes to Cloudera products.
- Advanced Threat Protection: The L7 consumption layer offloads edge TLS termination, advanced HTTPS payload real-time inspection, DDoS mitigation, and active threat mitigation with AWS-Managed rules. By default, it exposes Cloudera endpoints with Post-Quantum Cryptography ciphers.
- Proven Performance: WAF successfully blocked simulated SQL injections and malicious file uploads. We also confirmed zero performance degradation when routing high-volume traffic (200,000 rows) through external JDBC connections.
What it does
- Data Ingestion & Integration
- Data Platform Access Security
- Infrastructure Deployment Automation
- Data Consumption Enablement
Where it applies
Industry
- Cross Industry
What it needs
- Human Final Approval
- Cloud Provider
- Cloud Provider
- Cloud Provider
- Data Residency Region
- Data Residency Region
- Data Residency Region