Email this article   Print article 
KAVADO VS. IMPERVA PRODUCTS

Application Security: Take One Or Two?

By Dan Neel
July 30, 2004    3:00 PM ET

A debate has arisen in the world of application security: Is a single, integrated scan-and-protect product better than two separate products that work in conjunction to achieve the same end?

The polemic is best illustrated by rivals Kavado and Imperva. Both vendors' products provide the tools to prevent unauthorized access to sensitive information used by Web applications. But Kavado sells its application scanner software product separately from its application firewall software, while Imperva combines the scanning and firewall functions into its SecureSphere Web Application Security Appliance.

Kavado's new ScanDo version 2.5 scanner and InterDo version 3.5 firewall Web applications are more tightly integrated with one another than past versions, making it easier for ScanDo's updated application vulnerability assessments to feed into the InterDo firewall in the form of security policy, said Jon Greene, vice president of marketing at Kavado, New York.

Imperva's appliance uses persistent learning, which performs realtime adaptation to changing applications, identifying and blocking suspicious user sessions while continuously adjusting to changes in application and database structure, said Shlomo Kramer, CEO of Imperva, Foster City, Calif.

While an argument can also be made weighing the disadvantages of an appliance vs. the drawbacks of software solutions when facing server upgrades, the question of advantages remains, said James Jenkins, vice president of business development at Prosoft Consulting, a Kavado partner in London, Ontario.

"I think [there's a] good point about having one product that would have realtime scanning features built into an application firewall that can be automatically configured as vulnerabilities change, and I would not be surprised to see Kavado eventually moving in that direction," Jenkins said. "That being said, the current two-step process does, in my opinion, have certain advantages." Jenkins said one of those advantages is choice. "Some clients that I have dealt with are prepared to only look at ScanDo or InterDo, which could [be due to] a lack of education about application security. For example, they may feel that their network security tools protect their applications," he said.

To continue reading this article, please download the free CRN Tech News app for your iPad or Windows 8 device.
Related: Videos | Slide Shows | Comments

SHARE THIS ARTICLE

More Security

Recent Articles

Head-To-Head: Symantec Vs. McAfee In Endpoint Protection

McAfee and Symantec are archrivals with a firm grip on the North American security market. CRN pits both vendors' endpoint security products against each other and names a winner.

The 8 Steps Behind The Massive $45M Cyber Bank Heist

More than $45 million was stolen from banks in the U.S. and 19 other countries in a scheme that law enforcement is calling an international conspiracy to drain millions from bank accounts using stolen debit cards and PIN numbers. Here's how they did it.

Name Of The Game: Top 10 States For Identity Theft

A Federal Trade Commission report provides statistics on identity theft and fraud complaints in 2012. Learn which state has the dubious distinction of having the most victims.

  More Slide Shows




Related Videos
Loading...