Case History: Education and Research

Protection of several custom and legacy applications of a private university
 
PRIVACY
Pluribus One Web Application Security® guarantees an absolute control of traffic data relating to the monitored services. All traffic data, useful for detecting possible threats, is locally stored by the solution, without having to pass your traffic through external or third-party infrastructures to benefit from the monitoring and protection features.
This means that vulnerability information is always confidential and data is always under the customer's control.

For this reason Pluribus One guarantees the privacy and anonymity of its customers in all phases of work and assistance, including the description of the case history.

Business scenario
The customer is a private university. The web services managed by the university include services to: students (e.g. admittance, classes, exams), teaching and research staff, administrative personnel.
The infrastructure is distributed across three different sites: one on-premise and the other two hosted by two major cloud services providers.

Customer need
The customer interest is to ensure adequate protection for many custom and legacy applications, with a set of well-crafted protection rules; the customer needs to deeply inspect the web services’ traffic to enable coordination between the security, operation, and development teams.

Key benefits after Pluribus One's assistance
1. Possibility to create easily custom protection rules, higly tailored on the  monitored services (high protection; low false positives).
2. Detailed information on the services, which enables cooperation between the security, operation, and development teams.

Product/service used to support the customer:

Pluribus One Web Application Security®


When
March 2017 - current

HW requirements of the WAS® installation

48 vCPU – 252GB RAM – 250GB HDD

Connected components
Data Source: Oplon® ADC
Protecting:
Oplon® WAF
Monitoring:
SIEM based on the ELK stack

Services to monitor
Number of services
: 100
Requests/day: 10Mln hit/day
Sought retention period: 15 days

Installation architecture before and after

Info

Pluribus One S.r.l.

Via Bellini 9, 09128, Cagliari (CA)

info[at]pluribus-one.it

PEC: pluribus-one[at]pec.pluribus-one.it

 

Legal entity

Share capital: € 10008

VAT no.: 03621820921

R.E.A.: Cagliari 285352


 

University of Cagliari

  Pluribus One is a spin-off

  of the Department of

  Electrical and Electronic Engineering

  University of Cagliari, Italy

 

© 2021 Pluribus One s.r.l. All Rights Reserved.