Blog

ContentBox Firewall Module

Luis Majano October 31, 2013

Spread the word

Luis Majano

October 31, 2013

Spread the word


Share your thoughts

​

We are so excited to announce the general availability of the Ortus FuseGuard module for ContentBox.  FuseGuard is a software application firewall that will enhance your ContentBox installation with real-time protection.

Features in a Nutshell

Apart from the standard features of the Foundeo FuseGuard Firewall, we have exteded it with more ColdBox/ContentBox capabilities.  The firewall comes with over 15 filters to help protect against vulnerabilities such as:

  • Malicious File Uploads
  • Cross Site Scripting / XSS
  • SQL Injection
  • Session Hijacking
  • Cross Site Request Forgery
  • CRLF Injection
  • Path Traversal Attacks
  • Password Dictionary Attacks

The firewall comes embedded in a dual-performing module that will work for both ColdBox 3 applications and ContentBox Modular CMS. The module features are:

  • Automatic firewall registration in your application
  • Centralized Firewall configuration and extensibility via our module configuration
  • Registration of a new ColdBox interception point called onFuseGuardBlock that will be announced on firewall interventions
  • Ability to create interceptor response chains via ColdBox/ContentBox when the firewall blocks a request
  • Ability to register a BlockRequestHandler event to execute whenever the firewall blocks a request
  • Ability to do scope registration of the firewall in any valid ColdFusion scope
  • Access to the firewall object in the module configuration
  • FuseGuard ContentBox panel integration (Coming Soon)
  • ContentBox FuseGuard permission registration and administrative rights to the firewall (Coming Soon)

 

 

Add Your Comment

Recent Entries

Into the Box Round 1 of Sessions and Workshops are now out!

Into the Box Round 1 of Sessions and Workshops are now out!

Our first round of sessions and workshops for Into the Box 2025 is here! Get ready to dive into a world of modern web development with hands-on workshops and engaging sessions led by Ortus Solutions and Community CFML and BoxLang experts. Visit intothebox.org to explore what’s in store—this is just the beginning, with much more content coming soon!

Maria Jose Herrera
Maria Jose Herrera
January 20, 2025
BoxLang 1.0.0 Beta 26 Launched

BoxLang 1.0.0 Beta 26 Launched

We’re thrilled to announce the release of BoxLang 1.0.0 Beta 26, a monumental update that takes performance and functionality to the next level. This beta officially certifies the ColdBox HMVC Framework to run on BoxLang, marking a significant milestone in compatibility. Not only can you now run all ColdBox applications seamlessly on BoxLang, but with the latest ColdBox snapshot, you can also build your entire applications in BoxLang, unlocking the full potential of this dynamic and expressive language for modern application development.

Luis Majano
Luis Majano
January 20, 2025