Publication and Protection of a Website and Web/Mobile Applications
Overview of the project
The client needed to publish an e-commerce website and various web and mobile applications, guaranteeing a high level of security for the web portals and API, together with state-of-the-art Disaster Recovery and Business Continuity measures. The solution implemented by NEXQ was created on Azure, using the Application Gateway, the Web Application Firewall (WAF) v2, and a robust geo-replication infrastructure and backup.
Objective
The objective of the project was not just to guarantee the security and publication of the applications, but also to guarantee operational continuity and protection of data in the case of incidents, with a solid Disaster Recovery strategy that would reduce downtimes to the minimum.
The NEXQ solution
NEXQ implemented a solution on Azure that involves publication through a Web Application Gateway and protection through WAF v2. For operational continuity, the applications were clustered into two different regions (with replication of the data in real time). A daily backup of the applications was enabled, whereas the source code was archived in a second cloud provider, guaranteeing security and availability in the case of faults.
Implementation
The project was carried out in several phases: migration of the applications onto Azure, configuration of the Web Application Gateway and the WAF v2 for security, configuration of clustering in two regions for replication in real time, enabling of daily backup and management of the source code on an alternative cloud provider. Failover and disaster recovery tests were performed to check the efficiency of the solution.
Results obtained thanks to the NEXQ solution
Thanks to this solution, the client obtained state-of-the-art protection for its web portals and API (in which vulnerability assessments and penetration tests were performed by a third-party company), together with operational continuity guaranteed by replication in real time between two different geographical regions and daily backup of the applications. The cloud infrastructure guarantees a rapid response in the case of faults, thus minimising interruption in services.
Advantages
State-of-the-art protection and resilience
The Web Application Firewall (WAF) v2 and the Web Application Gateway of Azure constantly protect the applications and the API against outside threats, whereas geographical replication guarantees operational resilience.
Replication in real time for operational continuity
Clustering of the applications in two different regions guarantees that, in the case of a fault in one region, the operations can continue without interruptions, with synchronisation of the data in real time.
Disaster Recovery e Business Continuity
The strategy of replication and daily backup ensures that, even in the case of serious incidents, the applications can be restored rapidly, minimising the impact on business.
Daily backup of the applications
Enabling a daily backup guarantees that the data can be recovered if there are problems, reducing the risk of losing critical data to a minimum.
Archiving of the source code on an alternative provider
The source code has been archived on another cloud provider, guaranteeing extra protection and diversification in the case of problems with the main platform.
High availability and reduced downtimes
The infrastructure guarantees high availability of the services, drastically reducing downtimes due to automatic failover between the geographical regions.
Optimised performance
In addition to security, management of web traffic through the Web Application Gateway improved performance, ensuring rapid response times even during peak traffic.
Compliance and multi-cloud security
Management of the source code on a different cloud provider and the multi-region architecture guarantee further protection and compliance with security best practices.
If you want to learn more about segregation of networks or discover how we can help you to optimise your IT resources and reduce costs, please don't hesitate to contact us.