Securing your web stack with Varnish

Author

Kacper Wysocki

Contact

kwy@redpill-linpro.com

Date

March 22, 2012

The Who's

img/frying.jpg

The Idea

Varnish has

img/invaders.gif

LOLBUNNY

img/lolbunny.jpg

There are no silver bullets

Usually we use varnish to:

img/notbutter.jpg

The Story

img/fight-club-soap.jpg

The Approach

img/shipping.jpg

Thwarting attacks

what we do today:

img/truck.jpg

Security handlers

img/bike.jpg

VFW - Varnish FireWall

img/pat.jpg

Future work

img/energy.jpg

Questions?

http://kacper.blog.linpro.no

kwy@redpill-linpro.com

6BD0 3F9C 5F77 AD24 F60A
86EC FD82 7E34 674A 506F

References:

http://www.varnish-cache.org/trac/wiki

http://github.com/comotion/security.vcl

http://github.com/scarpellini/VFW