Guardians of the Enterprise — Insights from leading cyber experts.

Listen Now →
Knowledge Base

Frequently Asked Questions, Answered.

Got a question? Search below or browse by product category.

AppTrana WAF — Frequently Asked Questions
No questions match your search.
You can contact our sales team for customized licenses.
We offer only the SaaS model of WAF.
Each URL needs a separate license.
You can request custom rules for your site's protection.
For custom rules, you need to contact our team. We test the rule and then deliver it to you.
Yes, we have multiple user roles in our platform.
No, AppTrana is our proprietary product.
No, we do not conduct load testing for any application.
Blocked attacks are stopped by the WAF before reaching your application. Logged attacks are only recorded — they are not blocked.
Yes, we have SIEM tools.
Please reach out to support@indusface.com for the current IP range list.
We follow the latest OWASP 2021 rule set.
AppTrana can be used irrespective of the underlying application technology.
No code changes are required. A DNS change is all you need — update it and you're up and running.
Our support team creates them after evaluating your application requirements.
You can configure either your custom SSL certificate or use our free SSL certificate.
You can customize the file upload limit to meet your application's requirements.
Yes, AppTrana supports SIEM integration.
Yes, we provide comprehensive logging and reporting capabilities.
Custom rules are application-specific and are designed after evaluating your application.
Web Application Scanning (WAS) — Frequently Asked Questions
No questions match your search.
Yes, you can.
We provide DAST (Dynamic Application Security Testing).
Please reach out to sales@indusface.com for detailed pricing information.
Yes, we do.
We do application scanning as well as server scanning for that application.
Charges are based on FQDN (Fully Qualified Domain Name) per month.
Yes, you can downgrade your plan.
For application security "prevention" capabilities, you can add AppTrana WAAP to your subscription.
Vulnerabilities are discovered daily due to OS or third-party service updates. Even if your application doesn't change frequently, continuous scanning is required to catch newly discovered vulnerabilities.
No, it will not. We also provide configuration to scan outside business hours.
Yes, we can provide authenticated scans.
Yes, you can pause or stop a scan at any time.
Yes, we are a VAPT testing provider.
Penetration testing is performed by our manual pentesting team — it is not purely automated.
Yes, API security scanning is provided.
Yes, you can whitelist any specific URL that you would not like to scan.
No, we do not provide malware removal. We scan for malware and alert you when it is detected.
We do not support on-premise scanning.
Our scanner is a DAST scanner, so any vulnerability that can be observed externally will be detected.
WAS does not offer blocking capabilities — that is the role of AppTrana WAAP.
FQDN stands for Fully Qualified Domain Name — e.g. app.yourcompany.com.
We provide web application level pentesting.
Yes, we provide 24×7 protection to applications through AppTrana.
Please reach out to sales@indusface.com for detailed information.
SSL Certificates — Frequently Asked Questions
No questions match your search.
Entrust.
Yes, we support it. Please refer to the Entrust whitepaper on SSL certificates for details on offloading.
Yes. Rs. 30,000 for 1 year and Rs. 60,000 for 2 years.
Wildcard SSL certificates use the * extension and allow you to encrypt unlimited subdomains under a single certificate.
All Entrust SSL certificates support 4096-bit encryption.
Yes. Except the Standard SSL certificate, all Entrust SSL certificates support both RSA and ECC algorithms.
Mobile Application Security (MAS) — Frequently Asked Questions
No questions match your search.
We support testing across multiple platforms including iOS, Android, Windows, Symbian, and BlackBerry OS.
Indusface MAS (Mobile Application Scanner) provides a complete security assessment using a combination of automated tools, custom scripts, and manual security testing techniques.
Multiple platforms are covered including Android, iOS, Windows, and more.
You will need to contact us and our team will guide you through the audit process.
You will need to contact us directly — our team will guide you through the audit process.

Our Experts Are Ready to Help

Can't find the answer you're looking for? Talk to our security team and get a personalised response.