Top Level Architecture
Integrating
- Provision your CrowdHandler integration. CrowdHandler behind Imperva is known to work with the following integrations:
- DNS (recommended)
- CloudFront
- Both integration guides will presume that the DNS record for the web application that you would like to protect should resolve directly to your CrowdHandler integration. Ignore this step and ensure that your web application's DNS record is resolving to Imperva CDN.
- Change the Imperva origin address to your CrowdHandler integration endpoint. For DNS integrations, this will be provided in the CrowdHandler control panel after you have completed the DNS integration wizard.
For CloudFront integrations, Imperva is likely already set to use your distribution as its origin. If you have newly created a CloudFront distribution solely for integrating CrowdHandler, change the Imperva origin address to your CloudFront distribution domain. - (Optional) Set x-ch-no-bypass HTTP header in Imperva. This will be passed down the chain to your origin, allowing you to validate that requests have traversed through both CrowdHandler and Imperva CDN.