Configuring Fastly on magento 2.2

I am having Magento 2 as Paas service and they are running Fastly as the WAF i need someone to help me with the below activities.

• Securely configuring Fastly .

• Lockdown Fastly and only allow port 443 and 80

• Block DDoS Attacks

• Block BOTS

• Method to flush Cache frequently without impacting site

• Block Admin Magento Portal from Fastly to IP whitelisting

• Log all activities

• Export the Logs to LogRhythm

• Install SSL certificate along with installing root certificates

• Block all access and only allow users based on their role

• Figure out how can we use IDM (not high priority but ideally if we can do that in 6 weeks along with all other open items)

Load Balancers is of (Imperva)

• Allow only accepts traffic from Fastly

• All traffic from Web servers should go out from LB not directly from web servers to users

• Logs all LB activities

• Export the logs to LogRhythm

Web Servers is of Nginx

• Lockdown servers config .

• Log all activities

• Block that nothing can be written from application to NGINX server shell

MYSQL Database

• Lockdown access

• Only application ID has access to the SQL

• No user should be able to run any queries

• Enable auditing

• Log every activity

• Export log to LogRhythm or install LogRhythm agents to NGINX, APACHE, And MY SQL Servers

Magento 2 E-Comm Platform

Bit Bucket

• Get admin access to bitbucket

• Configure Secure Code Scanning (RIPSTECH)

• Only authorized users are allowed for CI/CD pipeline based on RBAC (Role based access control)

• Lockdown Bit Bucket

• Run code scan for existing code in Bitbucket

Magento 2 App

• Disable unnecessary extensions

• Create IP whitelisting for Admin Portal

• Harden the User ID and Password requirements

• Harden the Admin access with MFA, Captcha, and complex password with a minimum of 10 characters

• Enable all possible loggings for Admin actions

• All logs either shipped to an S3 type bucket for LogRhythm to read to a location on the web server from LR can read.

• Method to vet third-party extensions and how they JS can be scanned and installed using Bitbucket

• The process that all third-party advertising agencies must follow Five Below Change and Release Management process and must pass the secure code scanning practices before deploying the code in prod

Security and Network Operations Center Run Book

• Create a possible run book for Level 1 and Level 2 based on Security, System, and Engineering issues

Recently Two Cnames redirecting to two URL's had been configured .

Presently i am having super user access to the Magento Cloud but not for the application.

Also I will need the day to day support in any or other activities related to this task.

Skills: Magento, Server

See more: magento 2 disable product zoom, magento 2 api for mobile app, magento 2 mobile app, disable developer mode in magento 2, magento 2 disable module admin, magento 2 disable module command, magento 2 disable module programmatically, magento 2 mobile app builder, magento 2 disable static versioning, magento 2 disable cache command line, magento 2 mobile app extension, magento 2 disable varnish, magento 2 disable cron job, progressive web app magento 2, magento 2 disable image compression, magento 2 disable cron, magento 2 progressive web app, magento 2 delivery boy app, magento 2 marketplace mobile app, magento 2 free mobile app builder

About the Employer:
( 0 reviews ) Philadelphia, United States

Project ID: #20000855

10 freelancers are bidding on average $479 for this job


Hello Greetings....!! I have a team of experience developers and a long list of satisfied clients...offering you very cheap rate with sure please give us a chance to start our business relation. we More

$25 USD in 1 day
(170 Reviews)

Hello, I have read your job description carefully and you need to help in your Magento work. I have more 7 years of experience in this field and for this work I will assure you that I will provide you a quality work More

$25 USD in 1 day
(87 Reviews)

I have strong knowledge of the Magento web development. I have read out your project specifications. there is some points related to security and server. I Magento 2 and AWS certified. let's talk for details. than More

$111 USD in 1 day
(74 Reviews)

Hello Mate, Hope you are doing well !! I Am Magento Certified Developer and Expert in Wordpress and Shopify as well. Certification URL :- [login to view URL] an More

$200 USD in 3 days
(10 Reviews)

Hi, I have read all you mentioned above and I have clear understanding of all that needs to be done and carried out. I have taken my time to assess all the requirements at every point and i can redesign your website , More

$477 USD in 21 days
(18 Reviews)

Good day! I have 10 years of experience in Magento. Magento certification link [login to view URL] I am having hands-on experience in Creating Modules, Webservic More

$25 USD in 1 day
(5 Reviews)

Hi, With more than 9 years of experience in this industry, I am a professional full-stack web developer. I’ve good hands-on experience in following Frameworks, CMSs- WordPress, Magento, Joomla, Drupal & PHP based fr More

$400 USD in 5 days
(0 Reviews)

Hi I am 5 years experienced Magento front end developer and Magento expert available to solve your requirement. I am available full time dedicated to this jobs work. I have experience with custom PSD magento des More

$2500 USD in 1 day
(0 Reviews)

Hi. I’ve just read your description and I am clear what you mean. Configuration is so important for security. I have so many experiences with Magento 1.x & 2.x so that I can satisfy your requirements. I am very familia More

$1000 USD in 7 days
(0 Reviews)

Hello there, Hope you doing well. I'd like to consider the opportunity for the project *Configuring Your Magento 2.2* & I'm sure that I do the project well. Since I have certainly gone through the glimpse of r More

$25 USD in 1 day
(0 Reviews)