Web Application Firewall will help you to give extra protection for HTTP / web based applications with having applied a set of rules to an HTTP conversation and cover common attacks such as cross-site scripting (XSS) and SQL injection.