Duaer

Integrations

Set up Imperva WAF credentials in Duaer

Store Imperva WAF connection details in Duaer for digital-organization nodes to use at runtime. Secrets are protected by the instance encryption key and are not written into node parameters.

Create an Imperva API key

The Duaer Imperva WAF API credential:

  1. In the Imperva Cloud Security Console, open Account > Account Management > API Keys and click Add API key.
  2. Put API ID and API Key in the credential. The key is shown once.

Duaer has no dedicated node for this service. In the HTTP Request node, set Authentication to Predefined Credential Type and pick the Imperva WAF API credential. Refer to custom operations.

Imperva WAF API fields in Duaer

In Duaer, choose Imperva WAF API when you create a credential, then fill in these fields:

  • API ID (required)
  • API Key (required, secret)

Save the connection in Duaer

Open Credentials and create Imperva WAF. Fill in the key, OAuth, or server fields. After you save, digital-organization nodes reference this credential instead of putting the secret in a parameter.

Credential values are protected by the instance encryption key. If you change or lose that key, stored credentials cannot be decrypted. See the hosting notes on encryption keys.

Who can use this credential

Who can see or edit it follows projects and roles. Do not paste secrets into chat or variables. External vaults are covered under external secrets.

Questions

Do Imperva WAF secret values appear in Duaer node parameters?

No. In Duaer, Imperva WAF secrets stay in the credential. Nodes only reference the credential. Execution records should not show the plaintext secret either.

What usually stops a Imperva WAF credential from saving in Duaer?

Wrong fields, an OAuth callback that does not match the instance URL, or a role that cannot create credentials. Check the fields Imperva WAF expects, then confirm you can create credentials in that project.

In this section