This standard specifies the security function requirements, self-security protection requirements, performance requirements, security assurance requirements of WEB application firewalls; provides corresponding test evaluation methods. This standard applies to the design, production, testing and procurement of WEB application firewalls.