返回新闻
安全AI Understanding 简报

Fastly launches AI firewall and runtime control tools

Fastly has introduced AI Runtime Control, AI Firewall, and enhanced API security features to help organizations manage AI model access, costs, and security risks in production environments.

4 min readRead the linked source
Source-provided image accompanying Fastly launches AI firewall and runtime control tools
来源参考来源记录
出版商
securitybrief.co.nz
来源链接
securitybrief.co.nzhttps://securitybrief.co.nz/story/fastly-launches-ai-firewall-runtime-control-tools
来源类型
链接来源——主要来源状态尚未确定。
还引用了

故事最后修订

背景60 秒内了解这一点

从这里开始

关键术语

API(应用程序编程接口)
一种软件系统向另一个系统发送请求并接收响应的结构化方式。
及时注射
一种攻击模式,其中恶意指令被插入到模型输入或检索的内容中。
迅速的
提供给生成模型的输入指令和上下文。
测试一下自己AI 代理测验

自发布以来发生了什么变化

  1. 首次发表
  2. This source provides additional context regarding the motivation for the launch, specifically citing internal network data showing machine-generated traffic exceeding 50% in July and August, and references McKinsey research on AI budget overruns to justify the need for the new cost-management and security features.

发生了什么

Fastly has expanded its product portfolio with the launch of AI Runtime Control, AI Firewall, and new API security capabilities. These tools are designed to provide real-time visibility and governance for organizations transitioning AI deployments from experimental phases to production environments.

Fastly's new AI Runtime Control sits between applications and AI models, acting as a central routing endpoint for both public and self-hosted providers. It includes features for token spending visibility, rate limiting, and budget controls, while using virtual keys to protect provider credentials. This allows organizations to switch between different model providers while maintaining consistent policy enforcement.

The AI Firewall is specifically designed to protect AI applications by evaluating prompts in the request path before they reach the model, aiming to mitigate risks such as . Additionally, the new API Security features are intended to govern how AI agents interact with enterprise APIs, allowing organizations to enforce API contracts and block non-compliant requests from agentic or agent-assisted traffic.

The company stated that these tools are a response to the rapid growth of machine-generated traffic, which it claims rose above 50% on its network during July and August. Fastly cited McKinsey research indicating that 93% of organizations are currently exceeding their AI budgets, highlighting the need for the cost-management features included in the new release.

来源详情: securitybrief.co.nz

为什么这很重要

As organizations increasingly integrate AI models and autonomous agents into their infrastructure, they face significant challenges regarding cost management, security, and operational reliability. Fastly's new suite addresses these by centralizing policy enforcement and security controls directly in the request path. By providing a unified layer for model routing, token budget management, and mitigation, the company aims to help enterprises scale AI adoption without sacrificing security or exceeding operational budgets.

The shift toward multi-model architectures means enterprises are increasingly reliant on a complex web of external and internal services. Fastly's approach attempts to consolidate security and governance on the same edge platform used for content delivery and DDoS protection, potentially simplifying the security stack for IT teams.

By moving security and control to the edge, Fastly aims to provide the 'real-time' governance that Kelly Shortridge, Chief Product Officer, argues is necessary to maintain business resilience. The ability to observe or block traffic on a service-by-service basis provides a granular level of control that is critical as AI agents begin to automate more complex software development and operational tasks.

Interactive Mechanism

互动机制:它实际上是如何运作的

以交互方式探索这一发展背后的基础技术。

Agent Lifecycle Stage:
1
User Intent & Planning: "Audit customer refund request #4092 and settle payment."
2
Tool Calling: Emits structured JSON call crm_get_transaction(id='4092').
3
Guardrail & Verification:🛡️ Paused: High-value action requires human operator sign-off.
4
Final Settlement: Refund recorded, email receipt dispatched, and audit log stored.
Core takeaway: An AI agent is not just a language model—it is a closed loop of planning, tool invocation, and environment feedback. Production systems require self-healing retries and strict human approval guardrails.
交互式概念检查+10 Points
AI Agents Quiz

What is the most accurate way to describe what AI Agents can do today?

接下来看什么

The effectiveness of these tools in mitigating sophisticated attacks and their ability to handle diverse, multi-vendor AI architectures will be key indicators of their utility. Observers should monitor how well these edge-based controls integrate with existing enterprise workflows and whether they successfully reduce the operational friction associated with managing heterogeneous AI model deployments.

Pricing and specific availability details for these new features were not disclosed in the announcement. Potential users should verify whether these tools are currently generally available or if they are being rolled out in phases.

The long-term impact of these tools will depend on their compatibility with the rapidly evolving landscape of AI frameworks and the specific types of attacks they can effectively neutralize. As AI agents become more autonomous, the ability of these tools to enforce strict API contracts will be a critical test of their efficacy in preventing unauthorized or malformed operations.

相关指南和测验

人工智能代理人工智能模型解释AI 伦理测试你所知道的——尝试免费的人工智能测验在我们的词汇表中查找人工智能术语

更新和更正

当正在发生的事件发生重大变化时,这个典型的故事就会被更新。它的 URL 和原始发布日期永远不会改变。

  • This source provides additional context regarding the motivation for the launch, specifically citing internal network data showing machine-generated traffic exceeding 50% in July and August, and references McKinsey research on AI budget overruns to justify the need for the new cost-management and security features.
查看公开更正日志
觉得这有用吗?