Technical Documentation

Explore the full technical landscape of MetaDefender ICAP Server — everything you need to understand, implement, and optimize.

Getting Started

Installation
Step by step instructions on installation and the initial setup.

Configuration
Learn how to configure the product. Detailed information for each option.

Deployment & Usage

Deployment
Integrations
Available software integrations with OPSWAT Products.

Operating
Detailed documentation on how to use the product, monitoring, reporting, etc.

Cloud Deployment
Detailed instructions for deploying MetaDefender ICAP Server using services from different CSPs.

Advanced Deployment
Docker support.

Container Deployment
Detailed configuration instructions for having MetaDefender ICAP in a Kubernetes Cluster.

Support

Knowledge Base
Answers to common questions about the product capabilities, and related articles on popular topics.

Troubleshooting Guide
How to investigate product alerts dealing with Installation, Logging, and Maintenance.

MetaDefender ICAP Server

MetaDefender ICAP Server is OPSWAT’s ICAP antivirus scanning and network perimeter file security solution for inspecting files before they enter your network. It integrates with ICAP-enabled appliances such as WAFs, load balancers, proxies, and managed file transfers (MFTs) to support malware prevention and data loss protection without requiring architectural changes, supporting layered file security across transfer and inspection workflows.

Detects and stops zero-day and advanced evasive malware.

Protects sensitive data and helps meet regulatory compliance.

Scan large volumes of files without integration challenges.

Integrates with any ICAP-enabled security device in less than 10 minutes.

Add a layer of advanced file security to virtually any network device you already use — with the broadest compatibility in the market and validated integrations across OPSWAT partners including WAFs, load balancers, ingress controllers, next-gen firewalls, ADCs, and proxies.

Prevent sensitive or out-of-policy data breaches to meet compliance requirements like ISO 27001, PCI-DSS, HIPAA, and GDPR, while preventing penalties and maintaining customer trust.

Reduce overhead with lightweight ICAP integration in under 10 minutes. Fits any IT infrastructure with flexible on-premises, hybrid, and cloud deployments, so organizations can focus on file security without major architectural changes.

Protect your network and application web servers from malicious file uploads using MetaDefender ICAP Server by inspecting files for any embedded malware and malicious content before they reach your website.

Add another layer of trust to your business best practices by implementing MetaDefender ICAP Server at the central file transfer gateway or repository.

Prevent malicious files from being downloaded from the internet by your users. Screen web traffic before it reaches your secured network using MetaDefender ICAP Server integrated at the network gateway.

MetaDefender ICAP Server slots into your existing network infrastructure to scan and process every file before it reaches your users – no major changes required. ICAP is a lightweight, standardized protocol that makes it efficient to add antivirus scanning and other security solutions to your existing setup.

Through validated partnerships with trusted technology providers, organizations can deploy advanced file security directly within their existing network architecture.

Enhance F5 BIG-IP and NGINX environments with inline, multi-layered file security. Inspect and sanitize file uploads in real time without disrupting performance or application delivery.

Strengthen NGINX reverse proxy and load balancing deployments with advanced malware detection and Deep CDR™ Technology. Protect web applications and APIs from file-based threats in high-throughput environments.

OPSWAT and Citrix ADC (NetScaler) provide secure application delivery and hybrid multi-cloud environments to prevent malicious file uploads and securing web traffic to keep your networks secure.

Each step protects network traffic and file exchanges through a policy-driven ICAP workflow that inspects and blocks or sanitizes threats before release, ensuring real-time security, compliance, and seamless integration without impacting performance.

The flexible and scalable MetaDefender ICAP Server solution integrates with your existing IT infrastructure – whether on-premises, in modern architecture, or through software as a service.

Use Cases

File Upload Security

Enterprise File Transfer and Storage

Web Traffic Security and SSL Inspection

Certified Integrations with Industry Leaders

F5 + OPSWAT

NGINX + OPSWAT

Citrix ADC + OPSWAT

Frequently Asked Questions

What is MetaDefender ICAP Server used for?
MetaDefender ICAP Server provides inline inspection of file-based network traffic using the ICAP protocol to detect malware, prevent data leakage, and enforce security policies in real-time.

What network devices can integrate with MetaDefender ICAP Server?
It integrates with ICAP-compatible devices such as web application firewalls (WAFs), proxies, load balancers, next-generation firewalls, and managed file transfer solutions.

What security technologies does it use?
It applies OPSWAT’s multi-layered protection, including Multiscanning, Deep CDR™ Technology, Proactive DLP, and Adaptive Sandbox.

Does MetaDefender ICAP Server inspect both inbound and outbound traffic?
Yes. It supports ICAP request and response modes, enabling inspection of files entering and leaving the network based on defined security policies.

How is MetaDefender ICAP Server deployed?
MetaDefender ICAP Server can be deployed in on-premises, hybrid, or cloud environments and integrates seamlessly into existing network architectures with minimal operational impact.