Security
Web Application Firewall
Filtering at the application layer, so malicious requests are stopped before your application processes them.

Overview
Filtering the requests, not just the network
Rules that understand HTTP, applied in front of your site.
A web application firewall inspects HTTP requests and blocks patterns associated with common exploits, including injection attempts and abusive automated traffic.
The managed rule set is maintained for you. On the advanced plan you can add custom rules and rate limits for your own application's endpoints.
Reporting shows what was filtered, so blocking decisions can be reviewed rather than taken on trust.
Capabilities
How the firewall works
Application-layer filtering
Requests inspected against rules that understand HTTP behaviour.
Common exploit protection
Managed rules covering widely exploited request patterns.
Bot and abuse mitigation
Automated and abusive traffic identified and limited.
Rule management
Custom rules and exceptions on the advanced plan.
Rate limiting
Controls for endpoints that attract repeated requests.
Monitoring and reporting
Visibility of filtered traffic and rule activity.
Pricing
Firewall plans
Managed rules as standard, custom policy on the advanced plan.
WAF Standard
Application-layer filtering with a managed rule set.
$10/ month
Indicative rate. Confirm current pricing at checkout.
- Custom rules
- Not included
- Reporting
- Monthly
- Managed rule set
- Common exploit protection
- Bot mitigation
- Traffic reporting
WAF Advanced
FeaturedAdds custom rules and more detailed reporting.
$26/ month
Indicative rate. Confirm current pricing at checkout.
- Custom rules
- Included
- Reporting
- Continuous
- Everything in WAF Standard
- Custom rule management
- Rate limiting controls
- Detailed traffic reporting
Indicative pricing shown during development. Confirm current rates in the client area before ordering.
FAQ
Common questions
Need something more specific? Open a support ticket.
Filter malicious traffic before it lands
Enable the firewall on your site, or ask us to review your traffic first.