Web application firewall

ModSecurity with the OWASP core ruleset, with per-site rule exclusions.

Used by
Admin
Plan
License
Status
Available
Category
Monitoring and security

What it is

ModSecurity runs with the OWASP core ruleset where it is packaged, and rules can be excluded per site.

What it is for

Blocking common web attacks before they reach PHP.

Limits

Changing WAF configuration needs a License; turning it off is never blocked. Rules already loaded keep being published if the license lapses.