Togger75 Wrote: ------------------------------------------------------- > I use NGINX and ModSecurity 3. At a basic level you install NGINX and > add the modsecurity module then use the proxy_pass directive to > forward on the traffic to your real hosts. You configure ModSec to > filter the bad traffic from reaching your servers via the OWASP core > rule set and custom regex.by dominykas - How to...
1. Can someone give me some guidelines about configuring a WAF? I want to filter the HTTP traffic for a few sites, but I would like to have a separate server (Proxy) for WAF. I think I just need Nginx Reverse Proxy with Naxsi or ModSecurity. As far as I know Cloudflare is using too. Why not using my own WAF instead of Cloudflare? 2. How many sites it's okay to put under a single proxy serverby dominykas - How to...