Skip to content
Security & access

Lock it

Filtering at the layer the attack is actually on.

A managed rule set in front of your public services, with rate limiting and the ability to run a rule in detect-only mode first — so you find out what it would have blocked before it blocks a customer.

WAF

  • Managed rule sets
  • Detect-only mode
  • Per-path rate limiting
  • Custom rules

How it helps

What you get with WAF

1

Detect before enforce

Run a rule in monitoring mode, look at what it matched, then turn it on. Nobody should learn a WAF rule was too broad from a support ticket.

2

Rate limiting

Per-path and per-IP limits for the endpoints that get abused — login, signup, password reset.

3

Managed and updated

Common rule sets kept current, with your own rules on top rather than instead.

Infrastructure you can point at.

Start in minutes on dedicated capacity, or talk to us about private capacity and named datacentres. Every tier is the whole platform.

Every service, every tier Predictable egress No charge to open a ticket