Description
Web application firewall rules can inspect HTTP traffic before it reaches an application. This engine is useful for servers that need ModSecurity-compatible protection, logging, and policy enforcement with Apache, IIS, or Nginx integrations.
This is a security engine, not complete protection by itself. Rules must be maintained, tested for false positives, and combined with normal application security practices.