Select a theme from the list.
Security · Enterprise

Web Application Firewall

Multi-tenant, high-assurance web application firewall built as a fleet of Rust microservices, with the OWASP Core Rule Set and a live dashboard.

Web Application Firewall, Security by AEU-I

A high-assurance, multi-tenant web application firewall that sits in front of web services and filters malicious traffic before it reaches the application. A reverse-proxy traffic plane inspects every request for injection, cross-site scripting, remote code execution and path traversal, backed by the OWASP Core Rule Set with live rule updates.

Built as a fleet of Rust microservices for speed, memory safety and high throughput, it isolates each protected tenant and gives operators complete, real-time visibility into what is being stopped and why.

Highlights

  • Real-time filtering of SQLi, XSS, RCE and path traversal, with rate limiting, method allowlisting and scanner blocking on the hot path.
  • OWASP Core Rule Set engine with live rule updates.
  • True multi-tenancy: per-tenant routing, IP allow and deny lists with CIDR and expiry, and per-tenant statistics.
  • Microservice architecture covering auth, MFA, tenants, origin health, backups and clustering.
  • Real-time operations dashboard over WebSocket, including a live attack-flow graph that traces each attacker to the path it took, the OWASP rule it tripped and the block, plus tamper-proof hash-chained audit logs.
  • Hardened crypto posture throughout, self-hosted with no containers.

Built with Rust, gRPC, React, PostgreSQL, WebSocket.

Frequently asked

What is Web Application Firewall?

A high-assurance, multi-tenant web application firewall that sits in front of web services and filters malicious traffic before it reaches the application. A reverse-proxy traffic plane inspects every request for injection, cross-site scripting, remote code execution and path traversal, backed by the OWASP Core Rule Set with live rule updates.Built as a fleet of Rust microservices for speed, memory safety and high throughput, it isolates each protected tenant and gives operators complete, real-time visibility into what is being stopped and why.HighlightsReal-time filtering of SQLi, XSS, RCE and path traversal, with rate limiting, method allowlisting and scanner blocking on the hot path.OWASP Core Rule Set engine with live rule updates.True multi-tenancy: per-tenant routing, IP allow and deny lists with CIDR and expiry, and per-tenant statistics.Microservice architecture covering auth, MFA, tenants, origin health, backups and clustering.Real-time operations dashboard over WebSocket, including a live attack-flow graph that traces each attacker to the path it took, the OWASP rule it tripped and the block, plus tamper-proof hash-chained audit logs.Hardened crypto posture throughout, self-hosted with no containers.

What was Web Application Firewall built with?

It was built with Rust, gRPC, React, PostgreSQL, WebSocket.

Who built Web Application Firewall?

Web Application Firewall was designed and built by Sokol Alickaj, the engineer behind AEU-I.

Can AEU-I build something similar for me?

Yes. AEU-I designs and builds custom software, web and mobile apps and hosting. Get in touch to discuss a similar project.