Introduction to Yercekimsiz WAF

yercekimsiz is a next-generation, high-performance Web Application Firewall (WAF) designed to protect modern web applications from sophisticated cyber threats.

Why Yercekimsiz?

  • โšก Ultra-Low Latency: Sub-millisecond inspection overhead with our Go-powered engine.
  • ๐Ÿ”’ Zero-Touch SSL: Automatic HTTPS certificate management via Let's Encrypt.
  • ๐Ÿค– Smart Bot Protection: Advanced bot detection with crawler verification.
  • ๐Ÿ“Š Real-Time Insights: Beautiful dashboard with live security metrics.

Supported Platforms

Docker

Containerized deployment for any environment.

Kubernetes

Native Helm charts for scalable orchestration.

AWS

AMI images optimized for EC2 instances.

Bare Metal

Binary distributions for Linux servers.

Response Headers Module

Configure CORS, security headers, and custom response headers directly in yercekimsiz. Settings are applied per-domain in real-time, removing the need to manage these in your upstream server.

  • CORS: Allowed origins, methods, headers, credentials, and preflight cache control.
  • Security Headers: HSTS, CSP, X-Frame-Options, X-Content-Type-Options, and server header removal.
  • Preflight Handling: Automatic 204 responses for OPTIONS requests.

Latest Developments

Highlights from the documentation roadmap and recent releases.

OWASP CRS & Coraza Integration

500+ rules, Smart Kits, and domain-level selective activation.

Advanced Custom Rules

SQLi, XSS, and Regex-based rules with smart normalization.

Canonical Redirect

Edge-based WWW vs Non-WWW normalization and SEO redirects.

GeoIP Blocking

Domain-level allow/block lists with country analytics and maps.

IP Whitelist/Blacklist

CIDR support with whitelist bypass and instant blacklist blocking.

Aesthetic Error Pages

Glassmorphism-themed WAF block, 404, and 500 pages.

Real-time Dashboard

Live traffic graphs, block/allow ratios, and global attack heatmap.

Advanced Reporting

PDF/Excel/CSV exports are ready; scheduled reports are in progress.