Introduction to Yercekimsiz WAF
yercekimsiz is a next-generation, high-performance Web Application Firewall (WAF) designed to protect modern web applications from sophisticated cyber threats.
Why Yercekimsiz?
- โก Ultra-Low Latency: Sub-millisecond inspection overhead with our Go-powered engine.
- ๐ Zero-Touch SSL: Automatic HTTPS certificate management via Let's Encrypt.
- ๐ค Smart Bot Protection: Advanced bot detection with crawler verification.
- ๐ Real-Time Insights: Beautiful dashboard with live security metrics.
Supported Platforms
Docker
Containerized deployment for any environment.
Kubernetes
Native Helm charts for scalable orchestration.
AWS
AMI images optimized for EC2 instances.
Bare Metal
Binary distributions for Linux servers.
Response Headers Module
Configure CORS, security headers, and custom response headers directly in yercekimsiz. Settings are applied per-domain in real-time, removing the need to manage these in your upstream server.
- CORS: Allowed origins, methods, headers, credentials, and preflight cache control.
- Security Headers: HSTS, CSP, X-Frame-Options, X-Content-Type-Options, and server header removal.
- Preflight Handling: Automatic 204 responses for OPTIONS requests.
Latest Developments
Highlights from the documentation roadmap and recent releases.
OWASP CRS & Coraza Integration
500+ rules, Smart Kits, and domain-level selective activation.
Advanced Custom Rules
SQLi, XSS, and Regex-based rules with smart normalization.
Canonical Redirect
Edge-based WWW vs Non-WWW normalization and SEO redirects.
GeoIP Blocking
Domain-level allow/block lists with country analytics and maps.
IP Whitelist/Blacklist
CIDR support with whitelist bypass and instant blacklist blocking.
Aesthetic Error Pages
Glassmorphism-themed WAF block, 404, and 500 pages.
Real-time Dashboard
Live traffic graphs, block/allow ratios, and global attack heatmap.
Advanced Reporting
PDF/Excel/CSV exports are ready; scheduled reports are in progress.