Running a WAF on services I expose on the internet
Running a WAF on services I expose to the internet I have a handful of services that anyone on the internet can reach. Most of them are small, but “small” doesn’t mean “uninteresting to a scanner.” Within an hour of pointing a domain at a box, it gets probed. Not by a human, by a bot. And the probes get creative in ways you don’t expect. That’s what pushed me to put a web application firewall in front of my public endpoints. I went with CrowdSec, and this is why, and how. ...