Skip to main content
SamWaf

SamWaf

An open-source lightweight web application firewall

Quick Start 💡Download Software

Open Source

Fully open-source under Apache 2.0 License, safe to use

Lightweight

Lightweight with no reliance on third-party services

Private Deployment

Can be deployed on Windows and Linux 64-bit systems

Independent Engine

Protection functionality does not rely on IIS or Nginx plugins, avoiding installation complexity and compatibility issues

Containerization

Supports containerized deployment

Bot Detection

Detects crawlers from Baidu, Google, Bing, Sogou, 360 Search, Yisou, and ByteDance

SQL Injection Detection

Identifies common SQL injection attacks

XSS Detection

Detects XSS attacks

Scanner Tool Detection

Detects scanner tools

RCE Detection

Detects RCE attacks

Custom Protection Rules

Supports script and interface editing

IP Allow List Access

IPs in the allow list can bypass the firewall

IP Block List Access

IPs in the block list are directly blocked

URL Allow List

URLs in the allow list can be exempted from protection filtering

URL Access Restrictions

Restricts external access to certain URLs

Data Masking

Allows data masking for outputs of specific URLs

CC Protection

Blocks IPs with high request frequency

Flexibility

Protection can be flexibly set for the entire website or specific sites

Security

Automatically generated program, encrypted log storage, encrypted management access, and data masking

Sensitive Word Detection

Supports sensitive word detection with automatic blocking

SSL Folder

Supports automatic deployment of SSL files

Load Balancing

Supports weighted load balancing and IP load balancing modes

Custom IP Library

Allows updating the IP location database