Posts by Lia

@Lia

Lia Cornett

Homelab operator. Security tools. Self-hosted everything. Open source.
Joined June 2026
1.4k Points • 68 Badges • 1 Connections • 1 Followers • 4 Following

Posts by Lia

Lia • • in Articles • 3 min read
How to Prevent Application-Layer DDoS Attacks on Your Web App Most people picture DDoS as a firehose of garbage packets aimed at a network. But the attacks that actually take down modern web apps are usually quieter: application-layer L7 DDoS, wher...
Lia • • in Articles • 3 min read
How to Stop Credential Stuffing Attacks: Protect Your Login Endpoints Credential stuffing is one of the most common — and most quietly damaging — attacks against web apps. It's not a clever exploit of a zero-day; it's brute force at scale, using pa...
Lia • • in Articles • 3 min read
Free WAF for Self-Hosted Apps: Protect Your Stack Without the Bill If you self-host your apps, you've already committed to owning the infrastructure. That's good news for security: it means you can drop a free WAF in front of your stack without sig...
Lia • • in Articles • 3 min read
Best Self-Hosted WAF for Small Business: What to Look For Small businesses get attacked at roughly the same rate as everyone else, but they rarely have a security team to absorb the hit. A web application firewall WAF is one of the highest-leverage...
Lia • • in Articles • 2 min read
SafeLine WAF Pricing: Community vs Pro — Which Should You Choose? When you're picking a WAF, the pricing question usually isn't "can I afford it" but "which tier actually matches my setup." SafeLine makes this unusually simple: the free Community E...
Lia • • in Articles • 3 min read
SafeLine WAF Community Edition Limitations: What You Get for Free SafeLine ships a free Community Edition that you can run on your own server with no time limit and no feature trial. That makes it one of the few self-hosted WAFs you can actually pu...
Lia • • in Articles • 2 min read
SafeLine WAF Docker Compose Example SafeLine ships as a set of containers, and Docker Compose is the simplest way to bring up the whole stack — management console, detection engine, and the supporting database and cache — on a single host. The fas...
Lia • • in Articles • 2 min read
How to Set Up SafeLine WAF on Kubernetes If your apps already run on Kubernetes, SafeLine fits right in — it's a containerized reverse-proxy WAF, so you deploy it like any other workload and route protected traffic through it. Where SafeLine sits ...
Lia • • in Articles • 2 min read
How to Block Bad Bots with SafeLine WAF Bad bots are everywhere: content scrapers, credential stuffers, vulnerability scanners, and spam senders. The trick is blocking the harmful ones without hurting good crawlers like Google. SafeLine does this w...
Lia • • in Articles • 2 min read
How to Block SQL Injection with SafeLine WAF SQL injection is still one of the most damaging web attacks: a single unescaped input field can let an attacker bypass login, read your entire database, or run commands on the server. SafeLine blocks it ...
Lia • • in Articles • 2 min read
How to Run SafeLine WAF Behind an Nginx Reverse Proxy Sometimes Nginx is already your public edge — terminating TLS, serving static files, doing virtual hosting. You can keep Nginx exactly where it is and place SafeLine behind it, so Nginx forwards...
Lia • • in Articles • 2 min read
How to Protect a Web Server with SafeLine WAF A web server — Nginx, Apache, Caddy, or an app server behind them — faces the same internet as everything else: injection attempts, scanners, and bots. SafeLine sits in front of that server as a self-ho...
Lia • • in Articles • 2 min read
How to Protect WordPress with a Self-Hosted WAF WordPress powers a huge share of the web and attracts a matching share of attacks: login brute force, plugin exploits, SQL injection through forms, and xmlrpc abuse. A self-hosted WAF placed in front ...
Lia • • in Articles • 3 min read
How to Configure SafeLine WAF as a Reverse Proxy SafeLine is a self-hosted WAF that works as a reverse proxy by design: it terminates your public traffic, inspects every request, and forwards only clean traffic to your real web server. This guide w...
Lia • • in Articles • 1 min read
Deploy SafeLine WAF on Ubuntu: A Step-by-Step Guide Ubuntu is one of the most common hosts for self-hosted services, and SafeLine runs happily on it. Here is a clean deployment path. Prerequisites A fresh or existing Ubuntu 20.04/22.04 server. D...
Lia • • in Articles • 1 min read
How to Install SafeLine WAF with Docker in 10 Minutes SafeLine is designed to run as a container, which makes Docker the natural deployment path. This walkthrough gets you from zero to a working reverse-proxy WAF. What you need A Linux host VM or...
Lia • • in Articles • 1 min read
SafeLine WAF vs Wordfence: Stack-Level vs WordPress-Plugin Protection Wordfence is the go-to WAF for WordPress, delivered as a plugin. SafeLine is a stack-level, self-hosted WAF that protects any web app, WordPress included. The right choice depend...
Lia • • in Articles • 1 min read
How to Deploy a Self-Hosted WAF Alternative to Cloudflare A self-hosted WAF means the inspection engine runs in your own environment, not a vendor's cloud. For teams that want control, privacy, or predictable cost, that is the whole point — and Saf...
Lia • • in Articles • 2 min read
A lot of teams start their "Cloudflare alternative" search because they want more control, lower or predictable costs, or to keep traffic and logs on their own infrastructure. The good news: you don't have to stay locked into a cloud WAF. Self-hosted...
Lia • • in Articles • 3 min read
When people talk about protecting a website from bots, scrapers, and injection attacks, Cloudflare is usually the first name that comes up. It's a solid service — but it's not the only path, and for some teams it isn't even the best one. If you care ...
chevron_left