We’re rolling out one of our most powerful updates yet: next-gen Layer 7 WAF with IPDB protection for proxied traffic. Attackers hiding behind Cloudflare, Akamai, Fastly, or Nginx? Not anymore. Our latest update exposes the real source IP—even through multiple proxy layers—and blocks them instantly on auto-pilot.
No More Hiding Behind Proxies
This update introduces a proxy-aware WAF module that works at server level. It identifies the real client IP and stops malicious traffic—even if attackers are routing through trusted proxies. It’s automatic, fast, and smart.
Key Features:
- 20x Stronger Protection: By accurately detecting real IPs behind proxies, our new WAF now blocks a massive number of attacks that previously slipped through—stopping threats before they ever hit your server.
- Proxy-Aware Detection: Works seamlessly with Cloudflare, Akamai, Fastly, Nginx, and similar services. Real IPs get exposed and blocked instantly.
- Integrated with All Modules: Now fully tied into the Brute-Force and Log Analysis modules. Works just like Fail2ban—except faster, automatic, and backed by WAF power.
- Global Intelligence Sharing: Like CrowdSec, but built into cPFence. Over 4,000 servers now sync attack data. If one server detects a threat, it’s blocked across the entire network within hours.
- Lower Load, No Spikes: By filtering out malicious traffic early—especially from proxies—our new WAF offloads junk requests before they reach your apps, reducing server load and preventing resource spikes.
- Full IPv6 Support: Half of modern brute-force and DDoS attacks now come from IPv6. Unlike our competitors, cPFence handles IPv6 cleanly at the WAF & IPDB layer.
Still Relying on IPv4-Only Protection?
Here’s what you’re missing. Modern attacks are evolving—and they’re already using IPv6 at scale. This is a real screenshot from our dashboard, showing how 50% of top attacks are IPv6-based:
If your current WAF solution doesn’t support full IPv6 handling, you’re flying blind against half of today’s attackers.
See It in Action
Go to your WebUI → Real-time WAF Log Monitoring and watch how cPFence detects and blocks threats in real time. You’ll notice a major difference in both visibility and performance.
Protect Your Enhance Cluster with Cloudflare: Full Guide Coming Soon
We’ll soon publish a full step-by-step guide on how to put your entire Enhance cluster behind Cloudflare on the cPFence Community. This, combined with our new proxy-aware WAF protection, will make your cluster virtually bulletproof in both performance and security.
Make sure to join our community at https://community.cpfence.app/ to stay updated with the latest tips, walkthroughs, and tools that keep your infrastructure secure, optimized, and always evolving.
Try It Free Today
The update is rolling out today to all users. Not using cPFence yet? This is the perfect time to see it in action and experience the difference on your servers.
Start your free trial now and take your server security to the next level.
No comment