Deploy Haltdos WAF on Antyxsoft Cloud

A web application firewall in front of your sites and APIs: OWASP protection, bot mitigation and DDoS defence, with traffic analytics.

By
Haltdos
Licence
Haltdos licence required (own or via Antyxsoft)
Deploy this app

Create an instance, pick Marketplace App at the template step, and choose it from the list. You pay for the instance.

What Haltdos WAF gives you

A web application firewall inspects HTTP traffic rather than packets: it recognises injection attempts, credential stuffing, scraping bots and volumetric floods, and blocks them before they reach the application.

Haltdos runs as an instance in front of your web tier, which keeps inspection inside your own region and lets you tune rules against your own traffic rather than a shared global policy.

Key features

  • OWASP protection. Rules for injection, cross-site scripting and the rest of the top ten.
  • Bot mitigation. Distinguish crawlers, scrapers and credential stuffing from users.
  • DDoS defence. Rate limiting and volumetric mitigation at the application layer.
  • Traffic analytics. Per-endpoint visibility of requests, blocks and anomalies.
  • Tunable policy. Learning and staging modes before rules are enforced.

What is in the image

ApplicationPreconfigured Haltdos WAF image
AccessWeb management console; licence applied at first boot
NetworkingDeployed in front of your web tier inside the VPC
Suggested sizeFrom 4 vCPU / 8 GB RAM; scale with request volume

Good fit for

  • Public applications Protection for login, checkout and API endpoints.
  • Compliance A documented WAF control in front of regulated data.
  • Campaign traffic Rate limiting that separates a spike from an attack.

Getting started

Four steps from sign-in to a running application. The full walkthrough, with screenshots, is in the knowledge base.

  1. 01
    Log in to the Cloud Portal

    Sign in at portal.antyxsoft.io and start creating an instance, choosing the region closest to your users.

  2. 02
    At Select Template, open Marketplace App

    In the instance creation flow, switch from operating-system images to the Marketplace App tab.

  3. 03
    Pick the template and deploy

    Select the ready-to-go template, confirm the plan and region, then review and deploy. The instance boots with the application installed.

  4. 04
    Finish the application setup

    Open the console, apply your licence, publish your first application in learning mode, then enforce the rules once traffic is understood.

Before it carries real traffic

  • Attach a Cloud Firewall that opens only the ports this application needs, with management access limited to your own addresses.
  • Schedule backups covering both the database and the application's data directory.
  • Add a Block Storage volume for data that will outgrow the instance disk.
  • Put it inside a VPC when it needs private access to other services.

Support

Antyxsoft supports the image and the infrastructure it runs on. Application-level questions are also covered by the upstream project's own documentation and community.

Supported byAntyxsoft
Support hours08:00 – 17:00 EEST

What is covered

Antyxsoft covers

The image itself, deployment problems, the instance, storage, network and platform availability.

You control

Configuration, add-ons, content, application updates and anything you change inside the guest.

Need it managed?

Ask about managed operations — updates, monitoring and backup handled for you.

Frequently asked questions

Do I need my own Haltdos licence?
Yes — Haltdos is commercial software, so a licence key is required. You can bring your own or arrange one through Antyxsoft; the instance cost is separate.
Where does the WAF sit in the architecture?
In front of the web tier, inside your VPC: traffic reaches the WAF instance, which inspects it and forwards what passes to the application servers behind it.
Will it block legitimate traffic?
Publish an application in learning mode first, review what the rules would have blocked against your own traffic, then enforce. That staging step is what keeps false positives out of production.

Filter the traffic, not the invoice

Deploy Haltdos in your region and inspect application traffic without metered bandwidth on top.