Selfhosted http traffic monitor/firewall via webui?

I feel like I'm just sleep deprived and missing something extremely obvious, but I have been struggling to find a selfhosted way to monitor the http traffic in the same kind of way that Cloudflare's Analytics -> Http Traffic and Security -> Rules pages work. In those panels, I can see a visual log of all traffic requests to the endpoints and set condition-based rules for access. I have a VPS set up with a firewall at the provider level that opens :80/:443 and blocks all but whitelisted ip's on the SSH port. Caddy runs behind http/https ports, and crowdsec is running as well. I'm not feeling overly concerned (at this moment) about general security, I just would like to be able to quickly review ALL http traffic by ip, geo, ASN, etc. and create rules that block/allow traffic based on common criteria. I understand that Crowdsec "just handles" the malicious traffic, but only seeing what is being filtered out automatically is a little head scratching. Part of this struggle is my lack of education, for sure. Is what I'm looking for a WAF? Most of those seem bundled with reverse proxies and other crowdsec-like services (bunkerweb, opnsense). I'm not opposed to using a different proxy since this is early in the game, but I would like to have a way to glance over the traffic logs and set rules a little quicker by clicking instead of config'n. I'm confident this is something everyone else has figured out and I'm just behind the curve.

添加评论
点赞收藏
点踩分享查看原文
评论
?
参与讨论