Follow

@amolith@masto.nixnet.xyz The second part is to keep bots away from your transactional part of website. Because you can cache static content but anything that is dynamically generated (eg Vary: Cookie) will just kill your database under DDoS.

Again, Nginx with conditionals, Lua, NAXSI or ModSec can help here, but you need to spin enough instances to be even able to handle the traffic on TCP level.

Β· Β· Tusky Β· 0 Β· 0 Β· 1
Sign in to participate in the conversation
Mastodon πŸ” privacytools.io

Fast, secure and up-to-date instance. PrivacyTools provides knowledge and tools to protect your privacy against global mass surveillance.

Website: privacytools.io
Matrix Chat: chat.privacytools.io
Support us on OpenCollective, many contributions are tax deductible!