Can't find what you need here? Submit a support ticket and we'll follow up directly.
Deployable Web Application Firewall software for Lucee/CFML applications. It gives operators request rules, rate limiting, logs, and security checks on infrastructure they control.
No. Ignite WAF runs entirely on your own Lucee/SQL Server stack. There's no third-party proxy in the request path and no external service your data is sent to for WAF protection to work.
Start the 14-day evaluation to receive the deployable package and a trial code. No payment card is required. See evaluation details.
No. Ignite WAF is software you deploy in your own environment. The evaluation signup only provides the package and trial code.
Yes. Ignite WAF is multi-tenant by design — each site gets its own scoped rules and logs, and you can grant team members access to specific sites rather than the whole install.
The CSP Security Audit checks your Content-Security-Policy header in depth across 40+ directive-level checks. Quick Scan is broader — TLS configuration, cookie flags, CORS, clickjacking protection, and exposed paths. Both produce an A–F grade, but they're separate checks covering different ground.
Microsoft SQL Server is the primary, most-tested engine. Adapters for MySQL and PostgreSQL are also included if that's what your environment already runs.
No — Ignite WAF runs at the application layer, in front of your Lucee/CFML code. Whether you also keep DNS-level or network-layer protection in front of that is entirely up to you.
Start an evaluation first, then contact support with your deployment details when you are ready to discuss licensing.
Use the support page to submit a ticket. For bug reports, including your site key and an approximate timestamp helps us trace the exact request in your logs.