ShieldCache
Guides for ShieldCache: setup, origin, cache, firewall, access rules, headers, statistics and troubleshooting.
- ShieldCache at a glance: firewall and cache in front of your website ShieldCache sits in front of your existing website as a reverse proxy: requests first pass through blocklists, access rules, firewall and cache, and only then reach your server. Here you can see how this works and how the customer area is structured.
- Setting up ShieldCache: add a site, verify your domain and switch DNS Step by step to a protected website: add a site, verify the domain with a TXT record, enter the origin, apply and only then switch the DNS records - so there is no interruption.
- Setting up the origin server: TLS, host header, further origins and visitor IP The origin is the server your website runs on. Here you will learn how ShieldCache connects to it, how to achieve failover with further origins and how your application receives the real visitor IP.
- Configuring the cache: rules, templates, file types and clearing the cache The HTTP cache answers recurring requests directly and takes load off your server. Here is how to configure cache duration, HTML cache, paths and cookies, use the templates for your CMS and clear the cache selectively.
- Optimisation: HTTP/2, HTTP/3, compression, HSTS and security headers Which protocols visitors use to reach your website, whether ShieldCache compresses responses and how HSTS and the security headers work together.
- Firewall (WAF): mode, check level, categories, exceptions and WAF log The Web Application Firewall checks every request against the OWASP Core Rule Set. Here is how to start without false positives, create exceptions per path and use the reference on an error page to find out which rule was triggered.
- Access rules: IP rules, countries, network operators, rate limits and captcha check Allow or block addresses, filter by country and network operator, limit requests per path and let visitors solve a captcha instead of being blocked.
- Access protection: protect areas with a password or IP allow rule Test environment, admin area or internal page: with access protection you open the whole site or individual paths only to certain IP addresses, require a login or combine both.
- Content Security Policy and custom headers with ShieldCache Specify from which sources browsers may load scripts, styles and images for your site, check reported violations and set or remove custom headers - without adapting your server.
- Understanding statistics and logs in ShieldCache How many requests came in, how many of them were served from the cache, what was blocked and how much load was taken off your server? Here is how to read key figures, traffic, block and WAF logs - and how long the data is stored.
- Versions, tasks, operating mode and custom error pages Every apply becomes a version that you can restore. Also: track tasks on the proxy, switch the site to pass-through or maintenance and design your own error pages in the Enterprise plan.
- ShieldCache in practice: WordPress, online shops and apps with WebSockets Proven settings for typical websites: WordPress, online shops with WooCommerce or Shopware and applications with WebSockets such as SignalR or Blazor Server.
- ShieldCache: frequently asked questions and troubleshooting 502 or 504, missing certificate, TXT record not found, captcha keeps appearing or a visitor reports a 403 with a reference - here you will find the causes and solutions.
No matching articles found.
Personal support
Of course, our support team is also happy to assist you personally. If you cannot find what you are looking for in our knowledge base or require personalised support, please do not hesitate to contact us. We’re here to help you and to ensure that your experience with our products and services is as smooth and enjoyable as possible.