F5 NGINX ModSecurity WAF Is Transitioning to End-of-Life
F5 NGINX ModSecurity WAF Is Transitioning to End-of-Life For the past five years, F5 NGINX has been pleased to provide our customers with the NGINX ModSecurity WAF module for NGINX Plus with support against standard classes of vulnerabilities using the OWASP ModSecurity Core Rule Set (CRS). However, due to recent changes to third‑party support for ModSecurity WAF, we regret that we are transitioning NGINX ModSecurity WAF to End-of-Life (EoL) effective March 31, 2024. Our decision is due in part to the recent announcement from Trustwave, the organization that has been maintaining ModSecurity, that as of July 1, 2024, it will: Stop supporting the ModSecurity open source code and WAF Return responsibility for maintaining the ModSecurity code to the open source community No longer provide Commercial Rules Additionally, the OWASP ModSecurity Core Rule Set (CRS) project has announced that it is switching its focus [ more… ]