HTTP Security Firewall for Magento 2
Best tool to raise Magento security to a completely new level.

  • Scans Magento security issues and helps to resolve them.
  • Protects your website with security tools from hackers activity.
  • Monitors, logs and notifies you in case of security threats or emergencies.

Our team believe that Magento security & stability are the most important parts of any growing e-Commerce business. That is why we've built Magento Firewall extension that increases security & stability significantly and protects your website from security issues and hackers attacks. It became possible as Firewall creates additional layer of protection and rises Magento 2 security and performance to a new level.

Firewall is a time-saver when it comes to detecting security issues and assisting you in cleaning them up.

With Firewall your website security level is increased and backed up with 10 easy-to-use tools that will protect from the most security threats in the future.

And with constant monitoring, logging and notification tools, Firewall will inform you by SMS and EMAIL if anything goes wrong, e.g. suspicious hackers’ activity detected, website started working slowly, etc.

Main Features:

  • Security Checklist - Checks your website and server configuration for security issues and helps to solve them.
  • Server Load - Tracks server performance and detects if the website works slowly.
  • DOS Attack Detection - Monitors users, bots and hackers HTTP requests, allows analyzing who makes a large number of requests and take actions against them.
  • Black & White IP lists - Grants or denies access to the website for specific IPs or IP ranges.
  • Country Blocker - Grants or denies access to the website for whole countries.
  • Admin Panel Logs - Tracks logins to the admin panel, detects brute-force attacks.
  • Sends E-mails and SMS notifications in case of emergency situations.
  • Fully compatible with cloud proxy servers like Amazon CloudFront or Cloudflare.
  • Serves search engines like Google, Yahoo, Bing, Baidu, etc as the topmost priority.
  • Reduces the risk of hacker attacks and other online threats.

Read more about "HTTP Security Firewall" in Advanced Details.

Security Checklist

This tool allows you to scan your server & Magento 2 configuration to detect security issues. "Security Checklist" detects issues, explains why these issues should be fixed and gives suggestions/instructions on how to fix them. It is a great tool for website administrators and web developers to make the basic scan quickly to understand the current security situation.

Server Load

You can monitor server load in real time and look through server load history. You can detect if the server was overloaded at some point or DOS attacks were run against your server. Charts allow you to analyze situations quickly and react to issues with the help of other "blocking" security tools.

DOS Attack Detection

You can monitor HTTP requests made to Magento 2 during the day. You will be always informed about who makes HTTP requests to Magento and reduces server performance or crawl/steal website content without your permission. You can see the list of IP addresses, hostnames, countries and the number of all HTTP requests made by them. So, if you notice that somebody makes hundreds of requests per minute, you can research this situation in more detail and take action against this person or IP.

Block Unwanted Crawlers

Researches show that up to 70% of websites traffic is made by unwanted bots and crawlers that scan your store to steal content or look for security vulnerabilities. With this security extension, you can monitor and block these bots and crawlers by IP, country or "User-Agent" header to make your Magento 2 store even more secure. HTTP Security Firewall is very smart. It detects "white" crawlers of Google, Bing, Yahoo, and other search engines, so that they always will be able to access Magento with higher priority.

Black & White IP Lists

The firewall allows blocking specific IP addresses or IP ranges. So, if with the help of other tools you detect a possibly dangerous IP address, you can simply deny access using blacklist.

You can also add your IP address and IPs of your colleagues to the white list so that these IPs addresses will be always served on a priority basis and won't be blocked in any case. It is also very useful for monitoring. You will be informed about IP addresses from the white list so that you can pay less attention to them.

Country Blocker

If your store doesn't serve some countries it is a good idea to forbid their access to your store. It will help you to block dozens of unwanted bots/crawlers, decrease hackers’ activities and reduce server load. We are sure that you have heard of countries which are "leaders" in hacking activities. So if you don't make shipping to those countries, it is a good idea to block them as well.

Admin Login Logs

You can keep tracking who accesses your Magento admin panel. HTTP Security Firewall tracks logins, time, country, IP address, success & failed login attempts. So, if you suspect that there is a chance of unauthorized access to the admin panel, you will have all the required information to investigate this situation and to find this person.

Receive Email and SMS Notifications

You can receive notifications if anything goes wrong, e.g. server going through enormous load and website working slowly or a "brute force" attack to admin panel is detected.

Compatible with Front Proxy Servers

If your server is hidden behind front proxy servers like Amazon CloudFront, Cloudflare or any other, the firewall can be configured to work with them. Just specify the inner IP address of the proxy server in the settings and firewall will complement a set of security tools for your website.

Reduce Risk of Attacks

Our HTTP Security Firewall is evolving and our team reacts fast to new security threats by launching new updates. We work hard to make your store more secure so that you don't have to worry about security and can focus on more important things.



Magento versions:

2.2 2.3
payment security
payment security