Platform Updated July 2026 by Thijs de Zoete

Best WAF for Docker

Secure your Docker containers with the right WAF. Compare Docker-native reverse-proxy WAFs, sidecar deployments, and cloud options for Docker, Docker Compose, and Docker Swarm.

Docker deployments need WAFs that containerize cleanly and deploy as a reverse-proxy container or as a sidecar alongside your application containers. The right choice depends on whether you run standalone Docker, Docker Compose, or Docker Swarm, and on how much you want to self-manage.

Containerized WAFs have matured, with several options shipping as official Docker images and one-command Docker Compose stacks. Open-source, Docker-native choices like BunkerWeb (NGINX plus ModSecurity and the OWASP Core Rule Set) and SafeLine (a single docker-compose deploy with a web UI) sit alongside enterprise options such as Wallarm and F5 WAF for NGINX (formerly NGINX App Protect). For teams moving away from the C-based ModSecurity engine, OWASP Coraza offers a memory-safe Go alternative that embeds into container-friendly proxies.

Top WAF Providers for Docker

1

BunkerWeb is the most Docker-native WAF on this list. It ships as an official Docker image (bunkerity/bunkerweb), runs as a security-focused reverse proxy, and comes with ModSecurity and the OWASP Core Rule Set pre-configured. Configuration is driven by environment variables and Docker labels, which fits Docker Compose and 12-factor workflows, and an optional web UI container manages everything without editing config files. It is free under the AGPLv3 license.

Key Benefits:

  • Official Docker image with ModSecurity plus OWASP CRS pre-configured
  • Configured via environment variables and Docker labels
  • Optional web UI container for management
  • Free and open source (AGPLv3)
Rating: 4.0/5
Pricing: Free (Open Source) / Pro Support
Free Tier
2

SafeLine deploys with a single Docker Compose command and manages everything through a built-in web dashboard, making it the easiest self-hosted WAF to stand up on Docker. Its semantic-analysis detection engine aims to catch attack variants with fewer false positives than pure signature matching. It is one of the most popular open-source WAFs on GitHub (21k+ stars and 180k+ installs as of 2026) and is licensed under GPL-3.0.

Key Benefits:

  • Single docker-compose stack, running in minutes
  • Built-in web dashboard for sites, rules, and logs
  • Semantic-analysis engine to reduce false positives
  • Free and open source (GPL-3.0)
Rating: 4.1/5
Pricing: Free community edition, paid pro edition
Free Tier
3

Wallarm is a WAAP platform that ships a Docker image (the Wallarm node) and can run as a reverse-proxy container or as a sidecar next to your application containers. For Docker workloads serving API-heavy traffic, its automatic API discovery and OWASP API Top 10 protection cover threats that traditional signature WAFs miss, with a free tier for smaller deployments.

Key Benefits:

  • Wallarm node ships as a Docker image (reverse proxy or sidecar)
  • API discovery and OWASP API Top 10 protection
  • Integrated security testing (DAST)
  • Free tier available
Rating: 4.3/5
Pricing: Subscription based on requests
Free Tier
4

F5 WAF for NGINX

Enterprise Leader

F5 WAF for NGINX (formerly NGINX App Protect) is the enterprise choice for Docker teams already standardized on NGINX. The current v5 release is a multi-container Docker Compose deployment, pairing an NGINX container with the waf-enforcer and waf-config-mgr containers, and brings F5's 7,800+ attack signatures and ML-based detection with declarative, version-controlled policy. It requires an F5 subscription with a JWT license file.

Key Benefits:

  • v5 multi-container Docker Compose deployment
  • F5 threat intelligence with 7,800+ signatures
  • Declarative policy as code for GitOps
  • Backed by F5 enterprise support (paid subscription)
Rating: 4.2/5
Pricing: Per-instance annual subscription
5

open-appsec

Machine Learning

open-appsec runs as a container add-on to NGINX or Kong and detects attacks with a pre-trained machine-learning engine instead of signatures, so it needs little rule tuning. Backed by Check Point and free to self-host, it is a modern option for Docker teams that want low-maintenance, signature-free protection and a natural alternative as the classic ModSecurity engine winds down.

Key Benefits:

  • Containerized add-on for NGINX and Kong
  • ML-based detection with no signature tuning
  • Free and open source, backed by Check Point
  • Also available as managed SaaS
Rating: 4.1/5
Pricing: Free open source, managed cloud SaaS available
Free Tier
6

OWASP Coraza is a memory-safe Go rewrite of ModSecurity that runs the same SecLang rules and the OWASP Core Rule Set. For container stacks it embeds into modern reverse proxies such as Caddy, Traefik, and HAProxy, or runs as middleware in a Go service, making it a clean cloud-native successor to the C-based ModSecurity engine. It is fully open source under Apache 2.0.

Key Benefits:

  • Go engine, compatible with ModSecurity rules and OWASP CRS
  • Embeds into Caddy, Traefik, and HAProxy containers
  • Memory-safe, cloud-native successor to ModSecurity
  • Free and open source (Apache 2.0)
Rating: 4.2/5
Pricing: Free and open source (Apache 2.0)
Free Tier

Developer-friendly WAF using proprietary SmartParse technology, offering low false positives and seamless DevOps integration for modern application security.

Rating: 4.5/5
Pricing: Custom pricing based on requests and features

AI-powered WAF with preemptive zero-day protection, featuring dual machine learning engines and minimal false positives for cloud-native applications.

Rating: 4.3/5
Pricing: Usage-based / BYOL

Open-source, crowd-powered WAF that combines traditional rule-based filtering with community-driven threat intelligence. Integrates with Nginx, Traefik, HAProxy, and Kubernetes. Compatible with ModSecurity SecLang rules.

Rating: 4.3/5
Pricing: Open source (MIT) + commercial blocklists and CTI
Free Tier

High-performance WAF built into the world's most widely used open source load balancer. Uses machine learning-powered threat detection instead of regex-based signatures, delivering 98.5% balanced accuracy with sub-millisecond latency. Enterprise product with custom pricing.

Rating: 4.3/5
Pricing: Custom pricing (contact sales)

Enterprise CNAPP with integrated WAF, API security, and bot management, designed for cloud-native applications across multi-cloud environments.

Rating: 4.3/5
Pricing: Credit-based licensing

AI-powered API security platform combining WAF/WAAP, automated API discovery, security testing, and bot protection with runtime defense across any environment.

Rating: 4.2/5
Pricing: Enterprise subscription (custom pricing)

The original open source WAF engine powering countless applications, offering unmatched flexibility for those willing to manage their own security infrastructure.

Rating: 4.0/5
Pricing: Free (Open Source)
Free Tier

API gateway with built-in WAF plugin for enterprise customers. Kong is the most popular open source API gateway (35K+ GitHub stars, 312M+ downloads) built on NGINX, processing 400B+ API calls daily. The WAF plugin is an Enterprise-only add-on that protects API endpoints at the gateway layer.

Rating: 3.8/5
Pricing: Tiered (Plus per-gateway + Enterprise custom)

Enterprise gateway appliance from IBM providing WAF, API security, and integration capabilities for complex enterprise environments.

Rating: 3.5/5
Pricing: License + subscription

A lightweight, open source WAF module for NGINX that uses a scoring-based approach instead of signature matching, blocking attacks by detecting suspicious patterns rather than maintaining a vulnerability database.

Rating: 3.4/5
Pricing: Free (Open Source, GPLv3)
Free Tier

Cloud-managed WAF from Qualys that integrates with their vulnerability scanning platform, enabling one-click virtual patching of discovered vulnerabilities. Note — product was decommissioned September 2024.

Rating: 3.0/5
Pricing: Subscription, per-asset licensing (product decommissioned)

What to Look For in a WAF for Docker

Docker WAF requirements:

  • Official Docker Image - Available as a well-maintained Docker image with regular security updates
  • Resource Efficiency - Low memory and CPU footprint to minimize container overhead
  • Environment Variables - Configuration via environment variables for 12-factor app compatibility
  • Docker Compose - Easy integration in docker-compose.yml as a reverse proxy or sidecar service
  • Health Checks - Docker health check support for orchestration and restart policies
  • Log Drivers - Compatible with Docker logging drivers (json-file, syslog, fluentd) for centralized log management

Docker Considerations

Docker-specific considerations when deploying a WAF:

  • Network Architecture - Use Docker networks to isolate your WAF container. Place it on a bridge network shared with your application containers, and only expose the WAF's ports externally.
  • Volume Mounts - Mount WAF configuration files and rule sets as Docker volumes for persistence across container restarts.
  • Resource Limits - Set memory and CPU limits on your WAF container to prevent resource exhaustion in the Docker host.
  • Docker Swarm - For Swarm deployments, deploy the WAF as a global service or use routing mesh to ensure traffic passes through the WAF before reaching application services.
  • Image Security - Use official images from trusted registries. Scan WAF images with tools like Trivy or Docker Scout before deployment.

Frequently Asked Questions

What is the best containerized WAF for Docker?

BunkerWeb is the most Docker-friendly WAF, offering an official Docker image with a web UI and ModSecurity plus the OWASP Core Rule Set pre-configured, with native Docker Compose support. SafeLine is another popular Docker-native option that deploys as a single docker-compose stack with a web dashboard. For enterprise needs, Wallarm and F5 WAF for NGINX (formerly NGINX App Protect, now a v5 multi-container Docker Compose deployment) provide Docker images with more advanced features.

Should I run WAF as a sidecar or reverse proxy in Docker?

A reverse proxy WAF (a separate container in front of your app) is simpler and protects all traffic entering your application. Sidecar deployment (one WAF per application container) provides tighter integration but increases resource usage. For most Docker Compose setups, a reverse proxy container is recommended.

Can I use a cloud WAF instead of a containerized one?

Yes. Cloud WAFs like Cloudflare require only a DNS change and protect your Docker application at the edge without any container changes. This is often the simplest approach, though it doesn't protect east-west traffic between containers.

Is ModSecurity still maintained for Docker WAFs?

Yes. ModSecurity moved to OWASP stewardship in 2024 and Trustwave's commercial support reached end-of-life on 1 July 2024, but the open-source engine and the OWASP Core Rule Set remain actively maintained and ship inside Docker-native WAFs like BunkerWeb. For a more container-native path, OWASP Coraza is a memory-safe Go rewrite that is compatible with ModSecurity rules and the CRS and embeds into proxies such as Caddy, Traefik, and HAProxy.