How Hexa Shield works

Put the protection layerin front of your origin.

Hexa Shield is a reverse-proxy security platform. Customers keep their existing application and origin server while traffic is routed through the Hexa Shield security pipeline first.

01

Add your domain

Create the domain in Hexa Shield and configure the origin server that should receive allowed traffic.

02

Prove ownership

Use the DNS TXT or HTTP-token verification instructions generated for the domain.

03

Route traffic

Point DNS at Hexa Shield, or enable authoritative DNS and delegate the assigned nameservers where supported.

04

Apply protection

Managed WAF, custom rules, rate limits, IP policy, and bot visibility are evaluated before origin forwarding.

05

Forward to origin

Allowed requests are proxied to the configured origin with the domain timeout and request-size policy.

06

Investigate and tune

Review recent analytics and security events, then adjust protection policy as your traffic changes.

Two DNS onboarding models

External DNS

Keep DNS at the existing provider and point the required A/CNAME record at Hexa Shield after ownership verification.

Hexa Shield authoritative DNS

Enable a Hexa Shield DNS zone, delegate the assigned nameservers, and manage supported DNS records from the dashboard.

Choose a monthly plan