All glossary terms
Glossary
Custom rules
Custom WAF rules are rules a security team writes for its own applications, such as blocking a path, limiting a country, or allowing a trusted partner's IP range.
Custom rules fill gaps that managed rules can't: business logic, specific endpoints, known bad actors. Over time, though, they pile up. Rules written for a past incident stay in place, nobody remembers why, and some conflict with each other.
In multi-vendor stacks, the same intent is often written differently in each vendor's rule language, which makes consistency hard to verify.
Where Huskeys fits
Huskeys inventories custom rules across vendors, flags unused or conflicting ones, and translates rules between vendor formats.
