Securing Applications with NGINX

Securing Applications with NGINX


Securing Applications with NGINX is an 8-hour course for individuals who want a deep understanding of NGINX and NGINX Plus's security features.


In Securing Applications with NGINX students identify and administer client-side and upstream encryption (SSL/TLS), configure access control (limit rates, blacklisting/whitelisting), setup authentication (basic auth, OAuth 2.0), and tune the NGINX proxy to have reliable, persistent, fast, secure connections. The second half of the course explores using NGINX Plus to secure API traffic, authenticate users with OpenID Connect, and blocking malicious traffic with the ModSecurity 3.0 WAF dynamic module


2 Days


  • Implement NGINX security directives according to best practices
  • Encrypt both front-end and back-end traffic
  • Configure NGINX WAF using ModSecurity 3.0
  • Understand the benefits and limitations of OWASP
  • Set up JWT authentication
  • Enforce rate limiting


Securing Applications with NGINX is intended for NGINX developers, DevOps, and administrators who want to make sure their solutions are a secure as they can be.


People enrolling in Securing Applications with NGINX should have completed NGINX Core, or have similar experience.

Upcoming Classes

No classes have been scheduled, but you can always Request a Quote.

Onsite Training

For groups of three or more

Request Quote

Public Training