megachangelog
Feature

Vercel CDN now fronts any application, including Discourse and WordPress

Vercel's CDN can proxy any external application to add firewall protection, DDoS mitigation, and observability without full migration. By combining CDN proxying with Vercel's microfrontends, you can incrementally modernize existing platforms while keeping them running, enabling features like authentication, custom pages, and bot management.

Vercel's CDN can front any application, not just those deployed natively on the platform, and it's simple to set up. This allows you to add firewall protection, DDoS mitigation, and observability to platforms like Discourse or WordPress without migrating them completely.

The is an example of this architecture. It is a Discourse application hosted elsewhere, but we proxy it ourselves via Vercel's CDN, which both protects the app and gives us access to useful features in Vercel's website stack: Vercel Community

Some parts of the community platform, like, run directly on Vercel with Next.js. We use to mount a Next.js app on the same domain as the Discourse app, for three reasons: Vercel Community live sessionsVercel Microfrontends

When the new pages are ready to launch, we add the path to our microfrontends configuration and users are rerouted seamlessly on the next deploy.

To set up Vercel as a CDN proxy like this, you need two domains:

Ensure that all links on the site and its canonical URLs use the outer domain.

Once those are in place, create a new project on Vercel that deploys to the outer host. You can then use to rewrite traffic to the inner domain. (formerly vercel.json) vercel.ts

To extend the community forum beyond the limits of Discourse, we configured with the outer host domain using a. vertical microfrontend approach

Vercel's microfrontends allow you to mount different Vercel projects to different route paths. We added a file that directs traffic for specific routes to separate Vercel projects. microfrontends.json

Additional pages can be added incrementally, route by route. We also added the route to use for event creation and video processing..well-known/workflowWorkflow Development Kit

While you could accomplish some of this by using negative matching in the proxy regex to avoid proxying certain routes, splitting the projects provides better isolation. This approach allows for independent environment variables and organization permissions, locking down the project that talks to the third-party host.

At this point, you have Vercel's CDN standing between your users and your origin server. All traffic flows through Vercel's global network, giving you enterprise-grade security without touching your existing application.

You get even more flexibility when you combine this with microfrontends. You now have a path to modernize your application incrementally. Instead of a "big bang" refactor, you can create a Next.js application and turn on specific routes one by one, while your core application continues to run on Discourse, WordPress, or whatever platform it is built on.

This architecture unlocks a pragmatic path forward: secure your existing investment with Vercel's CDN today, then layer modern features on top tomorrow, all without the risk of a full platform migration.

Learn more by reading the or see it in action at .Vercel microfrontends documentationcommunity.vercel.com/live

Read more

  • gives us anonymized, cookie-free demographic and referrer data, so we can see where users are coming from and what they're looking for.Web Analytics

  • gives us DDoS protection and has automatically prevented several attacks in the last year.Firewall

  • lets us block malicious scrapers while allowing trusted crawlers to index the forum and allow community posts to show up in ChatGPT searches.Bot Management

  • To create new pages that would be impractical to implement as CMS plugins.

  • To overwrite existing Discourse pages that we can't fully customize.

  • To keep users authenticated through Sign in with Vercel

Vercel as a CDN

Running multiple apps on a single domain with microfrontends

A modern CDN without a massive migration

  1. The origin server where the site is actually hosted. This might look like Inner host:your-site.discourse.com

  2. The Vercel project domain that users interact with, such as Outer host:community.vercel.com

cdnproxysecuritymicrofrontendsarchitecture

Source: original entry ↗

More from Vercel

Follow Vercel to get its new changes in your feed and email digest.

Feature

OpenAI Decisions API now available on AI Gateway

OpenAI's Decisions API is now accessible through Vercel's AI Gateway with an OpenAI-compatible endpoint, enabling decision models to answer typed questions and return probabilities, choices, and scores for routing, triage, and guardrails use cases. Support is available across the OpenAI SDK, AI SDK, HTTP API, and CLI with the latest versions.

ai-gatewayopenaiapidecisionssdks
Feature

Timestamp attributes now supported in Vercel Flags

Vercel Flags now supports timestamp attributes for entities, allowing you to create time-based targeting rules. Use this feature to run limited-time campaigns, show content between specific dates, or target users based on registration date.

flagstargetingfeaturetimestampscampaigns
Feature

Glyph Cluster now available in stealth on AI Gateway

Glyph Cluster, a reasoning model for coding and long-context analysis, is now available as a stealth model on Vercel's AI Gateway for Pro and Enterprise plan teams with purchased AI Gateway credits at no cost during the stealth period. The model supports function calling, streams responses, and can be accessed via AI SDK, OpenAI-compatible APIs, and coding agents.

ai-gatewaymodelscodingstealth
See all Vercel changes →