ModSecurity is a potent web application layer firewall for Apache web servers. It monitors the entire HTTP traffic to a site without affecting its overall performance and in case it detects an intrusion attempt, it prevents it. The firewall additionally keeps a more comprehensive log for the site visitors than any server does, so you shall manage to keep an eye on what is happening with your websites better than if you rely only on standard logs. ModSecurity employs security rules based on which it helps prevent attacks. For instance, it identifies if someone is trying to log in to the administrator area of a particular script a number of times or if a request is sent to execute a file with a particular command. In such situations these attempts trigger the corresponding rules and the firewall program hinders the attempts immediately, after that records detailed details about them in its logs. ModSecurity is amongst the most effective software firewalls available and it can easily protect your web applications against a huge number of threats and vulnerabilities, particularly in case you don’t update them or their plugins frequently.
ModSecurity in Cloud Hosting
ModSecurity comes by default with all cloud hosting packages that we offer and it will be switched on automatically for any domain or subdomain that you add/create within your Hepsia hosting CP. The firewall has 3 different modes, so you can switch on and deactivate it with simply a mouse click or set it to detection mode, so it shall keep a log of all attacks, but it will not do anything to stop them. The log for any of your Internet sites will contain comprehensive information which includes the nature of the attack, where it came from, what action was taken by ModSecurity, etcetera. The firewall rules that we use are constantly updated and comprise of both commercial ones that we get from a third-party security firm and custom ones which our system admins include in case that they detect a new sort of attacks. That way, the sites that you host here will be a lot more protected without any action required on your end.
ModSecurity in Semi-dedicated Hosting
Any web program which you set up in your new semi-dedicated hosting account will be protected by ModSecurity as the firewall is provided with all our hosting plans and is switched on by default for any domain and subdomain which you include or create through your Hepsia hosting Control Panel. You will be able to manage ModSecurity via a dedicated area inside Hepsia where not only can you activate or deactivate it entirely, but you can also activate a passive mode, so the firewall will not block anything, but it will still keep an archive of potential attacks. This requires only a mouse click and you shall be able to look at the logs regardless of if ModSecurity is in passive or active mode through the same section - what the attack was and where it came from, how it was dealt with, and so on. The firewall uses two sets of rules on our web servers - a commercial one that we get from a third-party web security firm and a custom one which our administrators update personally as to respond to recently discovered risks immediately.
ModSecurity in VPS
ModSecurity comes with all Hepsia-based virtual private servers which we offer and it will be activated automatically for every new domain or subdomain that you include on the hosting server. In this way, any web application which you install will be secured right from the start without doing anything manually on your end. The firewall could be handled via the section of the CP which has the same name. This is the location in whichyou could switch off ModSecurity or let its passive mode, so it will not take any action toward threats, but shall still keep a detailed log. The recorded data is available in the same section as well and you shall be able to see what IPs any attacks originated from so that you block them, what the nature of the attempted attacks was and based upon what security rules ModSecurity responded. The rules which we employ on our servers are a mix between commercial ones that we get from a security company and custom ones which are added by our administrators to maximize the protection of any web applications hosted on our end.
ModSecurity in Dedicated Hosting
ModSecurity is included with all dedicated servers which are set up with our Hepsia Control Panel and you'll not have to do anything specific on your end to use it because it is switched on by default each time you include a new domain or subdomain on your hosting server. In the event that it disrupts any of your applications, you'll be able to stop it via the respective section of Hepsia, or you may leave it operating in passive mode, so it will detect attacks and shall still maintain a log for them, but shall not stop them. You may analyze the logs later to determine what you can do to improve the security of your sites as you shall find info such as where an intrusion attempt came from, what site was attacked and based on what rule ModSecurity reacted, etc. The rules that we use are commercial, therefore they are regularly updated by a security firm, but to be on the safe side, our administrators also include custom rules occasionally as to react to any new threats they have identified.