ModSecurity is a plugin for Apache web servers which acts as a web application layer firewall. It is employed to prevent attacks against script-driven sites through the use of security rules which contain certain expressions. That way, the firewall can stop hacking and spamming attempts and protect even Internet sites which aren't updated often. For example, several unsuccessful login attempts to a script administrator area or attempts to execute a specific file with the purpose to get access to the script will trigger particular rules, so ModSecurity shall stop these activities the minute it detects them. The firewall is quite efficient since it monitors the entire HTTP traffic to an Internet site in real time without slowing it down, so it can prevent an attack before any harm is done. It furthermore keeps an incredibly thorough log of all attack attempts which includes more info than traditional Apache logs, so you can later check out the data and take further measures to improve the security of your websites if required.

ModSecurity in Hosting

ModSecurity is offered with each and every hosting plan which we offer and it's switched on by default for every domain or subdomain which you include through your Hepsia CP. In case it disrupts any of your applications or you would like to disable it for some reason, you'll be able to accomplish that through the ModSecurity area of Hepsia with only a mouse click. You could also use a passive mode, so the firewall will recognize possible attacks and keep a log, but shall not take any action. You could see extensive logs in the very same section, including the IP address where the attack came from, what precisely the attacker aimed to do and at what time, what ModSecurity did, and so on. For maximum safety of our customers we use a collection of commercial firewall rules blended with custom ones that are provided by our system admins.

ModSecurity in Semi-dedicated Servers

We have integrated ModSecurity as a standard in all semi-dedicated server plans, so your web apps shall be protected the instant you set them up under any domain or subdomain. The Hepsia Control Panel that comes with the semi-dedicated accounts shall permit you to enable or disable the firewall for any Internet site with a mouse click. You'll also have the ability to turn on a passive detection mode in which ModSecurity shall maintain a log of possible attacks without actually stopping them. The thorough logs include the nature of the attack and what ModSecurity response this attack triggered, where it came from, etc. The list of rules which we use is constantly updated as to match any new risks which could appear on the Internet and it comes with both commercial rules that we get from a security business and custom-written ones that our administrators include in case they discover a threat which is not present in the commercial list yet.

ModSecurity in VPS Servers

All VPS servers that are set up with the Hepsia CP include ModSecurity. The firewall is set up and switched on by default for all domains that are hosted on the web server, so there won't be anything special which you shall have to do to protect your Internet sites. It'll take you simply a mouse click to stop ModSecurity if needed or to turn on its passive mode so that it records what goes on without taking any steps to prevent intrusions. You'll be able to see the logs created in passive or active mode from the corresponding section of Hepsia and discover more about the type of the attack, where it came from, what rule the firewall employed to take care of it, etcetera. We employ a combination of commercial and custom rules in order to ensure that ModSecurity shall prevent as many threats as possible, thus improving the security of your web programs as much as possible.

ModSecurity in Dedicated Servers

ModSecurity is included with all dedicated servers that are integrated with our Hepsia Control Panel and you won't need to do anything specific on your end to employ it as it is enabled by default every time you include a new domain or subdomain on your web server. In case it interferes with any of your applications, you will be able to stop it via the respective section of Hepsia, or you could leave it working in passive mode, so it will detect attacks and will still maintain a log for them, but shall not prevent them. You may analyze the logs later to learn what you can do to increase the safety of your websites as you will find information such as where an intrusion attempt came from, what site was attacked and based on what rule ModSecurity responded, and so on. The rules that we employ are commercial, therefore they're constantly updated by a security firm, but to be on the safe side, our administrators also add custom rules once in a while as to deal with any new threats they have found.