ModSecurity is an effective firewall for Apache web servers that is employed to stop attacks against web apps. It monitors the HTTP traffic to a certain site in real time and blocks any intrusion attempts the instant it identifies them. The firewall relies on a set of rules to do this - as an illustration, trying to log in to a script admin area unsuccessfully a few times triggers one rule, sending a request to execute a particular file which could result in accessing the site triggers a different rule, and so on. ModSecurity is amongst the best firewalls available and it'll preserve even scripts that aren't updated frequently since it can prevent attackers from using known exploits and security holes. Incredibly thorough information about every single intrusion attempt is recorded and the logs the firewall keeps are much more comprehensive than the regular logs created by the Apache server, so you can later examine them and determine if you need to take more measures so as to enhance the safety of your script-driven sites.
ModSecurity in VPS Web Hosting
All virtual private servers which are set up with the Hepsia CP feature ModSecurity. The firewall is set up and switched on by default for all domains which are hosted on the web server, so there will not be anything special which you shall have to do to protect your sites. It'll take you simply a mouse click to stop ModSecurity if necessary or to activate its passive mode so that it records what happens without taking any steps to prevent intrusions. You will be able to look at the logs generated in active or passive mode from the corresponding section of Hepsia and find out more about the type of the attack, where it originated from, what rule the firewall employed to handle it, etcetera. We use a combination of commercial and custom rules so as to ensure that ModSecurity will block as many risks as possible, thus enhancing the protection of your web applications as much as possible.
ModSecurity in Dedicated Servers Hosting
ModSecurity comes with all dedicated servers that are set up with our Hepsia CP and you'll not have to do anything specific on your end to employ it because it's turned on by default whenever you include a new domain or subdomain on your web server. In case it disrupts any of your programs, you shall be able to stop it through the respective section of Hepsia, or you may leave it in passive mode, so it'll detect attacks and will still keep a log for them, but shall not prevent them. You may look at the logs later to determine what you can do to boost the safety of your websites since you will find info such as where an intrusion attempt originated from, what Internet site was attacked and in accordance with what rule ModSecurity responded, etcetera. The rules which we employ are commercial, thus they're constantly updated by a security company, but to be on the safe side, our administrators also include custom rules from time to time in order to deal with any new threats they have discovered.