ModSecurity is a potent web application layer firewall for Apache web servers. It monitors the entire HTTP traffic to a site without affecting its performance and in case it detects an intrusion attempt, it blocks it. The firewall also keeps a more comprehensive log for the traffic than any web server does, so you will manage to keep track of what's happening with your Internet sites much better than if you rely only on conventional logs. ModSecurity uses security rules based on which it helps prevent attacks. For example, it recognizes whether anyone is trying to log in to the administration area of a particular script multiple times or if a request is sent to execute a file with a certain command. In these instances these attempts set off the corresponding rules and the firewall program hinders the attempts right away, after that records in-depth info about them inside its logs. ModSecurity is one of the very best software firewalls available and it could easily protect your web applications against thousands of threats and vulnerabilities, especially in case you don’t update them or their plugins often.

ModSecurity in Shared Hosting

We offer ModSecurity with all shared hosting solutions, so your web applications shall be resistant to malicious attacks. The firewall is switched on as standard for all domains and subdomains, but in case you would like, you shall be able to stop it using the respective part of your Hepsia CP. You'll be able to also switch on a detection mode, so ModSecurity will keep a log as intended, but shall not take any action. The logs which you shall discover in Hepsia are quite detailed and include data about the nature of any attack, when it transpired and from what IP address, the firewall rule that was triggered, and so forth. We employ a set of commercial rules which are regularly updated, but sometimes our admins include custom rules as well in order to efficiently protect the Internet sites hosted on our machines.

ModSecurity in Semi-dedicated Hosting

We've integrated ModSecurity by default inside all semi-dedicated hosting packages, so your web applications will be protected the instant you install them under any domain or subdomain. The Hepsia CP that comes with the semi-dedicated accounts shall allow you to switch on or turn off the firewall for any Internet site with a mouse click. You'll also have the ability to activate a passive detection mode in which ModSecurity will maintain a log of possible attacks without actually preventing them. The thorough logs include things like the nature of the attack and what ModSecurity response this attack generated, where it came from, and so on. The list of rules which we use is regularly updated as to match any new risks which could appear on the Internet and it features both commercial rules that we get from a security firm and custom-written ones which our admins include in case they find a threat which is not present in the commercial list yet.

ModSecurity in VPS

ModSecurity is pre-installed on all virtual private servers which are offered with the Hepsia hosting Control Panel, so your web programs will be protected from the instant your server is in a position. The firewall is activated by default for any domain or subdomain on the Virtual Private Server, but if required, you could deactivate it with a click via the corresponding section of Hepsia. You can also set it to work in detection mode, so it will maintain a detailed log of any potential attacks without taking any action to stop them. The logs can be found in the exact same section and offer info about the nature of the attack, what IP address it came from and what ModSecurity rule was triggered to stop it. For optimum security, we use not simply commercial rules from a business operating in the field of web security, but also custom ones which our admins include personally in order to react to new threats which are still not addressed in the commercial rules.

ModSecurity in Dedicated Hosting

When you decide to host your websites on a dedicated server with the Hepsia CP, your web applications shall be secured immediately since ModSecurity is provided with all Hepsia-based packages. You shall be able to manage the firewall easily and if necessary, you will be able to turn it off or activate its passive mode when it'll only keep a log of what's going on without taking any action to stop potential attacks. The logs that you can find in the same section of the CP are quite detailed and feature details about the attacker IP address, what site and file were attacked and in what way, what rule the firewall used to stop the intrusion, and so on. This data will allow you to take measures and boost the security of your websites even more. To be on the safe side, we use not just commercial rules, but also custom-made ones which our administrators include when they identify attacks that have not yet been included within the commercial pack.