ModSecurity is a powerful web app layer firewall for Apache web servers. It monitors the entire HTTP traffic to a website without affecting its performance and when it identifies an intrusion attempt, it prevents it. The firewall additionally maintains a more detailed log for the website visitors than any server does, so you will manage to monitor what is happening with your websites much better than if you rely simply on conventional logs. ModSecurity uses security rules based on which it helps prevent attacks. For instance, it identifies whether somebody is attempting to log in to the administrator area of a certain script several times or if a request is sent to execute a file with a specific command. In these instances these attempts set off the corresponding rules and the firewall program hinders the attempts right away, after that records comprehensive information about them inside its logs. ModSecurity is among the very best software firewalls available and it can easily protect your web apps against a large number of threats and vulnerabilities, especially in case you don’t update them or their plugins frequently.

ModSecurity in Shared Hosting

We provide ModSecurity with all shared hosting solutions, so your web apps will be resistant to harmful attacks. The firewall is turned on as standard for all domains and subdomains, but if you'd like, you shall be able to stop it through the respective part of your Hepsia Control Panel. You'll be able to also activate a detection mode, so ModSecurity will keep a log as intended, but won't take any action. The logs that you will find within Hepsia are extremely detailed and offer data about the nature of any attack, when it took place and from what IP, the firewall rule that was triggered, etcetera. We employ a range of commercial rules which are constantly updated, but sometimes our admins add custom rules as well in order to better protect the sites hosted on our machines.

ModSecurity in Semi-dedicated Hosting

Any web app that you set up within your new semi-dedicated hosting account will be protected by ModSecurity because the firewall comes with all our hosting solutions and is switched on by default for any domain and subdomain you add or create through your Hepsia hosting CP. You shall be able to manage ModSecurity through a dedicated area within Hepsia where not simply could you activate or deactivate it entirely, but you may also switch on a passive mode, so the firewall will not block anything, but it'll still maintain a record of possible attacks. This normally requires only a click and you'll be able to look at the logs regardless if ModSecurity is in active or passive mode through the same section - what the attack was and where it originated from, how it was addressed, etcetera. The firewall employs 2 groups of rules on our web servers - a commercial one which we get from a third-party web security provider and a custom one which our administrators update personally in order to respond to recently discovered threats as fast as possible.

ModSecurity in VPS Hosting

ModSecurity comes with all Hepsia-based virtual private servers we offer and it will be switched on automatically for any new domain or subdomain that you add on the server. That way, any web app you install will be secured immediately without doing anything by hand on your end. The firewall can be managed through the section of the Control Panel that bears the same name. This is the place in whichyou could switch off ModSecurity or let its passive mode, so it shall not take any action against threats, but shall still keep a thorough log. The recorded data is available within the same section as well and you shall be able to see what IPs any attacks came from so that you can stop them, what the nature of the attempted attacks was and in accordance with what security rules ModSecurity reacted. The rules that we use on our servers are a mixture between commercial ones which we get from a security company and custom ones that are included by our administrators to improve the protection of any web applications hosted on our end.

ModSecurity in Dedicated Web Hosting

All our dedicated servers that are set up with the Hepsia hosting CP include ModSecurity, so any application which you upload or install shall be protected from the very beginning and you will not have to bother about common attacks or vulnerabilities. An individual section in Hepsia will allow you to start or stop the firewall for each and every domain or subdomain, or switch on a detection mode so that it records details about intrusions, but doesn't take actions to stop them. What you'll find in the logs shall help you to secure your Internet sites better - the IP an attack originated from, what site was attacked as well as how, what ModSecurity rule was triggered, and so forth. With this info, you could see if a website needs an update, if you need to block IPs from accessing your web server, and so forth. Besides the third-party commercial security rules for ModSecurity that we use, our administrators add custom ones too every time they come across a new threat that's not yet a part of the commercial bundle.