ModSecurity is a plugin for Apache web servers that functions as a web app layer firewall. It is employed to stop attacks toward script-driven sites by using security rules that contain particular expressions. In this way, the firewall can stop hacking and spamming attempts and preserve even Internet sites which aren't updated frequently. For instance, numerous unsuccessful login attempts to a script administrative area or attempts to execute a certain file with the purpose to get access to the script shall trigger certain rules, so ModSecurity shall block these activities the moment it identifies them. The firewall is incredibly efficient because it tracks the entire HTTP traffic to a website in real time without slowing it down, so it could prevent an attack before any harm is done. It also keeps an exceptionally detailed log of all attack attempts which contains more info than traditional Apache logs, so you can later analyze the data and take additional measures to boost the security of your sites if required.

ModSecurity in Shared Hosting

ModSecurity comes standard with all shared hosting packages which we supply and it will be switched on automatically for any domain or subdomain you add/create within your Hepsia hosting Control Panel. The firewall has 3 different modes, so you'll be able to activate and disable it with just a click or set it to detection mode, so it'll keep a log of all attacks, but it will not do anything to stop them. The log for each of your Internet sites shall contain elaborate info such as the nature of the attack, where it originated from, what action was taken by ModSecurity, and so on. The firewall rules we use are constantly updated and comprise of both commercial ones which we get from a third-party security firm and custom ones our system admins add in the event that they detect a new type of attacks. This way, the Internet sites you host here shall be way more secure without any action required on your end.

ModSecurity in Semi-dedicated Hosting

Any web program that you set up within your new semi-dedicated hosting account will be protected by ModSecurity since the firewall is included with all our hosting solutions and is switched on by default for any domain and subdomain you add or create through your Hepsia hosting Control Panel. You will be able to manage ModSecurity through a dedicated section in Hepsia where not only can you activate or deactivate it completely, but you can also enable a passive mode, so the firewall shall not block anything, but it'll still keep a record of potential attacks. This takes only a click and you'll be able to look at the logs regardless of if ModSecurity is in passive or active mode through the same section - what the attack was and where it came from, how it was dealt with, etcetera. The firewall employs two sets of rules on our machines - a commercial one that we get from a third-party web security provider and a custom one that our administrators update manually as to respond to newly discovered threats immediately.

ModSecurity in VPS

All virtual private servers that are provided with the Hepsia CP include ModSecurity. The firewall is set up and activated by default for all domains which are hosted on the machine, so there won't be anything special that you will have to do to protect your Internet sites. It shall take you only a click to stop ModSecurity if required or to switch on its passive mode so that it records what happens without taking any steps to prevent intrusions. You shall be able to see the logs produced in passive or active mode from the corresponding section of Hepsia and find out more about the form of the attack, where it originated from, what rule the firewall used to deal with it, etc. We employ a mixture of commercial and custom rules in order to make certain that ModSecurity will block as many risks as possible, consequently enhancing the protection of your web apps as much as possible.

ModSecurity in Dedicated Hosting

All of our dedicated servers that are set up with the Hepsia hosting Control Panel include ModSecurity, so any application you upload or install will be properly secured from the very beginning and you won't need to concern yourself with common attacks or vulnerabilities. A separate section within Hepsia will enable you to start or stop the firewall for any domain or subdomain, or switch on a detection mode so that it records information regarding intrusions, but doesn't take actions to prevent them. What you shall find in the logs can allow you to to secure your websites better - the IP address an attack came from, what website was attacked as well as how, what ModSecurity rule was triggered, etc. With this info, you can see whether a website needs an update, whether you ought to block IPs from accessing your web server, and so on. Aside from the third-party commercial security rules for ModSecurity we use, our administrators add custom ones too whenever they find a new threat which is not yet a part of the commercial bundle.