ModSecurity is a highly effective web application layer firewall for Apache web servers. It monitors the entire HTTP traffic to a site without affecting its overall performance and when it discovers an intrusion attempt, it prevents it. The firewall also keeps a more thorough log for the site visitors than any web server does, so you'll manage to keep track of what's happening with your websites better than if you rely merely on conventional logs. ModSecurity employs security rules based on which it helps prevent attacks. For example, it detects if anyone is trying to log in to the admin area of a specific script multiple times or if a request is sent to execute a file with a specific command. In such situations these attempts set off the corresponding rules and the firewall program hinders the attempts in real time, then records comprehensive info about them in its logs. ModSecurity is among the most effective software firewalls available and it could easily protect your web applications against thousands of threats and vulnerabilities, particularly in case you don’t update them or their plugins often.

ModSecurity in Shared Hosting

We offer ModSecurity with all shared hosting plans, so your Internet apps shall be protected against destructive attacks. The firewall is turned on by default for all domains and subdomains, but if you would like, you'll be able to stop it through the respective section of your Hepsia Control Panel. You could also activate a detection mode, so ModSecurity will keep a log as intended, but won't take any action. The logs that you will discover in Hepsia are incredibly detailed and offer data about the nature of any attack, when it happened and from what IP address, the firewall rule that was triggered, and so on. We employ a group of commercial rules that are often updated, but sometimes our administrators include custom rules as well in order to efficiently protect the Internet sites hosted on our servers.

ModSecurity in Semi-dedicated Hosting

Any web program which you set up inside your new semi-dedicated hosting account will be protected by ModSecurity because the firewall comes with all our hosting plans and is switched on by default for any domain and subdomain which you add or create using your Hepsia hosting Control Panel. You shall be able to manage ModSecurity via a dedicated section in Hepsia where not simply could you activate or deactivate it fully, but you can also activate a passive mode, so the firewall will not block anything, but it shall still maintain a record of potential attacks. This normally requires only a mouse click and you'll be able to view the logs regardless of if ModSecurity is in passive or active mode through the same section - what the attack was and where it originated from, how it was handled, etc. The firewall uses 2 groups of rules on our web servers - a commercial one that we get from a third-party web security provider and a custom one which our administrators update personally as to respond to newly discovered risks as soon as possible.

ModSecurity in VPS Hosting

All virtual private servers that are set up with the Hepsia Control Panel feature ModSecurity. The firewall is installed and switched on by default for all domains which are hosted on the server, so there won't be anything special that you'll need to do to protect your Internet sites. It will take you just a mouse click to stop ModSecurity if needed or to turn on its passive mode so that it records what happens without taking any measures to stop intrusions. You'll be able to view the logs generated in active or passive mode from the corresponding section of Hepsia and discover more about the type of the attack, where it originated from, what rule the firewall employed to tackle it, etc. We use a mixture of commercial and custom rules in order to make certain that ModSecurity will block out as many threats as possible, hence boosting the security of your web applications as much as possible.

ModSecurity in Dedicated Web Hosting

All of our dedicated servers which are installed with the Hepsia hosting Control Panel feature ModSecurity, so any application you upload or set up shall be properly secured from the very beginning and you won't need to concern yourself with common attacks or vulnerabilities. An individual section inside Hepsia will allow you to start or stop the firewall for each and every domain or subdomain, or switch on a detection mode so that it records information regarding intrusions, but doesn't take actions to prevent them. What you shall find in the logs can help you to secure your sites better - the IP address an attack originated from, what site was attacked as well as how, what ModSecurity rule was triggered, etcetera. With this info, you could see if an Internet site needs an update, whether you should block IPs from accessing your hosting server, and so on. Aside from the third-party commercial security rules for ModSecurity which we use, our administrators add custom ones too whenever they find a new threat that is not yet a part of the commercial bundle.