ModSecurity is a highly effective firewall for Apache web servers which is employed to prevent attacks towards web apps. It monitors the HTTP traffic to a certain Internet site in real time and prevents any intrusion attempts as soon as it discovers them. The firewall relies on a set of rules to accomplish that - for example, trying to log in to a script admin area unsuccessfully several times triggers one rule, sending a request to execute a particular file which could result in getting access to the website triggers a different rule, etcetera. ModSecurity is amongst the best firewalls available on the market and it will protect even scripts which are not updated often since it can prevent attackers from employing known exploits and security holes. Quite comprehensive info about each intrusion attempt is recorded and the logs the firewall keeps are considerably more detailed than the conventional logs provided by the Apache server, so you may later analyze them and determine if you need to take additional measures so as to enhance the protection of your script-driven websites.

ModSecurity in Shared Web Hosting

ModSecurity can be found with each shared web hosting package that we offer and it is switched on by default for any domain or subdomain which you include through your Hepsia CP. In case it disrupts any of your applications or you would like to disable it for any reason, you shall be able to accomplish that through the ModSecurity area of Hepsia with simply a mouse click. You can also activate a passive mode, so the firewall will detect possible attacks and maintain a log, but shall not take any action. You can see comprehensive logs in the very same section, including the IP where the attack came from, exactly what the attacker tried to do and at what time, what ModSecurity did, and so on. For optimum security of our clients we use a set of commercial firewall rules combined with custom ones which are included by our system admins.

ModSecurity in Semi-dedicated Hosting

All semi-dedicated hosting packages which we offer feature ModSecurity and since the firewall is turned on by default, any website you set up under a domain or a subdomain will be protected right from the start. A separate section in the Hepsia CP that comes with the semi-dedicated accounts is devoted to ModSecurity and it will permit you to stop and start the firewall for any Internet site or switch on a detection mode. With the last mentioned, ModSecurity will not take any action, but it will still recognize possible attacks and shall keep all info inside a log as if it were 100% active. The logs can be found inside the very same section of the CP and they offer info about the IP where an attack came from, what its nature was, what rule ModSecurity applies to identify and stop it, and so on. The security rules we use on our web servers are a mix of commercial ones from a security firm and custom ones made by our system administrators. As a result, we provide increased security for your web programs as we can defend them from attacks before security corporations release updates for completely new threats.

ModSecurity in VPS Hosting

All virtual private servers that are offered with the Hepsia Control Panel feature ModSecurity. The firewall is set up and turned on by default for all domains which are hosted on the web server, so there won't be anything special which you will have to do to protect your sites. It shall take you just a mouse click to stop ModSecurity if needed or to activate its passive mode so that it records what happens without taking any measures to stop intrusions. You will be able to view the logs generated in passive or active mode through the corresponding section of Hepsia and learn more about the form of the attack, where it came from, what rule the firewall used to handle it, etc. We employ a mix of commercial and custom rules so as to make certain that ModSecurity shall stop as many risks as possible, thus increasing the security of your web programs as much as possible.

ModSecurity in Dedicated Web Hosting

All our dedicated servers which are installed with the Hepsia hosting CP feature ModSecurity, so any app that you upload or install will be protected from the very beginning and you won't have to worry about common attacks or vulnerabilities. An independent section within Hepsia will permit you to start or stop the firewall for every domain or subdomain, or switch on a detection mode so that it records details about intrusions, but doesn't take actions to prevent them. What you shall find in the logs shall enable you to to secure your Internet sites better - the IP an attack came from, what site was attacked and exactly how, what ModSecurity rule was triggered, and so on. With this data, you could see if an Internet site needs an update, if you ought to block IPs from accessing your hosting server, etcetera. In addition to the third-party commercial security rules for ModSecurity that we use, our admins add custom ones as well if they discover a new threat which is not yet a part of the commercial bundle.