ModSecurity is a powerful web application layer firewall for Apache web servers. It monitors the entire HTTP traffic to a site without affecting its operation and if it detects an intrusion attempt, it blocks it. The firewall furthermore maintains a more detailed log for the site visitors than any server does, so you will be able to keep track of what is going on with your websites a lot better than if you rely merely on standard logs. ModSecurity uses security rules based on which it helps prevent attacks. For instance, it identifies whether somebody is trying to log in to the admin area of a certain script multiple times or if a request is sent to execute a file with a particular command. In these situations these attempts set off the corresponding rules and the firewall software hinders the attempts right away, and then records detailed details about them within its logs. ModSecurity is among the most effective software firewalls out there and it can easily protect your web applications against many threats and vulnerabilities, particularly if you don’t update them or their plugins often.

ModSecurity in Cloud Hosting

ModSecurity is provided with all cloud hosting servers, so if you choose to host your sites with our business, they'll be shielded from an array of attacks. The firewall is turned on as standard for all domains and subdomains, so there'll be nothing you'll need to do on your end. You shall be able to stop ModSecurity for any site if needed, or to switch on a detection mode, so all activity will be recorded, but the firewall will not take any real action. You shall be able to view detailed logs through your Hepsia CP including the IP where the attack came from, what the attacker wanted to do and how ModSecurity addressed the threat. As we take the security of our clients' sites very seriously, we employ a selection of commercial rules which we get from one of the leading companies that maintain such rules. Our administrators also add custom rules to ensure that your websites will be shielded from as many threats as possible.

ModSecurity in Semi-dedicated Servers

All semi-dedicated server packages which we offer come with ModSecurity and because the firewall is enabled by default, any Internet site that you create under a domain or a subdomain shall be protected immediately. An independent section in the Hepsia CP which comes with the semi-dedicated accounts is devoted to ModSecurity and it will allow you to stop and start the firewall for any site or enable a detection mode. With the last option, ModSecurity shall not take any action, but it'll still identify possible attacks and will keep all information inside a log as if it were fully active. The logs can be found within the very same section of the CP and they include details about the IP where an attack came from, what its nature was, what rule ModSecurity applies to recognize and stop it, etcetera. The security rules that we use on our web servers are a mix between commercial ones from a security business and custom ones made by our system admins. Therefore, we provide increased security for your web applications as we can protect them from attacks before security companies release updates for brand new threats.

ModSecurity in VPS Servers

All VPS servers which are offered with the Hepsia CP feature ModSecurity. The firewall is installed and activated by default for all domains which are hosted on the machine, so there shall not be anything special that you'll need to do to protect your sites. It'll take you simply a mouse click to stop ModSecurity if required or to activate its passive mode so that it records what goes on without taking any actions to prevent intrusions. You'll be able to see the logs created in active or passive mode through the corresponding section of Hepsia and find out more about the form of the attack, where it came from, what rule the firewall employed to take care of it, and so on. We employ a combination of commercial and custom rules so as to make sure that ModSecurity shall stop as many threats as possible, hence enhancing the security of your web apps as much as possible.

ModSecurity in Dedicated Servers

If you opt to host your sites on a dedicated server with the Hepsia CP, your web apps will be protected straight away since ModSecurity is provided with all Hepsia-based solutions. You shall be able to regulate the firewall without difficulty and if needed, you will be able to turn it off or enable its passive mode when it'll only maintain a log of what's taking place without taking any action to stop possible attacks. The logs that you can find in the very same section of the CP are very detailed and feature information about the attacker IP address, what site and file were attacked and in what way, what rule the firewall employed to stop the intrusion, etcetera. This info will allow you to take measures and enhance the security of your Internet sites even more. To be on the safe side, we use not just commercial rules, but also custom-made ones that our admins add every time they detect attacks which haven't yet been included inside the commercial pack.