ModSecurity is a powerful web application layer firewall for Apache web servers. It monitors the whole HTTP traffic to a website without affecting its operation and if it detects an intrusion attempt, it prevents it. The firewall furthermore maintains a more detailed log for the traffic than any web server does, so you will manage to keep an eye on what is going on with your Internet sites better than if you rely merely on standard logs. ModSecurity works with security rules based on which it helps prevent attacks. For instance, it identifies whether someone is trying to log in to the admin area of a particular script several times or if a request is sent to execute a file with a particular command. In these cases these attempts trigger the corresponding rules and the firewall software hinders the attempts in real time, and then records detailed information about them inside its logs. ModSecurity is amongst the most effective software firewalls out there and it can easily protect your web applications against many threats and vulnerabilities, especially in case you don’t update them or their plugins often.

ModSecurity in Shared Hosting

ModSecurity is available on all shared hosting web servers, so if you opt to host your websites with our business, they'll be shielded from an array of attacks. The firewall is turned on as standard for all domains and subdomains, so there shall be nothing you shall need to do on your end. You will be able to stop ModSecurity for any website if necessary, or to enable a detection mode, so that all activity shall be recorded, but the firewall won't take any real action. You shall be able to view comprehensive logs from your Hepsia CP including the IP where the attack came from, what the attacker wished to do and how ModSecurity addressed the threat. Since we take the safety of our customers' Internet sites seriously, we use a set of commercial rules which we get from one of the leading firms that maintain this type of rules. Our administrators also include custom rules to make certain that your Internet sites will be resistant to as many risks as possible.

ModSecurity in Semi-dedicated Hosting

ModSecurity is a part of our semi-dedicated hosting solutions and if you decide to host your websites with us, there shall not be anything special you'll need to do given that the firewall is switched on by default for all domains and subdomains that you include through your hosting Control Panel. If needed, you can disable ModSecurity for a particular website or switch on the so-called detection mode in which case the firewall shall still work and record info, but will not do anything to prevent possible attacks against your websites. Thorough logs shall be accessible within your Control Panel and you will be able to see which kind of attacks occurred, what security rules were triggered and how the firewall dealt with the threats, what Internet protocol addresses the attacks came from, etc. We employ 2 sorts of rules on our servers - commercial ones from a company which operates in the field of web security, and custom made ones that our administrators sometimes add to respond to newly discovered threats in a timely manner.

ModSecurity in VPS

All virtual private servers which are set up with the Hepsia CP include ModSecurity. The firewall is set up and turned on by default for all domains that are hosted on the server, so there will not be anything special that you shall have to do to protect your Internet sites. It will take you a click to stop ModSecurity if needed or to turn on its passive mode so that it records what happens without taking any steps to prevent intrusions. You shall be able to look at the logs generated in active or passive mode via the corresponding section of Hepsia and learn more about the form of the attack, where it originated from, what rule the firewall employed to take care of it, and so forth. We employ a combination of commercial and custom rules in order to make certain that ModSecurity shall block out as many threats as possible, hence boosting the security of your web applications as much as possible.

ModSecurity in Dedicated Hosting

When you opt to host your sites on a dedicated server with the Hepsia Control Panel, your web programs will be secured right from the start since ModSecurity is provided with all Hepsia-based solutions. You'll be able to regulate the firewall effortlessly and if needed, you will be able to turn it off or switch on its passive mode when it shall only maintain a log of what's happening without taking any action to stop possible attacks. The logs which you can find within the same section of the Control Panel are quite detailed and feature details about the attacker IP address, what website and file were attacked and in what ways, what rule the firewall employed to prevent the intrusion, etcetera. This info shall permit you to take measures and improve the security of your sites even more. To be on the safe side, we use not only commercial rules, but also custom-made ones which our administrators add every time they recognize attacks that have not yet been included inside the commercial pack.