ModSecurity in Shared Hosting
We offer ModSecurity with all shared hosting solutions, so your Internet apps shall be resistant to destructive attacks. The firewall is activated as standard for all domains and subdomains, but in case you would like, you shall be able to stop it using the respective part of your Hepsia CP. You could also activate a detection mode, so ModSecurity shall keep a log as intended, but shall not take any action. The logs that you'll discover within Hepsia are very detailed and offer data about the nature of any attack, when it took place and from what IP address, the firewall rule that was triggered, etc. We use a set of commercial rules that are frequently updated, but sometimes our administrators add custom rules as well so as to efficiently protect the websites hosted on our machines.
ModSecurity in Semi-dedicated Hosting
We've incorporated ModSecurity by default within all semi-dedicated hosting products, so your web apps shall be protected the instant you install them under any domain or subdomain. The Hepsia Control Panel that is included with the semi-dedicated accounts shall permit you to switch on or disable the firewall for any website with a click. You will also be able to turn on a passive detection mode in which ModSecurity shall maintain a log of possible attacks without really stopping them. The detailed logs contain the nature of the attack and what ModSecurity response this attack activated, where it came from, etc. The list of rules that we employ is constantly updated in order to match any new threats that may appear on the Internet and it features both commercial rules that we get from a security corporation and custom-written ones that our admins include in case they find a threat that's not present inside the commercial list yet.
ModSecurity in VPS Hosting
ModSecurity is provided with all Hepsia-based virtual private servers we offer and it shall be switched on automatically for any new domain or subdomain you add on the server. This way, any web application you install shall be protected right away without doing anything personally on your end. The firewall can be handled from the section of the Control Panel that bears the same name. This is the place whereyou'll be able to disable ModSecurity or let its passive mode, so it won't take any action against threats, but will still maintain a comprehensive log. The recorded info is available within the same section as well and you shall be able to see what IPs any attacks came from so that you stop them, what the nature of the attempted attacks was and in accordance with what security rules ModSecurity reacted. The rules we use on our servers are a blend between commercial ones which we obtain from a security firm and custom ones that are included by our administrators to enhance the protection of any web apps hosted on our end.
ModSecurity in Dedicated Web Hosting
All our dedicated servers which are installed with the Hepsia hosting Control Panel include ModSecurity, so any app you upload or install will be properly secured from the very beginning and you'll not need to bother about common attacks or vulnerabilities. A separate section in Hepsia will allow you to start or stop the firewall for each and every domain or subdomain, or activate a detection mode so that it records info about intrusions, but doesn't take actions to prevent them. What you shall see in the logs can easily allow you to to secure your sites better - the IP address an attack came from, what website was attacked and how, what ModSecurity rule was triggered, etcetera. With this info, you could see whether a site needs an update, if you need to block IPs from accessing your hosting server, and so forth. On top of the third-party commercial security rules for ModSecurity that we use, our administrators add custom ones as well whenever they discover a new threat which is not yet in the commercial bundle.
