ModSecurity
Discover what ModSecurity is, how it functions and just what it does in order to protect your Internet sites and applications.
ModSecurity is a plugin for Apache web servers which acts as a web app layer firewall. It is used to prevent attacks against script-driven Internet sites by using security rules that contain specific expressions. That way, the firewall can prevent hacking and spamming attempts and shield even Internet sites that are not updated regularly. For instance, multiple unsuccessful login attempts to a script administrator area or attempts to execute a certain file with the purpose to get access to the script will trigger particular rules, so ModSecurity shall block out these activities the minute it detects them. The firewall is very efficient as it monitors the entire HTTP traffic to a site in real time without slowing it down, so it could prevent an attack before any damage is done. It additionally maintains a very thorough log of all attack attempts which contains more information than typical Apache logs, so you could later examine the data and take additional measures to boost the security of your websites if necessary.
ModSecurity in Website Hosting
ModSecurity comes standard with all website hosting solutions which we provide and it'll be turned on automatically for any domain or subdomain which you add/create inside your Hepsia hosting CP. The firewall has 3 different modes, so you could activate and deactivate it with simply a mouse click or set it to detection mode, so it shall maintain a log of all attacks, but it shall not do anything to prevent them. The log for each of your sites will contain in-depth information including the nature of the attack, where it originated from, what action was taken by ModSecurity, etc. The firewall rules that we use are constantly updated and include both commercial ones that we get from a third-party security company and custom ones that our system admins include in case that they detect a new kind of attacks. In this way, the Internet sites which you host here will be far more protected without any action expected on your end.