ModSecurity is a powerful web application layer firewall for Apache web servers. It monitors the entire HTTP traffic to a website without affecting its operation and when it discovers an intrusion attempt, it prevents it. The firewall furthermore keeps a more comprehensive log for the site visitors than any server does, so you shall manage to monitor what's going on with your Internet sites a lot better than if you rely simply on standard logs. ModSecurity employs security rules based on which it prevents attacks. For example, it detects whether someone is trying to log in to the administration area of a certain script multiple times or if a request is sent to execute a file with a specific command. In these situations these attempts set off the corresponding rules and the firewall blocks the attempts instantly, after that records detailed information about them within its logs. ModSecurity is among the best software firewalls on the market and it could easily protect your web apps against many threats and vulnerabilities, particularly if you don’t update them or their plugins regularly.
ModSecurity in Cloud Website Hosting
ModSecurity comes by default with all cloud website hosting packages which we provide and it'll be switched on automatically for any domain or subdomain that you add/create in your Hepsia hosting Control Panel. The firewall has 3 different modes, so you can activate and deactivate it with a click or set it to detection mode, so it shall maintain a log of all attacks, but it shall not do anything to stop them. The log for each of your sites shall include comprehensive information such as the nature of the attack, where it originated from, what action was taken by ModSecurity, and so forth. The firewall rules which we use are frequently updated and consist of both commercial ones that we get from a third-party security company and custom ones which our system administrators include in the event that they detect a new kind of attacks. This way, the sites that you host here will be a lot more protected with no action required on your end.