ModSecurity is a highly effective web application layer firewall for Apache web servers. It monitors the entire HTTP traffic to an Internet site without affecting its performance and in case it discovers an intrusion attempt, it blocks it. The firewall additionally keeps a more thorough log for the website visitors than any server does, so you shall manage to monitor what's going on with your websites better than if you rely merely on conventional logs. ModSecurity works with security rules based on which it prevents attacks. For instance, it recognizes if anyone is attempting to log in to the admin area of a given script several times or if a request is sent to execute a file with a specific command. In such circumstances these attempts trigger the corresponding rules and the firewall hinders the attempts right away, and then records comprehensive details about them in its logs. ModSecurity is among the most effective software firewalls on the market and it could easily protect your web applications against thousands of threats and vulnerabilities, especially in case you don’t update them or their plugins frequently.
ModSecurity in Shared Hosting
ModSecurity comes by default with all shared hosting solutions that we offer and it'll be turned on automatically for any domain or subdomain which you add/create within your Hepsia hosting Control Panel. The firewall has 3 different modes, so you'll be able to switch on and disable it with only a mouse click or set it to detection mode, so it will maintain a log of all attacks, but it shall not do anything to stop them. The log for any of your websites shall include comprehensive info which includes the nature of the attack, where it came from, what action was taken by ModSecurity, etcetera. The firewall rules which we use are frequently updated and incorporate both commercial ones we get from a third-party security firm and custom ones that our system admins include in the event that they detect a new type of attacks. That way, the sites you host here will be much more protected without any action required on your end.