Guys, i want some suggestions on how to protect an linux dedicated server from bot attack. Im using linux server with cPanel, using CSF firewall + DOS Deflate. It would be great to have your opinions and experience.
Not sure of exactly what you mean by bot attack but have you turned on your background process killer?
It's going to depend on the size of the attack versus your hardware capabilities. To start with you'll need to know the type of attack. Which port is it attacking? How many IPs are involved (rough estimate)? Does your firewall allow for a good ruleset? Have you also tried to contact the datacenter or your host?
You can't. There's no way to protect yourself completely. Your best bet is to move to a host that specializes in DDoS mitigation. But, even that won't always work. It depends on the size and scale of the attack. If it's small, and just slowing down your machine, you can block some IPs in the firewall and be ok. If it's bigger, you'll need to get your host to do some configuration on their end.
chrootkit will scan for rootkits, but has nothing to do with protecting from DDoS attacks originated from botnets.