apache mod_security and snort and login-authentication strict SSH serverkey = password login disabled and when ever possible NO member login then fail2ban and mod_evasive there might be many more recommendations - just use search function in this forum to find more tips and help
Don’t forget password security. Its usually the weakest link Remember - encrypt encrypt encrypt. 1. Make sure all passwords saved on the server is encrypted 2. Make sure when you login to control panel, FTP, or any thing else to manage your site that it is through an encrypted channel!