Website Protection plan

Discussion in 'Site & Server Administration' started by Applications developer, Oct 23, 2009.

  1. #1
    which measures can we take to protect our website from hackers.
     
    Applications developer, Oct 23, 2009 IP
  2. hans

    hans Well-Known Member

    Messages:
    2,923
    Likes Received:
    126
    Best Answers:
    1
    Trophy Points:
    173
    #2
    apache mod_security
    and
    snort
    and login-authentication strict SSH serverkey = password login disabled
    and when ever possible NO member login

    then
    fail2ban
    and
    mod_evasive

    there might be many more recommendations - just use search function in this forum to find more tips and help
     
    hans, Oct 23, 2009 IP
  3. SecureCP

    SecureCP Guest

    Messages:
    226
    Likes Received:
    2
    Best Answers:
    0
    Trophy Points:
    0
    #3
    ConfigServer Security & Firewall
     
    SecureCP, Oct 23, 2009 IP
  4. WFgirls

    WFgirls Peon

    Messages:
    33
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #4
    you can Config the Server Security & Firewall on your hosting :p
     
    WFgirls, Jan 14, 2012 IP
  5. Hostingder

    Hostingder Peon

    Messages:
    251
    Likes Received:
    4
    Best Answers:
    0
    Trophy Points:
    0
    #5
    Nice thread, :p Keep the tips and suggestions coming this will come in handy to me also...
     
    Hostingder, Jan 15, 2012 IP
  6. SolidShellSecurity

    SolidShellSecurity Banned

    Messages:
    262
    Likes Received:
    3
    Best Answers:
    1
    Trophy Points:
    45
    #6
    We use a lot of custom developed scripts and monitoring options.
     
    SolidShellSecurity, Jan 15, 2012 IP
  7. !bc

    !bc Peon

    Messages:
    31
    Likes Received:
    0
    Best Answers:
    1
    Trophy Points:
    0
    #7
    Don’t forget password security. Its usually the weakest link Remember - encrypt encrypt encrypt.

    1. Make sure all passwords saved on the server is encrypted
    2. Make sure when you login to control panel, FTP, or any thing else to manage your site that it is through an encrypted channel!
     
    !bc, Jan 16, 2012 IP