ModSecurity is a highly effective firewall for Apache web servers which is employed to prevent attacks toward web apps. It monitors the HTTP traffic to a specific website in real time and prevents any intrusion attempts the moment it identifies them. The firewall uses a set of rules to accomplish that - for example, trying to log in to a script admin area without success a few times triggers one rule, sending a request to execute a certain file that could result in accessing the site triggers a different rule, etcetera. ModSecurity is among the best firewalls out there and it will preserve even scripts which are not updated regularly because it can prevent attackers from using known exploits and security holes. Very thorough information about every single intrusion attempt is recorded and the logs the firewall keeps are much more comprehensive than the regular logs created by the Apache server, so you could later examine them and decide if you need to take more measures so as to enhance the safety of your script-driven websites.
ModSecurity in Cloud Website Hosting
ModSecurity comes standard with all cloud website hosting plans which we offer and it will be turned on automatically for any domain or subdomain which you add/create in your Hepsia hosting CP. The firewall has 3 different modes, so you can activate and disable it with just a click or set it to detection mode, so it will maintain a log of all attacks, but it will not do anything to prevent them. The log for each of your sites shall contain detailed information such as the nature of the attack, where it came from, what action was taken by ModSecurity, and so forth. The firewall rules that we use are frequently updated and include both commercial ones we get from a third-party security company and custom ones that our system administrators add in the event that they detect a new type of attacks. This way, the sites which you host here shall be way more protected without any action needed on your end.