Tag: Security

CPanel / WHM, Security

How to install APF (Advanced Policy Firewall) firewall on Linux server

How to install APF (Advanced Policy Firewall) firewall on Linux server “Advanced Policy Firewall (APF) is an IPTables(Netfilter) based firewall system designed around the essential needs of today’s Linux servers. The configuration is designed to be very informative and easy to follow. The management on a day-to-day basis is conducted from the command line with …

Apache, CPanel / WHM, Security

How to install mod_evasive on Linux server

How to install mod_evasive on Linux server Go to the below path. cd /usr/local/src Download the file using the below link: wget wget http://www.zdziarski.com/blog/wp-content/uploads/2010/02/mod_evasive_1.10.1.tar.gz Untar the file. tar xzf mod_evasive_1.10.1.tar.gz Go to the folder. cd mod_evasive Run the below command for the installation. apxs -cia mod_evasive20.c   You’ll then need to add the mod_evasive configuration …

CPanel / WHM, Security

How to install Linux Malware Detect (LMD)

How to install Linux Malware Detect (LMD) Maldet also known as Linux Malware Detect virus scanner for Linux. Go to the below path cd /usr/local/src/ Download the tar file using the below link: wget http://www.rfxn.com/downloads/maldetect-current.tar.gz Extract the file using the below command tar -xzf maldetect-current.tar.gz go to the maldet folder cd maldetect-* Now, run the …

CPanel / WHM, Security

Server security Tips and Tricks

Server security Tips and Tricks   1) Make Sure No Non-Root Accounts Have UID Set To 0 awk -F: ‘($3 == “0”) {print}’ /etc/passwd   2) World-Writable Files find /dir -xdev -type d \( -perm -0002 -a ! -perm -1000 \) -print Description : Anyone can modify world-writable file resulting into a security issue. Use …

Installation, Security

How to prevent or stop DOS or DDOS or SYN attack on linux server

How to prevent or stop DOS or DDOS or SYN attack on linux server If there are lots of hits coming from particular IP address then there is a chances of DDOS attack. Below are some tweak     settings  in the csf firewall for DDOS or SYN_ATTACK. First check hits are coming from which port. Mostly …