
Security - The Importance of Solid Audit Practices
Security across the Internet has become a growing concern from small to medium business to major corporations. Warding off threats from Internet Criminals has become an expensive and time consuming necessity of doing business across Communications Networks.
The cost of providing high level security for IT Infrastructers can easily surpass thousands of dollars monthly and depending on the type of business can be in the several millions annually.
We monitor our systems, whether leased or owned, constantly and take immediate action when security updates of any kind are needed. Our approach is proactive and not reactive.
Net Locations has also aligned itself with a few of the Internet's most professional security experts on the application level. Website owners need to be sure that their applications are hacker proof or risk losing data and having their sites compromised in variety of ways by unscrupulous Cyber Criminals.
On this page we provide a list of the many services we provide to keep our systems safe and to help keep your websites guarded from compromise. We also discuss some of your responsibilities with regards to securing your site. If you need a security audit for your server or wish to scan your critical apps for vulnerabilities, we have services available. More information is available on individual services pages throughout the site.
| ModSecurity | An Apache module is a security layer in Apache that helps prevent exploitation of vulnerable web scripts. We install and configure the cPanel and HSphere mod_security module for Apache v1, v2 and LiteSpeed. We regularly update the software itself and the definitions. ModSecurity is a server script that we update and maintain on a regular basis. All LAMP Hosting Plans (LiteSpeed-cPanel and Hsphere) are protected by ModSecurity. |
| Managed Firewalls | Our VHS Cloud Plans offer hardware firewall solutions that offer a near enterprise level of security to help protect all sites hosted within the cloud. For small to medium business sites this offers a savings over having to manange or outsource a firewall. Similar firewalls protect each server in our clustered and other dedicated hosting plans. Microsofttm Medium Trust is used exclusively for Windows Hosting within the VHS Cloud Environment. |
| DDoS Protection On The Cloud |
Preventiertm is the unique, proactive DDoS prevention program created by Rackspace to ensure unmatched network protection and performance for our customers. No other hosting provider has combined three such disparate technologies to create such an all-encompassing protection system for their network. From network-wide packet scanning through granular traffic analysis right down to server-level anomaly detection, Preventier's three layers of detection identify and filter hostile traffic 24x7x365. The Hsphere Cluster employs similar DDoS protection systems. LiteSpeed-cPanel are protected at the Network Level and each server employs Port Flooding Detection - Per IP, per Port connection flooding detection and mitigation to help block DDoS attacks. Top Layer appliances from Corero are used in some of our dedicated server colos. |
| Server Hardening and Optimization | All of our owned or leased systems and servers are subject to 'Best Practices' hardening and optimization. It isn't a matter of overly comprehensive; it's a matter of quality, not quantity. We do not over our servers (or yours for that matter) with useless and unproven software. We start with proactive patch management. Keeping servers patched with the latest updates is critical from the network level to the application layer. Key services are listed below:
|
| Monitoring | We provide advanced monitoring for our servers and systems on a 24/7/365 basis with proactive response to any downed services. In addition we monitor server software - PHP, MySQL, MS SQL, MTA's and the like. |
| ModEvasive | mod_evasive is an evasive maneuvers module for Apache to provide evasive action in the event of an HTTP DoS or DDoS attack or brute force attack. It is also designed to be a detection and network management tool, and can be easily configured to talk to ipchains, firewalls, routers, and etcetera. mod_evasive presently reports abuses via email and syslog facilities.
Detection is performed by creating an internal dynamic hash table of IP Addresses and URIs, and denying any single IP address from any of the following:
This module instantiates for each listener individually, and therefore has a built-in cleanup mechanism and scaling capabilities. Because of this per-child design, legitimate requests are never compromised (even from proxies and NAT addresses) but only scripted attacks. Even a user repeatedly clicking on 'reload' should not be affected unless they do it maliciously. mod_evasive is fully tweakable through the Apache configuration file, easy to incorporate into your web server, and easy to use. Thanks to Jonathan Zdziarski for the above detailed explanation. |
| What can you do to practice good security? | Keeping your servers, sites and computer system secure is a comprehensive topic and is a book not a paragraph. However, below are some pointers that will serve you well:
|
