Go Back   HostGator Peer Support Forums > HostGator Announcements > General Announcements

Notices

Reply
 
Thread Tools
  #1  
Old 09-29-2007, 09:54 AM
sfindep sfindep is offline
Hatchling Croc
 
Join Date: Sep 2007
Posts: 3
Question Hacking measures

I've just made the jump to a dedicated server. In addition to my newspaper's increasingly complex Web site and some development of software to sell and host for other newspapers, we'll be hosting some small sites for clients and advertisers.

I am just becoming haltingly familiar with Unix, mostly by way of Mac OSX. The terminal doesn't scare me, but I'm more determined than proficient. Realizing I have a lot to learn before this can happen, I nonetheless want to do the best job I can at being a good steward for this server, my own businesses, and my customers.

Now that I'm receiving daily server logs, I'm disturbed at the sheer number of hacking attempts. My log from yesterday was endless; most of the attempts were from the same two IP addresses.

I submitted a ticket last week and got some advice to run this command from the terminal:

route add ((offending IP address)) reject

One of the offending IP addresses from this week returned last night and made hundreds of attempts, which makes me wonder how effective that command is.

Does anyone out there have some practical advice for keeping a dedicated server secure in 2007?

Many thanks in advance.
Reply With Quote
  #2  
Old 09-29-2007, 09:57 AM
gtgeorge's Avatar
gtgeorge gtgeorge is offline
Emperor Croc
 
Join Date: Mar 2005
Posts: 2,258
Default Re: Hacking measures

Quote:
Originally Posted by sfindep View Post
I've just made the jump to a dedicated server.

Now that I'm receiving daily server logs, I'm disturbed at the sheer number of hacking attempts. My log from yesterday was endless; most of the attempts were from the same two IP addresses.

I submitted a ticket last week and got some advice to run this command from the terminal:

route add ((offending IP address)) reject

One of the offending IP addresses from this week returned last night and made hundreds of attempts, which makes me wonder how effective that command is.

Does anyone out there have some practical advice for keeping a dedicated server secure in 2007?

Many thanks in advance.
Welcome to an inside look at the internet I too was disturbed when seeing what actually goes on.
Did you have the config server package installed? If not that is my first recommendation
__________________
best regards,
George
Reply With Quote
  #3  
Old 09-29-2007, 10:28 AM
Sam Sam is offline
Emperor Croc
 
Join Date: Jan 2007
Location: /bin/false
Posts: 3,059
Default Re: Hacking measures

Install CSF & LFD (www.configserver.com)
Reply With Quote
  #4  
Old 09-29-2007, 11:57 AM
nexia's Avatar
nexia nexia is offline
Baby Croc
 
Join Date: Aug 2005
Location: Quebec city, Ca
Posts: 92
Default Re: Hacking measures

hum, actually, did you look at the forum you posted in ?!... this is not an announcement but a support request... you may not receive good support here...
Reply With Quote
  #5  
Old 09-29-2007, 12:52 PM
ghpk ghpk is offline
King Croc
 
Join Date: Nov 2006
Posts: 1,238
Default Re: Hacking measures

Quote:
Originally Posted by nexia View Post
hum, actually, did you look at the forum you posted in ?!... this is not an announcement but a support request... you may not receive good support here...
may be he's still in awaiting activation status so he could not post in dedicated support forum yet
Reply With Quote
  #6  
Old 09-29-2007, 02:37 PM
sfindep sfindep is offline
Hatchling Croc
 
Join Date: Sep 2007
Posts: 3
Default Re: Hacking measures

Ah, that's exactly what happened. I chose the least inappropriate topic, but still raised an eyebrow. Will I get yelled at for cross-posting once my account is active?
Reply With Quote
  #7  
Old 09-29-2007, 02:37 PM
sfindep sfindep is offline
Hatchling Croc
 
Join Date: Sep 2007
Posts: 3
Default Re: Hacking measures

Thanks, George; I'll check out config server.
Reply With Quote
  #8  
Old 09-29-2007, 02:47 PM
chaloupe's Avatar
chaloupe chaloupe is offline
King Croc
 
Join Date: Nov 2004
Location: Moncton, New-Brunswick, Canada
Posts: 1,167
Default Re: Hacking measures

I've used ConfigServer on every server and VPS we have and it did change those box from being unstable to extremely available systems uptime.

There's a lot down with their configuration but it's the one of the best thing to do.

I would suggest the cPanel Service Package+ MailScanner at $125. If you are not able to have it right away since of the prices for the dedicated server and ConfigServer service right away, I would suggest to at least put the firewall ( http://configserver.com/cp/csf.html ). It's free and easy to install.

Best Regards,
__________________
Chaloupe
www.jbwseries.com

Reply With Quote
  #9  
Old 09-29-2007, 03:32 PM
slapshotw's Avatar
slapshotw slapshotw is offline
Veteran Croc
 
Join Date: Jun 2006
Posts: 5,163
Default Re: Hacking measures

Definitely spend the money on the configserver package. It's the best $125 you'll ever spend and will shut down those hack attempts quickly!
__________________
Follow me on Twitter! http://twitter.com/mrw
Reply With Quote
Reply

Bookmarks

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off

Forum Jump

All times are GMT -6. The time now is 11:17 PM.

 
Forum SEO by Zoints