Answer the question
In order to leave comments, you need to log in
How to protect your Centos 7.2 server from attacks?
Good afternoon.
I have my own web server based on Centos 7.2 + VestaCP . And now an online store based on OpenCart is running on it.
Today in the admin panel of the store in the list of visitors, I saw IP: 180.97.106.161 by clicking on it, I saw a picture of the form:
In which I saw a mention of Hackers and hacks.
By clicking on the link the user went to --> 180.163.113.82/check_pr
oxy
I saw the following code: {"proxy_type":"elite","remote_addr":"my ip"}
What does this mean? And how to protect your server from hackers? At least write some basic recommendations
.
Answer the question
In order to leave comments, you need to log in
If you are interested, then any more or less decent attack will flood your channel and no iptables will help. Therefore, if you suspect an attack, it is better to get under protection so that the site does not suffer. Fortunately, now there are enough options with a choice of protection: SkyparkCDN , Stormwall , Selectel , DDoS-Guard .
At least cloudflare + DDoSDeflate + failban, easy enough to set up + full of instructions.
It was some user from under the proxy. Not necessarily he was a hacker, this proxy could be used by anyone.
Basic recommendations for protection:
1) Update cms and plugins to the latest version
2) Install plugins for security
3) Check permissions on the web server folders, remove unnecessary ones for writing and executing
4) Check online utilities https://detectify.com, https ://metascan.ru, https://acunetix.com for vulnerabilities
Наймите сис-админа, поскольку сами вероятно в этом ничего не понимаете.
А, что бы самостоятельно выполнить все настройки необходимо получить знания и опыт в администрировании, но на это к сожалению Вам потребуется значительное время, не один месяц.
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question