Performing IP Filtering Through cPanel – A Brief Tutorial



web hosting

Security is something that nearly every webmaster has the need for, but not every webmaster knows how to pursue effectively the appropriate security measures.  Given the craftiness of the hacker world, it can seem to the novice an unwinnable fight where they just have to accept a certain amount of break-ins as a sort of collateral damage.

While it is good to understand that it’s impossible to make a lock that can’t be picked, this doesn’t mean that you should take frequent security breaches as the norm.  With just a little bit of education and effort, the untrained webmaster can lock down their site to levels that it would take extreme efforts to break.  This brief tutorial will focus specifically on how to use cPanel to filter the IP addresses that can access your web site, a step that, by itself, can keep a large percentage of attacks from even making it to your site.

IP Filtering – easy to do…

To filter an IP address or block of IP addresses from accessing your site using cPanel is simple.  In the Security section near the bottom of your cPanel main page you will see an icon labeled “IP Deny Manager”.  Click on it and you’ll be at a page where you can add new restrictions, see your current ones, and remove any existing ones.  The page lists the appropriate formats (don’t bother with the CIDR format: it doesn’t do anything you can’t do any easier way).

Now, if you know how to block IP addresses, a more important question comes: what addresses to you block?  If you are getting a wave of attacks from a single IP address, the choice of course is simple.  But what do you do if they are coming from a number of IP addresses?  The short answer is this: block a range if it feels right, but don’t go overboard.

Let’s say that you are getting attacks from 212.56.24.X, where X is variable, and nothing else from that class C (an IP address format is Class A.Class B.Class C.Class D).  Then, blocking everything from 212.56.24 should be safe.  But let’s say they are all from 212.56.  You do some research and see that this is a university Class B and there are plenty of safe hits from those addresses.  Of course, a college is going to have a few bored hackers.  Taking down all of those addresses is overkill and will negatively impact your traffic.

Find the right middle ground

It’s rare that you are going to want to restrict anything more than a Class C.  In general, you’re not going to want to restrict anything more than you have to.  Use trial and error: block what you need to and, if the site continues to get hammered, modify and expand your rules.  Then, once it feels like you might have scared them away, remove the blocks, keeping a close eye for 24-72 hours afterwards to make sure that they don’t start up again.  Also, be sure to let your web host know if the attack is particularly vicious: they might want to filter the bad IP addresses on a network level.

IP Filtering by itself will not solve all of your security problems: no one method will.  But it will ensure the bulk of the worst attacks will be filtered away from you so you can focus more on other things.

Tags: , , , ,

Is Linux Overtaking Windows Web Hosting?

linux-windows-hosting

Web hosting has become an integral part of online businesses. Adding to the significant role that a good web hosting provider plays in one’s online success, it becomes very important to be smart and opt for the best possible web hosting option. The...

Sep 6th, 2011 Read more

Secure Shell Security Tips

web hosting

Secure Shell or SSH is a security measure that was designed to protect websites from external threats. In the past, users would connect to their servers using Telnet. Now that servers a no longer just down the hall, SSH adds an extra layer of encryption...

Aug 4th, 2011 Read more

Security for Mobile Applications

web hosting

Mobile applications have developed into one of the most popular trends in the technology sector. However, this has come at a huge price. The quick rise in acceptance equates to businesses rushing applications to the market without extensive security testing....

Aug 2nd, 2011 Read more

Is SSL Essential for eCommerce Sites?

web hosting

As the number of eCommerce websites grows, the security software must improve to protect webmasters from hackers acquiring sensitive customer information. One such technology is Secure Sockets Layer (SSL) which permits the site administrator to transfer...

Jul 29th, 2011 Read more

LulzSec’s Hacking Career Slated to End

web hosting

Well-known Internet mayhem group LulzSec recently announced to its followers that it will cease its campaign of web-based attacks. The group implemented numerous DDoS (Distributed Denial of Service) attacks on a variety of targets during its 50-day spree...

Jul 22nd, 2011 Read more

How to Combat a DDoS Attack

web hosting

Companies with a web presence can expect to experience a DDoS (Distributed Denial-of-Service) attack at any given time without prior warning.  It isn’t a matter of if; it’s a matter of when.  DDoS are a result of an overwhelming demand of server...

Jul 21st, 2011 Read more

Five Reasons to Choose VPS

web hosting

Virtual private servers (VPS), or virtual dedicated servers, offer users many advantages when compared to other hosting platforms when launching and maintaining a functional website.  The benefits of a private hosting environment offer website owners...

Jun 21st, 2011 Read more

A Look at Security in the Cloud

web hosting

With the recent outage of the Amazon EC2 network and the data breach of the Sony PlayStation Network, many experts and customers are wondering if security is a larger issue in cloud computing than any other type of hosting. The answer is no, cloud services...

May 18th, 2011 Read more

Using Captcha Scripts to Prevent Spam

web hosting

Security is perhaps one of the most important aspects of a web hosting plan, especially for webmasters that conduct a significant volume of e-commerce on a daily basis. A single security lapse could lead to widespread data loss, site downtime, slow loading...

Apr 13th, 2011 Read more

Top Five Drawbacks to Shared Hosting Services

web hosting

Although shared hosting is the most popular type, there are also many drawbacks which cause hosting customers to look elsewhere. With other types of hosting available such as dedicated hosting, multiple domain hosting and co-location hosting, customers...

Aug 4th, 2010 Read more

Page 2 of 41234

Stay in Touch with the Geeks

Our Community

Facebook
2276 Fans
Twitter
1423 Followers
FeedBurner
59 Subscribers

Submit News

Do you have an exciting story and want the world to hear it?

Submit a Story

  • 15K monthly visitors
  • PageRank 6
  • Alexa 11,000