{"id":17875,"date":"2019-04-29T03:47:17","date_gmt":"2019-04-28T19:47:17","guid":{"rendered":"https:\/\/www.exabytes.sg\/blog\/?p=17875"},"modified":"2023-06-12T11:18:49","modified_gmt":"2023-06-12T03:18:49","slug":"cpanel-linux-server-security-practices","status":"publish","type":"post","link":"https:\/\/www.exabytes.sg\/blog\/cpanel-linux-server-security-practices\/","title":{"rendered":"cPanel Linux Server Security Practices"},"content":{"rendered":"\r\n<figure class=\"wp-block-image\"><img data-recalc-dims=\"1\" decoding=\"async\" class=\"alignnone wp-image-17876\" src=\"https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/1200x628-cPanel-Linux-server-blog.jpg?resize=696%2C364&#038;ssl=1\" alt=\"cpanel Linux Server\" width=\"696\" height=\"364\" srcset=\"https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/1200x628-cPanel-Linux-server-blog.jpg?resize=1024%2C536&amp;ssl=1 1024w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/1200x628-cPanel-Linux-server-blog.jpg?resize=300%2C157&amp;ssl=1 300w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/1200x628-cPanel-Linux-server-blog.jpg?resize=768%2C402&amp;ssl=1 768w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/1200x628-cPanel-Linux-server-blog.jpg?resize=696%2C364&amp;ssl=1 696w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/1200x628-cPanel-Linux-server-blog.jpg?resize=1068%2C559&amp;ssl=1 1068w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/1200x628-cPanel-Linux-server-blog.jpg?resize=803%2C420&amp;ssl=1 803w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/1200x628-cPanel-Linux-server-blog.jpg?resize=218%2C114&amp;ssl=1 218w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/1200x628-cPanel-Linux-server-blog.jpg?w=1200&amp;ssl=1 1200w\" sizes=\"(max-width: 696px) 100vw, 696px\" \/><\/figure>\r\n\r\n\r\n\r\n<p>Everyone knows it is easy to have their servers attacked, or harmed by a malware attack, a DDoS attack or other cpanel linux server security threats.\u00a0<\/p>\r\n\r\n\r\n\r\n<p>Now the question is, how can we avoid attacks targeted at Linux VPS and Servers?<br \/>Let us guide you with some basic practices to keep your server secure and defend against unknown security threats..<\/p>\r\n\r\n\r\n\r\n<p><strong>Check out some of the important practices:<\/strong><\/p>\r\n\r\n\r\n\r\n<h2><strong>1) Check cPanel version<\/strong><\/h2>\r\n<p>As always, you are encouraged to check the cPanel version you are currently using. There are 3 ways to check it:<\/p>\r\n\r\n\r\n\r\n<p>a) Access SSH and use cPanel command: \u00a0\/usr\/local\/cpanel\/cpanel -V<\/p>\r\n\r\n\r\n\r\n<p>*Not sure how to access SSH? See\u00a0<a href=\"https:\/\/support.exabytes.sg\/en\/support\/solutions\/articles\/14000100153-how-to-connect-to-a-linux-server-using-ssh-\" rel=\"noopener\">HERE<\/a>\u00a0<\/p>\r\n\r\n\r\n\r\n<p>b) Other than accessing using command, you can access SSH and view the version file to know your cPanel version: cat \/usr\/local\/cpanel\/version<\/p>\r\n\r\n\r\n\r\n<p>c) Access WHM and view the version of cPanel via the WHM Dashboard.<\/p>\r\n\r\n\r\n\r\n<figure class=\"wp-block-image\"><img data-recalc-dims=\"1\" decoding=\"async\" class=\"alignnone wp-image-17877\" src=\"https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/Auto2.png?resize=696%2C81&#038;ssl=1\" alt=\"WHM Dashboard\" width=\"696\" height=\"81\" srcset=\"https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/Auto2.png?resize=1024%2C119&amp;ssl=1 1024w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/Auto2.png?resize=300%2C35&amp;ssl=1 300w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/Auto2.png?resize=768%2C89&amp;ssl=1 768w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/Auto2.png?resize=696%2C81&amp;ssl=1 696w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/Auto2.png?resize=1068%2C124&amp;ssl=1 1068w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/Auto2.png?resize=218%2C25&amp;ssl=1 218w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/Auto2.png?w=1392&amp;ssl=1 1392w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/Auto2.png?w=2088&amp;ssl=1 2088w\" sizes=\"(max-width: 696px) 100vw, 696px\" \/><\/figure>\r\n\r\n\r\n\r\n<p>&nbsp;<\/p>\r\n<h2><strong>2) Check if \u201cAuto-Update\u201d is enabled<\/strong><\/h2>\r\n<p>Enable \u201cAutomatic\u201d so that you can always get the latest updates. Simply follow the below sequence to enable it.<\/p>\r\n\r\n\r\n\r\n<p>Log in WHM &gt; Update Preferences &gt; Daily Updates &gt; Automatic<\/p>\r\n\r\n\r\n\r\n<figure class=\"wp-block-image\"><img data-recalc-dims=\"1\" decoding=\"async\" class=\"alignnone wp-image-17878\" src=\"https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/Auto1.png?resize=696%2C258&#038;ssl=1\" alt=\"WHM cpanel\" width=\"696\" height=\"258\" srcset=\"https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/Auto1.png?resize=1024%2C380&amp;ssl=1 1024w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/Auto1.png?resize=300%2C111&amp;ssl=1 300w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/Auto1.png?resize=768%2C285&amp;ssl=1 768w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/Auto1.png?resize=696%2C258&amp;ssl=1 696w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/Auto1.png?resize=1068%2C396&amp;ssl=1 1068w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/Auto1.png?resize=1131%2C420&amp;ssl=1 1131w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/Auto1.png?resize=218%2C81&amp;ssl=1 218w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/Auto1.png?w=1196&amp;ssl=1 1196w\" sizes=\"(max-width: 696px) 100vw, 696px\" \/><\/figure>\r\n\r\n\r\n\r\n<p>&nbsp;<\/p>\r\n<h2><strong>3) Install additional security features\/plugins to protect your VPS\/Server.<\/strong><\/h2>\r\n\r\n\r\n\r\n<p><strong>a) CloudLinux<\/strong><br \/>CloudLinux essentially creates a virtual environment for each individual account and protect your server environment from symlink attack.<\/p>\r\n\r\n\r\n\r\n<p>For the installation steps, please refer\u00a0<a href=\"https:\/\/www.cloudlinux.com\/getting-started-with-cloudlinux-os\/39-installing-cloudlinux-os\/922-installing-on-centos-server-with-cpanel\" rel=\"noopener\">HERE<\/a>:<\/p>\r\n\r\n\r\n\r\n<p>Also, you can install CageFS (Part of CloudLinux) for additional protection.<\/p>\r\n\r\n\r\n\r\n<p>CageFS allows the availability of safe only binaries to users while restricting users to see server configuration files.<\/p>\r\n\r\n\r\n\r\n<p>For installation steps, please refer\u00a0<a href=\"https:\/\/docs.cloudlinux.com\/shared\/cloudlinux_os_components\/#cagefs\" rel=\"noopener\">HERE<\/a><\/p>\r\n\r\n\r\n\r\n<p>***CageFS will automatically detect and configure all necessary files for cPanel.<\/p>\r\n\r\n\r\n\r\n<p><strong>b) \u00a0Imunify360<\/strong><br \/>Imunify360 offers a security suite that protects servers against a wide range of attacks. It integrates with cPanel &amp; WHM, and provides reports to the system administrator on the server\u2019s status.<\/p>\r\n\r\n\r\n\r\n<p>Installation steps, please refer\u00a0<a href=\"https:\/\/docs.imunify360.com\/installation\/#requirements\" rel=\"noopener\">HERE<\/a><\/p>\r\n\r\n\r\n\r\n<p><em>**If you are yet to get\u00a0<strong>Imunify360<\/strong>, which can help you prevent attacks against your server, get it now\u00a0<a href=\"https:\/\/www.exabytes.sg\/web-security\/linux-server-antivirus\">HERE<\/a>\u00a0OR contact our Professional Sales Team at\u00a0<a href=\"mailto:sales@exabytes.sg\">sales@exabytes.sg<\/a> for the latest update\/promotion.<\/em><\/p>\r\n\r\n\r\n\r\n<p><strong>c) Run Security Advisor to verify your current environment<\/strong><br \/>This is a new feature provided by cPanel recently. It helps to verify and advise which application you should turn ON or OFF .<\/p>\r\n\r\n\r\n\r\n<p>Login WHM &gt;&gt; Home &gt;&gt; Security Center &gt;&gt; Security Advisor<\/p>\r\n\r\n\r\n\r\n<p>**As this is a new feature recently provided by cPanel, feel free to refer\u00a0<a href=\"https:\/\/blog.cpanel.com\/security-advisor-101\/\" rel=\"noopener\">HERE<\/a>\u00a0for the official advice.<\/p>\r\n\r\n\r\n\r\n<p><em>** Otherwise, contact your hosting support if you need any assistance on running Security Advisor.<\/em><\/p>\r\n\r\n\r\n\r\n<p>&nbsp;<\/p>\r\n\r\n\r\n\r\n<h2><strong>4) Check your OS<\/strong><\/h2>\r\n<p>Check the OS version that you are currently running. Remember cPanel CentOS 6 will reach end of support soon, and you should prepare to switch over to CentOS 7. \u00a0<\/p>\r\n\r\n\r\n\r\n<figure class=\"wp-block-image\"><img data-recalc-dims=\"1\" decoding=\"async\" class=\"alignnone wp-image-17879\" src=\"https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/OS.png?resize=696%2C58&#038;ssl=1\" alt=\"CentOS 7 announcement\" width=\"696\" height=\"58\" srcset=\"https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/OS.png?resize=1024%2C86&amp;ssl=1 1024w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/OS.png?resize=300%2C25&amp;ssl=1 300w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/OS.png?resize=768%2C64&amp;ssl=1 768w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/OS.png?resize=696%2C58&amp;ssl=1 696w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/OS.png?resize=1068%2C89&amp;ssl=1 1068w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/OS.png?resize=218%2C18&amp;ssl=1 218w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/OS.png?w=1938&amp;ssl=1 1938w, https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/OS.png?w=1392&amp;ssl=1 1392w\" sizes=\"(max-width: 696px) 100vw, 696px\" \/><\/figure>\r\n\r\n\r\n\r\n<p>We encourage you to migrate to a server that runs on CentOS 7 before November 30, 2020.<\/p>\r\n\r\n\r\n\r\n<p>For further assistance, please contact your Hosting Customer Service Team.\u00a0Cheers!<\/p>\r\n","protected":false},"excerpt":{"rendered":"<p>Everyone knows it is easy to have their servers attacked, or harmed by a malware attack, a DDoS attack or other cpanel linux server security threats.\u00a0 Now the question is, how can we avoid attacks targeted at Linux VPS and Servers?Let us guide you with some basic practices to keep your server secure and defend [&hellip;]<\/p>\n","protected":false},"author":4,"featured_media":17876,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[293,7],"tags":[],"class_list":{"0":"post-17875","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-security-backup","8":"category-sharing-tips-for-success"},"jetpack_featured_media_url":"https:\/\/i0.wp.com\/www.exabytes.sg\/blog\/wp-content\/uploads\/2019\/04\/1200x628-cPanel-Linux-server-blog.jpg?fit=1200%2C628&ssl=1","jetpack_shortlink":"https:\/\/wp.me\/pbHhPQ-4Ej","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/www.exabytes.sg\/blog\/wp-json\/wp\/v2\/posts\/17875","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.exabytes.sg\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.exabytes.sg\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.exabytes.sg\/blog\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/www.exabytes.sg\/blog\/wp-json\/wp\/v2\/comments?post=17875"}],"version-history":[{"count":10,"href":"https:\/\/www.exabytes.sg\/blog\/wp-json\/wp\/v2\/posts\/17875\/revisions"}],"predecessor-version":[{"id":27056,"href":"https:\/\/www.exabytes.sg\/blog\/wp-json\/wp\/v2\/posts\/17875\/revisions\/27056"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.exabytes.sg\/blog\/wp-json\/wp\/v2\/media\/17876"}],"wp:attachment":[{"href":"https:\/\/www.exabytes.sg\/blog\/wp-json\/wp\/v2\/media?parent=17875"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.exabytes.sg\/blog\/wp-json\/wp\/v2\/categories?post=17875"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.exabytes.sg\/blog\/wp-json\/wp\/v2\/tags?post=17875"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}