Company Recommendation For Security Audit
Jan 5, 2007Can someone recommend an affordable shop that performs security audits a more specifically network and web-application penetration tests?
View 3 RepliesCan someone recommend an affordable shop that performs security audits a more specifically network and web-application penetration tests?
View 3 RepliesMy server recently was hacked and the hacker put up a Bank of America subdomain phishing site. My box got unplugged because of it.
I remember months ago there was a company that everyone was recommending to manage servers where they go in and tighten all security vulnerabilities, apply patches, etc etc at a low monthly fee.
Can anyone direct me to what company is the "recommendation of the moment" ?
I need to ask, what's best company of Secuity and Safe servers.
So I hope any one can answer my seeking.
I need a good and fast company that are experienced in Linux servers to secure my server, can you recommend anyone?
View 0 Replies View RelatedI am a web designer, and have been doing this for about 5 years now and have never encountered such a problem. I had a problem come up a few days ago where one of my clients got into an argument with the Mavrick Team web hosting and computer services company's owner regarding services. She has reported to me that he went into her email account, and has emailed her clients false information about her services after their heated discussion. She told him that she was going to press charges. He told her that he had harvested all of her clients email addresses and will email them to her competitors if she does not back down. What can she do? I feel awkward as I am in the middle of it now. I was the one who referred her to Mavrick Team (aka as I host them) for web hosting services, and moved her site to their servers. This man has created such a big problem for this women now. Her clients are doubting her services and he is blackmailing her. She does not owe him any monies. She has forwarded two of the emails that her clients forwarded to her, so I know she is not making this thing up. I advised her to move all of her emails to a personal email account, contact all of her clients to let them know that someone has access to their info, and I am helping her move her site. Who can she report them to?
View 12 Replies View RelatedI am thinking of Futurehosting.biz unmanaged server.
Can you please see if these skills are enough:
(1) Futurehosting will do the security setups.
Skill-sets:
(2) use of ssh to backup mysql, directory contents; do file management (create directories, move files); restore mysql
What other skill-sets do i need?
(3) do i need to know how to install o/s? (gulp!)
(4) setup email accounts?
(5) create sub-domains?
I thought of downloading webmin (i read about it in the other posts but have no experience) and will it help in points (3) to
(5)?
any good solution for corporates out there?
View 13 Replies View RelatedI'm testing Plesk 12.1 and noticed after enabling ModSecurity, the modsec_audit log file is empty.
I'm running CentOS7.1 w/Plesk 12.1.23
After peeking around at this board for some years, I decided to create an account.
I'm the original author of Rootkit Hunter and decided to create a new tool, named Lynis.
Lynis is an auditing tool for Unix (Linux, BSD and other). It scans the system and available software to detect security issues, bad/insecure configuration options and unsafe file(s) permissions. It tries to assist administrators in using and maintaining best practices, but also in the common things which get forgotten (like expired SSL certificates).
Though Lynis has been available for some months now, and many
updates/suggestions have been implemented, it still can use a broader user base. So my issue (we are in the technical issues section after all) is that I like more input and want to know what other people audit on their systems. Or what tools they like the most. Of course I have many ideas myself, but with the many different people here (in skills and specialties), every input is most likely improving the tool and increasing security for others as well.
In case you like to try the software (GPL, free to use), the software can be found at www . rootkit .nl (can't use URL's yet, due 5 post policy)
Since I don't only want to announce my tool (but like to have some input), I placed it in this section, hope it doesn't look like a "commercial" sell.
I have a colocated server with cpanel right now.
The cPanel license on my server just expired and I don't feel like paying for another month as there's 3-4 sites on that box that are still active.
I pay $80 a month for the colo with cpanel
So my questions are
1) What do you recommend (reseller vs vps) and who do I go with
2) How do I get my 4 sites off to the new cpanel with an expired license?
If anyone can help that'd be great. Looking to move within 48 hours
I have a E326 from IBM for a few months now (unused). But I need to put in online asap so I need a suggestion if you worked with him as a normal hosting server (no cluster) for the O/S.
I preffer CentOS is it ok with this server ? Otherwise fedora, suse?
I've been reading a lot on this forum lately for a good VPS solution for me, but I've not been too lucky. Perhaps I am just too lazy to read all the posts.
At any rate, I've been with Alpha Red for about a year now and I feel I need to get something new (been having some problems with my mail server and speed, and since it isn't managed, I don't want to worry about fixing it myself). Thus, I am looking for a good VPS solution.
My needs aren't critical, most personal/business type sites, with some client hosting (clients can get very demanding traffic, however, as they will commonly get featured on Digg or YouTube). Because of the clients, I feel I need something clustered with redundancy. I tried out Mosso and just couldn't stomache the simplicity and lack of control.
Disk space would be around 10GB or higher, bandwidth around 500GB or higher (1TB would look amazing to me), and managed is really a plus. However, my budget is only around $150/mo (currently paying $139 for a very slow dedicated server).
I've been tempted to try MediaTemple, but recently looked at Zone.net's clustered VPS, and KnownHost.
I am planning to launch a site in India for which i require a windows vps. my requirements are as
space - 5gb
ram - 1 gb
transfer - 50gb
MSSQL 05 DB - with 300 mb space
1 domain name with sub domains
cpanel
your recommendations will go a long way in helping me make an efficient decision.
how is verio vws basic plan
opinion about what E-mail would be the best as a autoresponder and email campaign program. Something that can be configured to forward emails to different addresses from different recipients, automatic responces and scheduled email campaigns, all that kind of things. I would prefer an open source solution but if not any I would pay for that.
how to extract the text from an incoming email (through a script maybe) and input to another ougoing email?
I plan to host 20-40 domains that will include ~20 blogs total and roughly 20 SQL DB's. I anticipate 5-10 GB traffic / month.
With these requirements, can I realistically make use of a shared hosting plan (like HostGator's)? They claim unlimited domains, though I'm not sure how far I can really take this.
Update: shame on me: GB's, not TB's
I'm planning to operate my own dedicated server and bad news is I'm not much of a technical person. A friend recommends that I can use free Webmin as a front end (control panel) rather than paying for others. Do you think Webmin is suitable for newbie on this front?
View 6 Replies View RelatedI am planning to get 2 uplinks for a cluster of servers. So, there will be 2 different
IP subnets and 2 different uplinks. I want the switch:
1. To be able to switch providers when any one of them is down
2. To be able to load balance the traffic (optional)
Also, I prefer to use Cisco.
I run a web hosting company and one of my servers is a LAMP server running CentOs 5. A user of mine has a Joomla installation running to manage his website and he has run into the following problem that I am puzzled by.
When Joomla adds a component or module to itself, or when a user uses the Joomla upload functionality, Joomla will add the new files under the user name "apache". This makes sense as it is the apache service running PHP that is actually creating the files.
However, when he FTP's into the account to modify these files, he doesn't have the appropriate permissions to do so as he doesn't have a root level login, just permissions on his home directory which is the site. Any help would be much appreciated.
Also, does anyone know how to change the owner/group of a directory and all of its sub directories in Linux without changing the actual permissions? I.e. some of the files in the folder have different permissions (0644 as apposed to 0755) than its parent but if I do a top down user/group change on the folder it will change everything in that folder to 0755.
Something less then US$ 150 for the start and an option to move to a full blown (4 Cores, 4GB) dedicated server later would be optimal.
Requirements:
1000 GB Transfer
10 GB Disk
1024 GB Memory
Plesk Panel
There will also be download links to copyright protected material but this are only links, there is no copyright infringement on the server itself which is absolutely legal at least in Europe.
I'm looking to move ~150 accounts from one server to a knew server. Any recommedations on any web hosting account movers?
View 8 Replies View RelatedI have been hosting with automatedvps.com for a few months now.
I heartly recomend them.
They host windows 2003/2008 and centOS.
I use windows 2008 which is faster then windows 2003.
They have the best deal I found at the time and since.
Support is friendly, avilable by email and phone. I'm very pleased with it, for instance upon my request they reinstalled the OS at no extra charge.
CPU, memory and internet all work fast.
I wanted to recommend and give a review of my service with Steadfast. Before I went with steadfast I read WHT almost everyday, looking at different hosts. Steadfast has exceeded my expectations by far.
I have a basic shared account but the speed and service make me feel like it is a dedicated account. My site is still in construction so I wont give the address but I have never experience any lag in loading or it ever being offline.
Whenever I submit a ticket, simply because I have a question, I have never waited more than a few minutes. It is genius. I think that Steadfast's business plan is to have the best equipment and software with the best service and reliability so that their customers stay and say good things about them. Sounds like a plan to me.
One of the things that I like the most is that Karl, owner and operator, actually knows what he is talking about is always happy to help.
I had never paid for hosting before or had a domain name and thought that the control panel and learning curve of hosting was gonna be hard but it is well organized and everything runs so perfectly that I almost never need to log into the control panel.
A+++
(I would put the link to steadfast but the board says I don't have enough posts to link websites. Never heard of such a thing.)
my company is looking for a colo provider in the Bay Area. We have done some research and the final choice comes down to these 2 companies: internap and ethr.net.
Price wise, Internap is slightly more expensive on the bandwidth, setup cost and cabinet rental.
Could anyone provide some recommendation based on personal experience? Our service is live video streaming, therefore we are looking for good network with low latency and with a bandwidth of 100mbps.
Recommendation to manage my server
Recommendation me for max send mail per hour for per account?
(I not want my server go to black list server and spam provider list)
i'm planning to add a remote backup to my vps, the only solutions i know at this time is only from www.crissic.com but i would like to know if there's other solutions out there used by WHT members
View 8 Replies View RelatedI have a couple of things I could use some help with. I'm currently using shared hosting and have completely outgrown it. I need to move to a fully managed dedicated server.
The first thing I need some help with is figuring out what hardware configuration (in general) is going to be needed for the type of sites I'm managing and the next is getting feedback on a good hosting company.
Here's a quick description of the domains that I'm managing:
1. One domain is run with e107, Coppermine and Simple Machines Forum. It will have 1000+ potential paid subscription members. The gallery will have 30,000+ images.
2. Second domain will be running PhpProbid auction software. It will hopefully have similar stats as stampwants dot com. They are a specialized site (mine is going to be more general) but their numbers are what we are shooting for with our new site.
3. Third domain will be the same configuration as #1 but will be on a much smaller scale with free membership.
4. Fourth domain will only be running a Serendipity blog.
5. Fifth domain will be a ZenCart ecommerce site. Fairly small, maybe 500 items listed at a time.
6. Another 8 domains are very simplistic, small sites with just a few pages of basic html.
When shopping managed server hosting it's obvious that there are many different levels of server configurations. What I'm not familiar with is which hardware components are going to influence the performance for the types of sites that I'm working with. The biggest 'in my face' issue currently on my shared hosting plan is that domain #1 above is having consistent php memory errors even when the .htaccess file is set at 64m. I only have a very small portion of the data loaded. The server can't handle just the programs!
The second issue is going to be much more difficult. Trying to find a company that actually delivers what they say they do. I've spent days searching online for reviews, recommendations and customers' actual experiences. I've come to the conclusion that picking hosting is worse than trying to buy a used car!
I am very interested in getting in the web hosting business and have been investigating a lot in the internet. My question is what would be the recommended hardware to start, taking in consideration the costs.
What processor?
How many cores 1,2 4...?
How many RAM?
I was thinking 2 250 GB SATA drives in RAID 1.
I'm planning on buying my first server. For processor I'll be using either an Opteron or Xeon.
Which motherboard would you suggest I get?
I saw ASUS motherboard for Opteron, but was told that ASUS board is not good enough for a server, what do you think?
I've searched quite a bit for myself now, but I have yet to find a place that offers what I need. Most of the servers seem way too overpowered for my needs, but the lower-end server offerings I've found don't have the necessary space and/or bw.
What I'm looking for is something along these lines:
I basically only need to run Apache/Lighthttpd, PHP and MySQL, along with a custom program that would only use 1-2% cpu at its peak and not more than 1mb memory. The web server part would probably not serve more than 10-20 simultaneous visits at its peak.
CPU and memory requirements are therefore very small for me. However, I need 10gb space at the very least, along with ~200gb bw.
I would preferably like the server to be located in Europe, or have very good connectivity to Europe, as I need as low pings as possible.
Unmanaged and no control panel needed.
Need a recommendation for Dedicated Hosting in Frankfurt.
Looking at setting up a dedicated server in Europe for my applications. Hetzner.de seems to be a popular, reputable and quality choice but as far as I know, their DC is in Nuremburg.
Due to low latency requirements, I am hoping to find a good provider in Frankfurt (or even in Lamdanet Frankfurt would be ideal).
So if anybody can point me to some large and solid providers in Frankfurt, it would be appreciated.