• Please be aware: Kaspersky Anti-Virus has been deprecated
    With the upgrade to Plesk Obsidian 18.0.64, "Kaspersky Anti-Virus for Servers" will be automatically removed from the servers it is installed on. We recommend that you migrate to Sophos Anti-Virus for Servers.
  • The Horde webmail has been deprecated. Its complete removal is scheduled for April 2025. For details and recommended actions, see the Feature and Deprecation Plan.
  • We’re working on enhancing the Monitoring feature in Plesk, and we could really use your expertise! If you’re open to sharing your experiences with server and website monitoring or providing feedback, we’d love to have a one-hour online meeting with you.

brute force

  1. brother4

    Question Why isn't xmlrpc.php monitored by the WordPress jail in Fail2Ban?

    Hello! I've been using the WordPress jail in Fail2Ban to protect my WordPress installations from brute-force attacks. While I appreciate the protection it offers, I recently noticed a significant gap in its coverage that raises some concerns regarding security. Specifically, I’ve observed...
  2. F

    Question How to disable/restrict by IP <server-ip>/login_up.php ?

    Hi, I just noticed that when I access the IP address of my server with Chrome, I am redirected to the page <ip-address>/login_up.php or <server_name>/login_up Is there a way to restrict this page by IP as is the case when using port 8443? The "Restricting Administrative Access" feature only...
  3. M

    Issue Windows Firewall Blocked all IP Accidentally

    Hi, We have a Godaddy Server running Windows 2012. It is accessible through Remote Desktop and Plesk. We are getting a lot of brute force attacks on the MSSQL server. Going through the forums, we found that we can create inbound rule on the firewall to block the...
  4. Alaa Mansour

    Issue Firewall IP Ban (fail2ban) Wordpress

    Hello, everybody, after I have migrated the server, fail2ban no longer ban ip addresses automatically, and put them in a list in the firewall, I have to di it manually, even though the rules of the jails are as same as previous. I can see the IP address in the list of banned ip under the jail...
  5. ChrisMonder

    Resolved How to ignore POP3/IMAP login attempts for a non existent domain in my server?

    Hi all, I have a kind of annoying problem, in the past, my main server IP belong to a very known domain website, they move their website/email server to a new IP range and I got their IP assigned (didn't know about this when I received them). I have more than 500 daily attempts to login with a...
  6. EnriqueR

    Issue Named attack

    I am having a problem with my Plesk server since for a few weeks it is being attacked using brute force in named. I have noticed that in the file '/var/log/messages' the following line appears thousands of times: Nov 22 16:43:04 myserver named[571]: client x.x.x.x#49784: query (cache)...
Back
Top