• Introducing WebPros Cloud - a fully managed infrastructure platform purpose-built to simplify the deployment of WebPros products !  WebPros Cloud enables you to easily deliver WebPros solutions — without the complexity of managing the infrastructure.
    Join the pilot program today!
  • The Horde component is removed from Plesk Installer. We recommend switching to another webmail software supported in Plesk.
  • The BIND DNS server has already been deprecated and removed from Plesk for Windows.
    If a Plesk for Windows server is still using BIND, the upgrade to Plesk Obsidian 18.0.70 will be unavailable until the administrator switches the DNS server to Microsoft DNS. We strongly recommend transitioning to Microsoft DNS within the next 6 weeks, before the Plesk 18.0.70 release.

Recommended Security Settings for Plesk Pane 11.05 l on Linux Ubuntu

christyl

New Pleskian
Hi,

Does anyone wants to share on the Security Settings for Plesk Panel 11.05 setup on Linux Ubuntu. I read a lot that using cpanel of any types are not safe, and was told that only using SSH and myphpadmin are safe .

I really appreciate anyone suggestions on air-tight or recommendation on any security settings that is viable. Can someone suggest a good server management company who can handles server administration and does enhanced security settings.

or

some site scanning security providers or SSL providers or beyond security or cloudfare or incapsula?

Really Appreciate everyone thoughts and feedback.

Thanks

Chris
 
Well, depending on what you'll be using Plesk for...

Plesk
Restrict Admin Access to your home and office broadband IP address/es (obviously not possible if you have Plesk customers.)
Enforce Strong Passwords
Use FTPS Only

SSH
Set up authorized keys
Disable Passwords

PHPMyAdmin
I think is only available through the Plesk Panel, so no direct links to it.

Scanning
COMODO
McAfee

SSL Scanning
Qualys

Certificates
RapidSSLOnline
Cheap, Choice of SHA1 and SHA256 2048bit
COMODO
Fairly cheap, Free upgrade to EV SSL's, EV's can be 4096Bit with SHA256

That should help get you started anyway.
Qualys also has a lot of info about PCI Compliant Ciphers you can use on Apache and Nginx and then on your mail servers.
Anyway I hope that helps a bit.
Kind regards

Lloyd
 
Back
Top