• Introducing WebPros Cloud - a fully managed infrastructure platform purpose-built to simplify the deployment of WebPros products !  WebPros Cloud enables you to easily deliver WebPros solutions — without the complexity of managing the infrastructure.
    Join the pilot program today!
  • Support for BIND DNS has been removed from Plesk for Windows due to security and maintenance risks.
    If a Plesk for Windows server is still using BIND, the upgrade to Plesk Obsidian 18.0.70 will be unavailable until the administrator switches the DNS server to Microsoft DNS.

Resolved server security

noasetpro

New Pleskian
Hello!
Just one question about server security.
Currently I have one small VPS (just for testing) Debian 10 + Plesk Obsidian 18.0.40 + Imunify360, but I want to setup something better like VDS with max. 10 hosted domains.
VDS will be based on Debian 10 with Plesk and Imunify360 just like already have.
My question is: What I need to do for maximum server secure? How to protect it against hacking?
Thank's for help and answers!
Best regards,
Goran
 
Just a few tips which are not mentioned on the above link:

- mount /tmp with nodev, nosuid, and noexec options:
- be careful with the php allow_url_fopen setting. Disable it if possible. This used to be a huge hacker honeypot back in the days, not sure if this is still the case?
 
Back
Top