How to Check Website Attacks in ModSecurity WHM

Check website attacks in ModSecurity WHM

ModSecurity is already installed with WHM but you need to configure it before it can start working properly.

Once configured login to your WHM panel.  Click ‘ModSecurity Configuration’ with in Security Center.

By default the hundred of modsecurity rules are default enabled in the WHM by ModSecurity™ Vendors.

If you want to know the Rules list >> Security Center >> ModSecurity™ Tools >> Rules List

Once clicked you can see the numerous rules sets.

Test rule and view the logs

For example – Someone perform any vulnerability scripts, plugins or themes if the modsecurity rule ID matches the strings in Rules, it will block the web request and report to the logs.

The website through error as “404 page not found” like below.

As you can see in the image below that the attack we just simulated is logged inside WHM, just click ‘ModSecurity Tools’ under security center and you can see all the attack logs. You can see following details about the attack:

  • URL For the web attack.
  • How was this request handled.
  • Which rule this attack matched against.

How to white list the ModSecurity rule ID

First you have install the plugin “ConfigServer ModSecurity Control” in WHM panel by using below steps.

Download and install cmc “ConfigServer ModSecurity Control”

cd /usr/src
rm -fv /usr/src/cmc.tgz
wget http://download.configserver.com/cmc.tgz
tar -xzf cmc.tgz
cd cmc
sh install.sh
rm -Rfv /usr/src/cmc*

Login to WHM and scroll to the bottom of the left hand menu and you should see “ConfigServer ModSecurity Control”

You can add ModSecurity rule ID numbers that you want to be globally disabled.

Alternatively, you can disable rules on a per cPanel account or per domain basis by selecting a user.

Else If you wants whitelist the rule ID for particular domain name, Follow the below Steps

Click the domain name “orissawebtesting.com” >> Modify user whitelist >> It will redirects to another page.

There enter the rule Id Which you wants to enable it >> Click “Save whitelist for all orissawebtest domains.

Once you clicked, it take some time for REBUILDING and RESTARTING the Apache.

Once Apache Restarted >> You can see the success message as above >> Now all done.

Now your website will load fine and you can perform the back-end processes.

Now that you can know the step whitelist the ModSecurity rule ID.

Related posts

27 Thoughts to “How to Check Website Attacks in ModSecurity WHM”

  1. Role of ERbeta palmitoylation in the inhibition of human colon cancer cell proliferation priligy at walgreens All the antibodies were diluted in phosphate buffered saline PBS containing 0

  2. William Audeh, the chief medical officer of Agendia priligy pills

  3. Тек 888starz ?осымшасын орнатып, е? жа?сы ?сыныстарды пайдаланы?ыз.

  4. https://888starz-egypt.online/ ЩЉЩ‚ШЇЩ… ШЄШ¬Ш±ШЁШ© ШЈЩ„Ш№Ш§ШЁ ШґШ§Щ…Щ„Ш© ШЄЩ†Ш§ШіШЁ Ш¬Щ…ЩЉШ№ Ш№ШґШ§Щ‚ Ш§Щ„Ш±ЩЉШ§Ш¶Ш© Щ€Ш§Щ„ЩѓШ§ШІЩЉЩ†Щ€. Ш§Щ†Ш¶Щ… Ш§Щ„ШўЩ†.

  5. can augmentin treat strep throat Primary distal RTA occurs in children, and clinical features include growth impairment, polyuria, hypercalciuria, nephrocalcinosis, nephrolithiasis, and K depletion 89

  6. Pour les utilisateurs d’iPhone qui souhaitent profiter d’une experience de jeu mobile de premier plan, le telechargement de 888starz telecharger sur iPhone est la solution parfaite. L’application est optimisee pour offrir une performance impeccable sur tous les appareils iOS, fournissant ainsi une interface utilisateur intuitive et une experience de jeu rapide et securisee. Avec une large selection de jeux mis a jour regulierement, vous pouvez profiter des dernieres machines a sous, jeux de table, et options de paris sportifs directement sur votre iPhone. Telechargez l’application pour acceder instantanement a vos jeux preferes, beneficier de promotions exclusives et participer a des tournois speciaux organises regulierement pour augmenter vos chances de gagner gros tout en vous divertissant.

  7. Для всех, кто ищет надежное казино с быстрыми выплатами и качественной поддержкой, рекомендуем сайт https://888starz-rus.site/. Здесь можно играть в слоты, делать спортивные ставки, участвовать в турнирах и зарабатывать крупные суммы без каких-либо сложностей.

  8. Thank you for your sharing. I am worried that I lack creative ideas. It is your article that makes me full of hope. Thank you. But, I have a question, can you help me?

  9. Your article helped me a lot, is there any more related content? Thanks!

  10. Can you be more specific about the content of your article? After reading it, I still have some doubts. Hope you can help me. https://accounts.binance.com/vi/register?ref=WTOZ531Y

  11. Thomasfaf

    canadian pharmacy store
    https://expresscanadapharm.shop/# northern pharmacy canada
    canadian pharmacy meds

  12. LorenzoceX

    The best in town, without a doubt.
    gabapentin dosing diabetic neuropathy
    A modern pharmacy with a traditional touch of care.

  13. Bryanhem

    Been a loyal customer for years and they’ve never let me down.
    where to buy cheap cipro prices
    Their global health resources are unmatched.

  14. Bryanhem

    Their health seminars are always enlightening.
    clomid tablets
    They’re reshaping international pharmaceutical care.

  15. Bryanhem

    They consistently go above and beyond for their customers.
    how to get cheap cipro without insurance
    Their worldwide reputation is well-deserved.

  16. Your article helped me a lot, is there any more related content? Thanks!

Leave a Comment