I will harden and secure your linux vps with firewall, ssh lockdown and waf setup
Cybersecurity Analyst
Over deze dienst
Your server is exposed the moment it goes online. Automated bots start probing SSH and your web ports within minutes.
I harden Linux servers for a living. I work as a cybersecurity analyst maintaining WAF infrastructure Rocky Linux, Apache, ModSecurity with the OWASP Core Rule Set and I run my own self-hosted stack of 15+ containerized services behind the same setup.
WHAT I DO
- SSH lockdown key-only authentication, root login disabled, sane port and rate limits
- Firewall configuration UFW, iptables or firewalld, only what you actually need open
- fail2ban to block brute-force attempts automatically
- Nginx/Apache security review TLS configuration, security headers, safe defaults
- ModSecurity with the OWASP CRS, tuned so it blocks attacks without blocking your customers
THAT LAST POINT MATTERS
Most people either skip the WAF or install it and disable half the rules the first time it breaks a form submission. I tune rules properly: I read the audit logs, find which rule IDs are firing, and write targeted exclusions instead of switching protection off.
WORKS ON
Ubuntu, Debian, Rocky Linux, CentOS, AlmaLinux. VPS, dedicated, or cloud.
Server:
Apache HTTP
•
Nginx
•
Webserver
Besturingssysteem:
Linux
•
Vmware
