I will harden and secure your linux vps with firewall, ssh lockdown and waf setup

Sommige informatie wordt in het Engels weergegeven.

Uruguay

Ik spreek Spaans, Engels

Cybersecurity Analyst

I keep web applications protected without breaking them for real users. I'm a cybersecurity analyst specializing in WAF tuning — ModSecurity with the OWASP Core Rule Set on Rocky Linux and Apache — p...
Over deze dienst

Your server is exposed the moment it goes online. Automated bots start probing SSH and your web ports within minutes.


I harden Linux servers for a living. I work as a cybersecurity analyst maintaining WAF infrastructure Rocky Linux, Apache, ModSecurity with the OWASP Core Rule Set and I run my own self-hosted stack of 15+ containerized services behind the same setup.


WHAT I DO


- SSH lockdown key-only authentication, root login disabled, sane port and rate limits

- Firewall configuration UFW, iptables or firewalld, only what you actually need open

- fail2ban to block brute-force attempts automatically

- Nginx/Apache security review TLS configuration, security headers, safe defaults

- ModSecurity with the OWASP CRS, tuned so it blocks attacks without blocking your customers


THAT LAST POINT MATTERS


Most people either skip the WAF or install it and disable half the rules the first time it breaks a form submission. I tune rules properly: I read the audit logs, find which rule IDs are firing, and write targeted exclusions instead of switching protection off.


WORKS ON


Ubuntu, Debian, Rocky Linux, CentOS, AlmaLinux. VPS, dedicated, or cloud.

Server:

Apache HTTP

Nginx

Webserver

Besturingssysteem:

Linux

Vmware

Gerelateerde tags