WHM CPanel Server Security Assessment

WrenMaxwell Secure Hosting Service
WrenMaxwell provides a WHM cPanel Server Security Assessment as a service.

Our experienced staff will review your WHM cPanel configuration and provide recommendations to enhance the security of your server.

[callout add_button=”yes” button_text=”Order Now!” button_url=”/order-server-security-assessment/” button_icon=”moon-cart-6″ button_color=”#7dbb00″]
Server Security Assessment
Your written server security report will be ready within 72 hours of confirmation of order.[/callout]

Our 150 point security check

Service Check Description
[list icon=”moon-lock-4″ color=”#00ADE7″]Firewall Review[/list] Any existing firewall – hardware or software based – that is linked with the server will be inspected to confirm settings for open ports against the ports required for the services provided by the server.
[list icon=”moon-lock-4″ color=”#00ADE7″]Rootkit Hunter[/list] Rootkit Hunter provides a method of checking if the server has been compromised. If Root Kit Hunter is installed a scan will be run and the output log reviewed. WrenMaxwell recommend the installation of Rootkit Hunter on all CPanel/WHM servers.
[list icon=”moon-lock-4″ color=”#00ADE7″]Chkrootkit[/list] Chkrootkit is another tool for testing for Rootkits and if installed will also be run to produce a log for review.
[list icon=”moon-lock-4″ color=”#00ADE7″]Operating System[/list] We will review the actual operating system version for current release information and advise on appropriate upgrade path.
[list icon=”moon-lock-4″ color=”#00ADE7″]WHM / CPanel[/list] The WHM / CPanel software sits on top of the operating system and we check it’s version and update process. If automatic updates are configured, new features are often added with a default setting that may be inappropriate. We review and advise on all the WHM / CPanel server settings.
[list icon=”moon-lock-4″ color=”#00ADE7″]Name server configuration[/list] WHM/CPanel by default uses Bind for Domain Name Services. We will review and advise on the appropriate name server settings for your server.
[list icon=”moon-lock-4″ color=”#00ADE7″]Password Strength[/list] Weak passwords provide hackers an easy method to access a server. We review the password policy settings on your server and advise on how to improve password use for your accounts.
[list icon=”moon-lock-4″ color=”#00ADE7″]SSL / HTTPS[/list] SSL certificates provide the security for web and email processing. Often certificates can be incorrectly configured, may be out of date, and not provide the end user experience that they are designed for. We check and report on all SSL configurations.
[list icon=”moon-lock-4″ color=”#00ADE7″]FTP[/list] The FTP service on a CPanel server is a common access point and is frequently not required. We review FTP access and advise on security measures to minimise risk with the FTP service.
[list icon=”moon-lock-4″ color=”#00ADE7″]SSH Secure Shell[/list] Secure Shell access to the server may be enabled but providing inappropriate access. We review the use of SSH and advise on security options.
[list icon=”moon-lock-4″ color=”#00ADE7″]PHP[/list] The use of PHP as a web site programming language is frequent and most commonly with WordPress and similar CMS systems. We review the PHP configuration for performance and permissions for the WHM server and the CPanel accounts.
[list icon=”moon-lock-4″ color=”#00ADE7″]MySQL[/list] The most commonly used database for WHM / CPanel is MySQL. We review the common security and performance settings.
[list icon=”moon-lock-4″ color=”#00ADE7″]Email[/list] Email and Anti-spam measures can be confusing. Anti-spam setting defaults are not necessarily appropriate. SPF and DKIM records may be non-existent or incorrectly configured. We review all aspects of email processing on your server.
[list icon=”moon-lock-4″ color=”#00ADE7″]Server Security[/list] WHM / CPanel includes a number of security options like ModSecurity, Brute Force Protection, and other security measures. We review the settings and provide recommended changes.
[list icon=”moon-lock-4″ color=”#00ADE7″]Anti-virus[/list] ClamAV is the anti-virus software included with WHM / CPanel and we review its configuration and operation for effective AV measures.
[list icon=”moon-lock-4″ color=”#00ADE7″]Configuration Settings[/list] Over 150 configuration settings are checked in a WHM / cPanel server and reported where they are secure or at risk.

[callout add_button=”yes” button_text=”Order Now!” button_url=”/order-server-security-assessment/” button_icon=”moon-cart-6″ button_color=”#7dbb00″]
Server Security Assessment
Your written server security report will be ready within 72 hours of confirmation of order.[/callout]

Key Points

[list icon=”moon-key-4″ color=”#00ADE7″]WrenMaxwell does not modify anything on your server, the purpose of our access to your server is to report on what we find and recommend actions to take.[/list]

[list icon=”moon-key-4″ color=”#00ADE7″]This service applies to a WHM/CPanel server not a shared CPanel site. We need to access the server as a whole not just a shared area in order to assess the security issues.[/list]

[callout add_button=”yes” button_text=”Security Assessment Overview” button_url=”/server-security-assessment/” button_icon=”” button_color=”#7dbb00″]What is a Server Security Assessment?
Read the overview of WrenMaxwell Server Security Assessment process.[/callout]