Using CSF firewall, I'm aware it's a plugin and not a cPanel product but it suggests doing so, the question is, should I:
Mail Check
I'm mostly hosting Wordpress and various Laravel CMS websites, along with some static content on my cPanel/WHM VPS (with root access).
Any advice is much appreciated!
Mail Check
- Check exim for secure authentication (if I require clients to connect with SSL or issue the STARTTLS command before they are allowed to authenticate with the server will they be able to connect with their accounts via insecure ports)?
- Check php for enable_dl or disabled dl() (enable_dl = Off )?
- Check php for disable_functions (disable_functions = show_source, system, shell_exec, passthru, exec, popen, proc_open)?
- Check cPanel login is SSL only?
- Check boxtrapper is disabled?
- Check GreyListing is disabled?
- Check Reset Password for cPanel accounts?
- Check Reset Password for Subaccounts?
- Check compilers?
- Check proxy subdomains?
- Check accounts that can access a cPanel user?
- Check Referrer Blank Security?
- Check Referrer Security?
- Check Password ENV variable?
- Check SMTP Restrictions?
- Check server services (disable rpcbind service)?
I'm mostly hosting Wordpress and various Laravel CMS websites, along with some static content on my cPanel/WHM VPS (with root access).
Any advice is much appreciated!
Last edited by a moderator: