<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>ideastack.com</title>
	<atom:link href="http://ideastack.com/blog/feed/" rel="self" type="application/rss+xml" />
	<link>http://ideastack.com/blog</link>
	<description>Web Hosting Blog</description>
	<lastBuildDate>Fri, 02 Mar 2012 10:33:27 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Domain Name Life Cycle</title>
		<link>http://ideastack.com/blog/320/</link>
		<comments>http://ideastack.com/blog/320/#comments</comments>
		<pubDate>Fri, 02 Mar 2012 10:31:21 +0000</pubDate>
		<dc:creator>ideastack</dc:creator>
				<category><![CDATA[Web Hosting]]></category>

		<guid isPermaLink="false">http://ideastack.com/blog/?p=320</guid>
		<description><![CDATA[Most people didn&#8217;t remember to renew the domain name and believe that the domain name is going to be available soon after the expiry date or they are able to register it again along with other company Or domain registrar. Really domain name won&#8217;t be available public until 75 days following the expiry date. The [...]]]></description>
			<content:encoded><![CDATA[<p>Most people didn&#8217;t remember to renew the domain name and believe that the domain name is going to be available soon after the expiry date or they are able to register it again along with other company Or domain registrar. Really domain name won&#8217;t be available public until 75 days following the expiry date. The status from the domain name changes to Expired happens when it&#8217;s not restored by who owns it, it will likely be readily available for the dog owner to resume it for next 30 – 40 days is dependent around the registrar following the domain expiry, this really is known as sophistication period for that domain name, within this period the domain name come in inactive condition and also the all the expertise of the domain like FTP, mails, website won&#8217;t work also it can be restored through the owner in the same renewal cost. Here happens following the sophistication period finishes the status from the domain is going to be transformed to redemption period. whois information with this domain name won&#8217;t be available throughout this era and when the initial who owns the domain decideshe wish to have exactly the same domain name restored, he needs to pay additional amount around $100, oftentimes original who owns the domain name won&#8217;t renew the domain name within the redemption period. This is actually the last phase following the redemption period, when the domain name makes its way into into this Pending Restore period, it&#8217;ll have seven days to have it restored else the domain goes right into a locked status and pending remove period. The domain come in deletion period for just five days. Throughout the final day&#8217;s Pending Remove status the domain name is mainly dropped among 11 AM and a pair of PM Off-shore Standard Time. Following this drop from ICANN database it will likely be readily available for the general public to join up it again recently. Right now you may have understand the entire process of a website name being expired and dropped, Below explanation concerning the domain name status codes, whenever you really query the domain name whois information, you&#8217;re going to get a few of these codes, here&#8217; will show you at length about individuals codes.<br />
Domain name Status Codes:<br />
<strong>ACTIVE</strong>: The registry sets this status. A website are only able to be modified through the domain registrar. The domain could be restored. The domain is going to be incorporated within the zone when the domain continues to be assigned to a single name server.<br />
<strong>REGISTRY-LOCK</strong>: Domain name registry sets this status. The domain cannot be modified or erased through the registrar. The registry must take away the REGISTRY-LOCK status for that registrar to change the domain. The domain could be restored. The domain is going to be incorporated within the zone when the domain continues to be assigned to a single name server.<br />
<strong>REGISTRAR-LOCK</strong>: This lock status is placed through the sponsoring registrar as well as in this status the domain name can’t be changed or get erased. The registrar should have to get rid of the lock status to change the domain with this status the domain could be restored and it is going to be incorporated within the zone.<br />
<strong>REGISTRY-HOLD</strong>: The registry sets this status. The domain cannot be modified or erased through the registrar.The registry must take away the REGISTRY-HOLD status for that registrar to change the domain. The domain could be restored. The domain won&#8217;t be incorporated within the zone.<br />
 <strong>REGISTRAR-HOLD</strong>: The sponsoring registrar sets this status. The domain cannot be modified or erased. The registrar must remove REGISTRAR-HOLD status to change the domain. The domain could be restored. The domain won&#8217;t be incorporated within the zone.<br />
<strong>REDEMPTION PERIOD</strong>: The registry sets this status whenever a registrar demands the domain name be erased in the registry and also the domain continues to be registered in excess of 5 calendar days (when the remove request is received within five days of initial domain registration it&#8217;ll rather be erased immediately). The domain won&#8217;t be incorporated within the zone. The domain cannot be modified or cleared it may simply be restored. Every other registrar demands to change or else update the domain is going to be declined. The domain is going to be locked in this status for no more than 30 calendar days.<br />
<strong>PENDINGRESTORE</strong>: The registry sets this status following a registrar demands restoration of the domain that&#8217;s in REDEMPTIONPERIOD status. The domain is going to be incorporated within the zone. Registrar demands to change or else update the domain is going to be declined. The domain is going to be locked in this status as the registry waits for that registrar to supply needed restoration documentation. When the registrar does not provide documentation towards the registry within 7 calendar days to verify the restoration request, the domain will revert to REDEMPTIONPERIOD status. The domain status is going to be set to ACTIVE only when the registrar provides documentation towards the registry within 7 calendar days to verify the restoration request.<br />
<strong>PENDINGDELETE</strong>: The registry sets this status following a domain continues to be occur REDEMPTIONPERIOD status and also the domain is not restored through the registrar. The domain won&#8217;t be incorporated within the zone. Once within this status all registrar demands to change or else update the domain is going to be declined. The domain is going to be cleared in the registry database after finding yourself in this status for five calendar days.</p>
]]></content:encoded>
			<wfw:commentRss>http://ideastack.com/blog/320/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Secure Your Websites Emails</title>
		<link>http://ideastack.com/blog/secure-your-websites-emails/</link>
		<comments>http://ideastack.com/blog/secure-your-websites-emails/#comments</comments>
		<pubDate>Fri, 02 Mar 2012 10:25:11 +0000</pubDate>
		<dc:creator>ideastack</dc:creator>
				<category><![CDATA[Web Hosting]]></category>
		<category><![CDATA[Email Hacking]]></category>
		<category><![CDATA[Email Phising]]></category>
		<category><![CDATA[Secure Email]]></category>

		<guid isPermaLink="false">http://ideastack.com/blog/?p=315</guid>
		<description><![CDATA[Lately there&#8217;s high development in cyber attacks, the likes of The new sony, Samsung and TCS as well as USA Government would be the major sufferers. Here&#8217;s an effort to provide you with fundamental here is how to secure your outgoing emails from phishing and spoofing using simple techniques like creating DKIM and SPF records. [...]]]></description>
			<content:encoded><![CDATA[<p>Lately there&#8217;s high development in cyber attacks, the likes of The new sony, Samsung and TCS as well as USA Government would be the major sufferers. Here&#8217;s an effort to provide you with fundamental here is how to secure your outgoing emails from phishing and spoofing using simple techniques like creating DKIM and SPF records.<br />
What is a DKIM record?<br />
 Google Applications facilitates you to definitely incorporate a digital signature in header from the mails that are being sent out of your domain, this can permit the devices of the mail to verify if the message continues to be truly sent out of your domain with no adjustments to between after verifying the domain signature. This Google Applications digital signature complies to any or all the standards set by DomainKeys Recognized Mail (DKIM), before adding this signature to the outgoing mail it is crucial that you simply produce a domain key which is employed by Google Applications to create encoded mail headers that are distinctive for your domain. Further, the mail readers may alsocheck up on the origin of mails by removing the general public key that has been up-to-date on your part within the DNS records for the domain. In case your domain already includes a DMIK domain key, then another key needs to be created to make use of with Google Applications and also the domain key for Google applications could be classified using their company secrets through selector prefix.<br />
 Make it possible for the ability of adding DKIM signature to the outgoing mail:<br />
1) Generate your domain key<br />
 2) Include public domain in DNS records of the domain<br />
3) Switch on the validation If you will find quantity of domain names associated with your Google Applications accounts, each one of the above specified steps need to employed for every single domain. You will find certain mail gateways like Postini which frequently modifies the mail by together with a footer, which cancels the DKIM signature, you need to be certain to stop the gateway server from altering the messages or switching from the DKIM authentication.</p>
<p> Exactly what does SPF record mean? It&#8217;s highly suggested to possess SPF (Sender PolicyFramework) record for the domain, which is a kind of DNS record that categorizes the mail servers that are permitted to transmit mail within the interest of the domain. The primary concept of SPF record for the domain would be to avoid the spammers from delivering mails with fake from addresses around the domain names. For that readers to understand when the message that is declaring to become out of your domain through legal mail server, they can simply make reference to these SPF records. Should you create an SPF record for the domain where certain mail servers is offered as approved mail server for the domain. The recipient after finding the mail out of your domain, can verify together with your domain SPF record to ascertain if the content applies which is true only when the content is distributed from the server that&#8217;s been approved mail server for the domain and when the mail comes from every other server it will likely be immediately declined thinking about it junk e-mail through the recipient’s mail server. How you can add DKIM and SPF records in DNS configurations?To create domain key:<br />
1) Login towards the user interface of Google Applications Administrator<br />
2) Click “Advanced Tools” in the menu on the top from the page<br />
3) Choose “Set up email authentication (DKIM)” in the Authenticate email section<br />
4) Pick the domain title from drop lower list that the domain key needs to be produced.<br />
5) Choose “Generate new record”<br />
6) Complete the written text that needs to be utilized for DKIM selector prefix that is google automatically that may be modified in line with the user’s choice.<br />
7) Click Generate Information is going to be displayed within the text box that&#8217;ll be helpful to produce DNS records to permit the readers extract public domain key.<br />
Adding Domain Key produced to DNS records for the domain:<br />
1) Login towards the administrator console that is distributed by your domain provider<br />
2) Discover the page that DNS records could be up-to-date<br />
3) Make use of the title and cost from Google applications control panel to produce TXT record ,the data are available in the authenticate email page from user interface of Google Applications.<br />
4) Save the alterations.<br />
Creating SPF record for domain:<br />
1) Login for your domain’s administrative console<br />
2) Look for the page where the DNS records could be up-to-date that you will have to allow advanced configurations.<br />
3) Make use of this text: v=spf1 include:_spf.google.com ~all to produce a .txt record SPF record designed to use –all rather than ~all can provide problems associated with mail delivery.<br />
4) Save the alterations For the changes completed to DNS records might take a minimum of 48 hrs to flow online.</p>
]]></content:encoded>
			<wfw:commentRss>http://ideastack.com/blog/secure-your-websites-emails/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Reseller hosting is profit making investment for web master in rural india</title>
		<link>http://ideastack.com/blog/reseller-hosting-is-profit-making-investment-for-web-master-in-rural-india/</link>
		<comments>http://ideastack.com/blog/reseller-hosting-is-profit-making-investment-for-web-master-in-rural-india/#comments</comments>
		<pubDate>Sun, 27 Nov 2011 07:02:39 +0000</pubDate>
		<dc:creator>hemang</dc:creator>
				<category><![CDATA[Cpanel Server Hosting]]></category>
		<category><![CDATA[Web Hosting]]></category>
		<category><![CDATA[Web Programming]]></category>
		<category><![CDATA[indian Webmaster]]></category>
		<category><![CDATA[Reseller hosting]]></category>
		<category><![CDATA[web master in rural india]]></category>

		<guid isPermaLink="false">http://ideastack.com/blog/?p=296</guid>
		<description><![CDATA[India is Developing in the field of IT Business . web hosting is one industry which is rapidly growing in India and will continue to grow in coming years as companies and business in India have understood the importance of presence on internet and benefits of online marketing. even India has produced strong network of telecommunication infra structure.  India has produced lot of [...]]]></description>
			<content:encoded><![CDATA[<p>India is Developing in the field of IT Business . web hosting is one industry which is rapidly growing in India and will continue to grow in coming years as companies and business in India have understood the importance of presence on internet and benefits of online marketing. even India has produced strong network of telecommunication infra structure.  India has produced lot of webmaster and web designer in rural India and which are generating there lively hood today by taking small web development and programming projects. webmaster in India are looking for affordable and reliable;e web hosting partners today which can provide round the clock support and which are easily accessible when it comes to doing business and asking support when needed. re seller and master re-seller hosting plans are profit making plans for web master in rural India as the investment is very low and profit is very handsome.   many discount and offer are available today for webmaster in India so that  they can do quality business in there respected area .</p>
]]></content:encoded>
			<wfw:commentRss>http://ideastack.com/blog/reseller-hosting-is-profit-making-investment-for-web-master-in-rural-india/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Install APF in a server</title>
		<link>http://ideastack.com/blog/install-apf-in-a-server/</link>
		<comments>http://ideastack.com/blog/install-apf-in-a-server/#comments</comments>
		<pubDate>Wed, 09 Nov 2011 19:43:04 +0000</pubDate>
		<dc:creator>ideastack</dc:creator>
				<category><![CDATA[Cpanel Server Hosting]]></category>

		<guid isPermaLink="false">http://ideastack.com/blog/?p=303</guid>
		<description><![CDATA[APF (Advanced Policy Firewall) is a policy based iptables firewall system designed for ease of use and configuration. It employs a subset of features to satisfy the veteran Linux user and the novice alike. Packaged in tar.gz format and RPM formats, make APF ideal for deployment in many server environments based on Linux. APF is [...]]]></description>
			<content:encoded><![CDATA[<p>APF (Advanced Policy Firewall) is a policy based iptables firewall system designed for ease of use and configuration. It employs a subset of features to satisfy the veteran Linux user and the novice alike. Packaged in tar.gz format and RPM formats, make APF ideal for deployment in many server environments based on Linux. APF is developed and maintained by R-fx Networks: http://www.rfxnetworks.com/apf.php</p>
<p>This guide will show you how to install and configure APF firewall,<br />
one of the better known Linux firewalls available.10</p>
<p>Requirements:</p>
<p>Root SSH access to your server</p>
<p>Login to your server through SSH and su to the root user.</p>
<p>1. cd /root/downloads or another temporary folder where you store your files.</p>
<p>2. wget http://www.rfxnetworks.com/downloads/apf-current.tar.gz</p>
<p>3. tar -xvzf apf-current.tar.gz</p>
<p>4. cd apf-0.9.5-1/ or whatever the latest version is.</p>
<p>5. Run the install file: ./install.sh<br />
You will receive a message saying it has been installed</p>
<p>Installing APF 0.9.5-1: Completed.</p>
<p>Installation Details:</p>
<p>Install path: /etc/apf/<br />
Config path: /etc/apf/conf.apf<br />
Executable path: /usr/local/sbin/apf<br />
AntiDos install path: /etc/apf/ad/<br />
AntiDos config path: /etc/apf/ad/conf.antidos<br />
DShield Client Parser: /etc/apf/extras/dshield/</p>
<p>Other Details:<br />
Listening TCP ports: 1,21,22,25,53,80,110,111,143,443,465,993,995,2082,2083,2086,2087,2095,2096,3306<br />
Listening UDP ports: 53,55880<br />
Note: These ports are not auto-configured;<br />
they are simply presented for information purposes. You must manually configure all port options.</p>
<p>6. Lets configure the firewall: vi /etc/apf/conf.apf<br />
We will go over the general configuration to get your firewall running.<br />
This isn’t a complete detailed guide of every feature the firewall has.<br />
Look through the README and the configuration for an explanation of each feature.</p>
<p>We like to use DShield.org’s “block” list of top networks that have exhibited<br />
suspicious activity.<br />
FIND: USE_DS=”0?<br />
CHANGE TO: USE_DS=”1?</p>
<p>7. Configuring Firewall Ports:</p>
<p>Cpanel Servers<br />
We like to use the following on our Cpanel Servers</p>
<p>Common ingress (inbound) ports<br />
# Common ingress (inbound) TCP ports -3000_3500 = passive port range for Pure FTPD<br />
IG_TCP_CPORTS=”21,22,25,53,80,110,143,443,2082,2083, 2086,2087, 2095, 2096,3000_3500?<br />
#<br />
# Common ingress (inbound) UDP ports<br />
IG_UDP_CPORTS=”53?</p>
<p>Common egress (outbound) ports<br />
# Egress filtering [0 = Disabled / 1 = Enabled]<br />
EGF=”1?</p>
<p># Common egress (outbound) TCP ports<br />
EG_TCP_CPORTS=”21,25,80,443,43,2089?<br />
#<br />
# Common egress (outbound) UDP ports<br />
EG_UDP_CPORTS=”20,21,53?</p>
<p>Ensim Servers<br />
We have found the following can be used on Ensim Servers -<br />
although we have not tried these ourselves as I don’t run Ensim boxes.</p>
<p>Common ingress (inbound) ports<br />
# Common ingress (inbound) TCP ports<br />
IG_TCP_CPORTS=”21,22,25,53,80,110,143,443,19638?<br />
#<br />
# Common ingress (inbound) UDP ports<br />
IG_UDP_CPORTS=”53?</p>
<p>Common egress (outbound) ports<br />
# Egress filtering [0 = Disabled / 1 = Enabled]<br />
EGF=”1?</p>
<p># Common egress (outbound) TCP ports<br />
EG_TCP_CPORTS=”21,25,80,443,43?<br />
#<br />
# Common egress (outbound) UDP ports<br />
EG_UDP_CPORTS=”20,21,53?</p>
<p>Save the changes: Ctrl+X then Y</p>
<p>8. Starting the firewall<br />
/usr/local/sbin/apf -s</p>
<p>Other commands:<br />
usage ./apf [OPTION]<br />
-s|–start ……………………. load firewall policies<br />
-r|–restart ………………….. flush &#038; load firewall<br />
-f|–flush|–stop ……………… flush firewall<br />
-l|–list …………………….. list chain rules<br />
-st|–status ………………….. firewall status<br />
-a HOST CMT|–allow HOST COMMENT … add host (IP/FQDN) to allow_hosts.rules and<br />
immediately load new rule into firewall<br />
-d HOST CMT|–deny HOST COMMENT …. add host (IP/FQDN) to deny_hosts.rules and<br />
immediately load new rule into firewall</p>
<p>9. After everything is fine, change the DEV option<br />
Stop the firewall from automatically clearing itself every 5 minutes from cron.<br />
We recommend changing this back to “0? after you’ve had a chance to ensure everything<br />
is working well and tested the server out.</p>
<p>vi /etc/apf/conf.apf</p>
<p>FIND:APF DEVEL_MODE=”1?<br />
CHANGE TO: APF DEVEL_MODE=”0?</p>
<p>10. Configure AntiDOS for APF<br />
Relatively new to APF is the new AntiDOS feature which can be found in: /etc/apf/ad<br />
The log file will be located at /var/log/apfados_log so you might want to make note of it and watch it!</p>
<p>vi /etc/apf/ad/conf.antidos</p>
<p>There are various things you might want to fiddle with but I’ll get the ones that will alert you by email.</p>
<p># [E-Mail Alerts]<br />
Under this heading we have the following:</p>
<p># Organization name to display on outgoing alert emails<br />
CONAME=”Your Company”<br />
Enter your company information name or server name..</p>
<p># Send out user defined attack alerts [0=off,1=on]<br />
USR_ALERT=”0?<br />
Change this to 1 to get email alerts</p>
<p># User for alerts to be mailed to<br />
USR=”your@email.com“<br />
Enter your email address to receive the alerts</p>
<p>Save your changes! Ctrl+X then press Y<br />
Restart the firewall: /usr/local/sbin/apf -r</p>
<p>11. Checking the APF Log</p>
<p>Will show any changes to allow and deny hosts among other things.<br />
tail -f /var/log/apf_log</p>
<p>Example output:<br />
Aug 23 01:25:55 ocean apf(31448): (insert) deny all to/from 185.14.157.123<br />
Aug 23 01:39:43 ocean apf(32172): (insert) allow all to/from 185.14.157.123</p>
<p>12. New – Make APF Start automatically at boot time<br />
To autostart apf on reboot, run this:</p>
<p>chkconfig –level 2345 apf on</p>
<p>To remove it from autostart, run this:</p>
<p>chkconfig –del apf</p>
<p>13. Denying IPs with APF Firewall (Blocking)<br />
Now that you have your shiny new firewall you probably want to block a host right,<br />
of course you do! With this new version APF now supports comments as well.<br />
There are a few ways you can block an IP, I’ll show you 2 of the easier methods.</p>
<p>A) /etc/apf/apf -d IPHERE COMMENTHERENOSPACES<br />
> The -d flag means DENY the IP address<br />
> IPHERE is the IP address you wish to block<br />
> COMMENTSHERENOSPACES is obvious, add comments to why the IP is being blocked<br />
These rules are loaded right away into the firewall, so they’re instantly active.<br />
Example:</p>
<p>./apf -d 185.14.157.123 TESTING</p>
<p>pico /etc/apf/deny_hosts.rules</p>
<p>Shows the following:</p>
<p># added 185.14.157.123 on 08/23/05 01:25:55<br />
# TESTING<br />
185.14.157.123</p>
<p>B) vi /etc/apf/deny_hosts.rules</p>
<p>You can then just add a new line and enter the IP you wish to block.<br />
Before this becomes active though you’ll need to reload the APF ruleset.</p>
<p>/etc/apf/apf -r</p>
<p>14. Allowing IPs with APF Firewall (Unblocking)</p>
<p>I know I know, you added an IP now you need it removed right away!<br />
You need to manually remove IPs that are blocked from deny_hosts.rules.</p>
<p>A) vi /etc/apf/deny_hosts.rules</p>
<p>Find where the IP is listed and remove the line that has the IP.<br />
After this is done save the file and reload apf to make the new changes active.</p>
<p>/etc/apf/apf -r</p>
<p>B) If the IP isn’t already listed in deny_hosts.rules and you wish to allow it,<br />
this method adds the entry to allow_hosts.rules</p>
<p>/etc/apf/apf -a IPHERE COMMENTHERENOSPACES<br />
> The -a flag means ALLOW the IP address<br />
> IPHERE is the IP address you wish to allow<br />
> COMMENTSHERENOSPACES is obvious, add comments to why the IP is being removed These rules<br />
are loaded right away into the firewall, so they’re instantly active.<br />
Example:</p>
<p>./apf -a 185.14.157.123 UNBLOCKING</p>
<p>pico /etc/apf/allow_hosts.rules</p>
<p># added 185.14.157.123 on 08/23/05 01:39:43<br />
# UNBLOCKING<br />
185.14.157.123</p>
]]></content:encoded>
			<wfw:commentRss>http://ideastack.com/blog/install-apf-in-a-server/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Harden your vps or dedicated server</title>
		<link>http://ideastack.com/blog/harden-your-vps-or-dedicated-server/</link>
		<comments>http://ideastack.com/blog/harden-your-vps-or-dedicated-server/#comments</comments>
		<pubDate>Wed, 09 Nov 2011 19:42:43 +0000</pubDate>
		<dc:creator>ideastack</dc:creator>
				<category><![CDATA[Cpanel Server Hosting]]></category>

		<guid isPermaLink="false">http://ideastack.com/blog/?p=304</guid>
		<description><![CDATA[These are measures that can be taken to secure your server, with SSH access. Udate OS, Apache and CPanel to the latest stable versions. This can be done from WHM/CPanel. Restrict SSH Access To restrict and secure SSH access, bind sshd to a single IP that is different than the main IP to the server, [...]]]></description>
			<content:encoded><![CDATA[<p>These are measures that can be taken to secure your server, with SSH access.</p>
<p>Udate OS, Apache and CPanel to the latest stable versions.</p>
<p>This can be done from WHM/CPanel.</p>
<p>Restrict SSH Access</p>
<p>To restrict and secure SSH access, bind sshd to a single IP that is different than the main IP to the server, and on a different port than port 22.</p>
<p>SSH into server and login as root.</p>
<p>At command prompt type: vi /etc/ssh/sshd_config</p>
<p>Scroll down to the section of the file that looks like this:</p>
<p>#Port 22<br />
#Protocol 2, 1<br />
#ListenAddress 0.0.0.0<br />
#ListenAddress ::</p>
<p>Uncomment and change</p>
<p>#Port 22</p>
<p>to look like</p>
<p>Port 5678 (choose your own 4 to 5 digit port number (49151 is the highest port number)</p>
<p>Uncomment and change</p>
<p>#Protocol 2, 1</p>
<p>to look like</p>
<p>Protocol 2</p>
<p>Uncomment and change</p>
<p>#ListenAddress 0.0.0.0</p>
<p>to look like</p>
<p>ListenAddress 123.123.123.15 (use one of your own IP Addresses that has been assigned to your server)</p>
<p>Note 1: If you would like to disable direct Root Login, scroll down until you find</p>
<p>#PermitRootLogin yes</p>
<p>and uncomment it and make it look like</p>
<p>PermitRootLogin no</p>
<p>Save by pressing Ctrl o on your keyboard, and then exit by pressing Ctrl x on your keyboard.</p>
<p>Note 2: You can also create a custome nameserver specifically for your new SSH IP address. Just create one called something like ssh.xyz.com or whatever. Be sure to add an A address to your zone file for the new nameserver.</p>
<p>Now restart SSH</p>
<p>At command prompt type: /etc/rc.d/init.d/sshd restart</p>
<p>Exit out of SSH, and then re-login to SSH using the new IP or nameserver, and the new port.</p>
<p>Note: If you should have any problems, just Telnet into your server, fix the problem, then SSH in again. Telnet is a very unsecure protocol, so change your root password after you use it.</p>
<p>Disable Telnet</p>
<p>To disable telnet, SSH into server and login as root.</p>
<p>At command prompt type: vi /etc/xinetd.d/telnet</p>
<p>change disable = no to disable = yes</p>
<p>Save and Exit</p>
<p>At command prompt type: /etc/init.d/xinetd restart</p>
<p>Server e-mail everytime someone logs in as root</p>
<p>To have the server e-mail you everytime someone logs in as root, SSH into server and login as root.</p>
<p>At command prompt type: pico .bash_profile</p>
<p>Scroll down to the end of the file and add the following line:</p>
<p>echo ‘ALERT – Root Shell Access on:’ `date` `who` | mail -s “Alert: Root Access from `who | awk ‘{print $6}’`” your@email.com</p>
<p>Save and exit.</p>
<p>Set an SSH Legal Message</p>
<p>To an SSH legal message, SSH into server and login as root.</p>
<p>At command prompt type: vi /etc/motd</p>
<p>Enter your message, save and exit.</p>
<p>Note: I use the following message…</p>
<p>“ALERT! You are entering a secured area! Your IP and login information<br />
have been recorded. System administration has been notified.</p>
<p>This system is restricted to authorized access only. All activities on<br />
this system are recorded and logged. Unauthorized access will be fully<br />
investigated and reported to the appropriate law enforcement agencies.”</p>
<p>Now everytime someone logs in as root, they will see this message…</p>
<p>Disable Shell Accounts</p>
<p>Disable identification output for Apache</p>
<p>To disable the version output for proftp, SSH into server and login as root.</p>
<p>At command prompt type: vi /etc/httpd/conf/httpd.conf</p>
<p>Scroll (way) down and change the following line to</p>
<p>ServerSignature Off</p>
<p>Restart Apache</p>
<p>At command prompt type: /etc/rc.d/init.d/httpd restart</p>
]]></content:encoded>
			<wfw:commentRss>http://ideastack.com/blog/harden-your-vps-or-dedicated-server/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Install Firewall on Cpanel Server or Cpanel VPS</title>
		<link>http://ideastack.com/blog/install-firewall-on-cpanel-server-or-cpanel-vps/</link>
		<comments>http://ideastack.com/blog/install-firewall-on-cpanel-server-or-cpanel-vps/#comments</comments>
		<pubDate>Tue, 13 Sep 2011 12:27:06 +0000</pubDate>
		<dc:creator>ideastack</dc:creator>
				<category><![CDATA[Cpanel Server Hosting]]></category>

		<guid isPermaLink="false">http://ideastack.com/blog/?p=235</guid>
		<description><![CDATA[1)Remove the previous firewall first 2)Get tarball using wget http://www.configserver.com/free/csf.tgz 3)tar -xvzf csf.tgz 4)cd csf 5)sh install.sh 6)csf -r]]></description>
			<content:encoded><![CDATA[<p>1)Remove the previous firewall first</p>
<p>2)Get tarball using wget http://www.configserver.com/free/csf.tgz</p>
<p>3)tar -xvzf csf.tgz</p>
<p>4)cd csf</p>
<p>5)sh install.sh</p>
<p>6)csf -r</p>
]]></content:encoded>
			<wfw:commentRss>http://ideastack.com/blog/install-firewall-on-cpanel-server-or-cpanel-vps/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ERROR: SWKeyExFatalError xmlrpc error</title>
		<link>http://ideastack.com/blog/error-swkeyexfatalerror-xmlrpc-error/</link>
		<comments>http://ideastack.com/blog/error-swkeyexfatalerror-xmlrpc-error/#comments</comments>
		<pubDate>Mon, 25 Jul 2011 19:32:31 +0000</pubDate>
		<dc:creator>hemang</dc:creator>
				<category><![CDATA[Web Hosting]]></category>

		<guid isPermaLink="false">http://ideastack.com/blog/?p=265</guid>
		<description><![CDATA[if you re getting this error in plesk ERROR: SWKeyExFatalError xmlrpc error: XML parsing failed &#160; 0: common_func.php3:4523 of_get_key_by_product(string &#8216;plesk-win&#8217;) 1: common_func.php3:4523 getPleskKey() 2: common_func.php3:4602 getKeyProp(string &#8216;demo&#8217;) 3: auth.php3:54 try Check the size of the file %plesk_dir%\admin\repository\registry.xml. If file is empty and equals 0KB, delete this file. Once it is done, try to access to [...]]]></description>
			<content:encoded><![CDATA[<p>if you re getting this error in plesk</p>
<div>ERROR: SWKeyExFatalError<br />
xmlrpc error: XML parsing failed</div>
<p>&nbsp;</p>
<div>0: common_func.php3:4523<br />
of_get_key_by_product(string &#8216;plesk-win&#8217;)<br />
1: common_func.php3:4523<br />
getPleskKey()<br />
2: common_func.php3:4602<br />
getKeyProp(string &#8216;demo&#8217;)<br />
3: auth.php3:54</div>
<div>try</div>
<div>
<div>
<div id="article-content">
<div>
<h2></h2>
<p>Check the size of the file <em>%plesk_dir%\admin\repository\registry.xm</em><em>l</em>. If file is <em>empty </em>and equals <em>0KB</em>, delete this file.<br />
Once it is done, try to access to Parallels Plesk Panel. New file should be generated automatically.</div>
</div>
</div>
<p><!-- article-container --></div>
<p>&nbsp;</p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://ideastack.com/blog/error-swkeyexfatalerror-xmlrpc-error/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Apache restart failed. Unable to load pid from pid file and no httpd process found in process list.</title>
		<link>http://ideastack.com/blog/apache-restart-failed-unable-to-load-pid-from-pid-file-and-no-httpd-process-found-in-process-list/</link>
		<comments>http://ideastack.com/blog/apache-restart-failed-unable-to-load-pid-from-pid-file-and-no-httpd-process-found-in-process-list/#comments</comments>
		<pubDate>Fri, 22 Jul 2011 11:03:12 +0000</pubDate>
		<dc:creator>hemang</dc:creator>
				<category><![CDATA[Cpanel Server Hosting]]></category>

		<guid isPermaLink="false">http://ideastack.com/blog/?p=261</guid>
		<description><![CDATA[Steps to Resolve the above error 1.Login to ssh and type killall -9 httpd then try to restart http from cpanel 80% time it will work if it does not try step 2 2.Run Easy Apache from Cpanel select a different version of apache it should do the tick It is sometimes possible that easy apache will [...]]]></description>
			<content:encoded><![CDATA[<p>Steps to Resolve the above error</p>
<p>1.Login to ssh and type killall -9 httpd then try to restart http from cpanel 80% time it will work if it does not try step 2</p>
<p>2.Run Easy Apache from Cpanel select a different version of apache it should do the tick</p>
<p>It is sometimes possible that easy apache will fix the error but the error will reoccur after some days try step 3</p>
<p>3.  increase the ulimit for open files.</p>
<p>ulimit -n 10000 it should fix the issue  and it will not reoccur</p>
<p>Please leave a comment if you were not able to solve it using the above steps</p>
]]></content:encoded>
			<wfw:commentRss>http://ideastack.com/blog/apache-restart-failed-unable-to-load-pid-from-pid-file-and-no-httpd-process-found-in-process-list/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>IdeaStack Launches UK SEO Hosting</title>
		<link>http://ideastack.com/blog/ideastack-launches-uk-seo-hosting/</link>
		<comments>http://ideastack.com/blog/ideastack-launches-uk-seo-hosting/#comments</comments>
		<pubDate>Fri, 22 Jul 2011 10:57:33 +0000</pubDate>
		<dc:creator>hemang</dc:creator>
				<category><![CDATA[Cpanel Server Hosting]]></category>

		<guid isPermaLink="false">http://ideastack.com/blog/?p=258</guid>
		<description><![CDATA[To Rank high in google.co.uk ideastack after a request by lot of clients has finally launched seo hosting uk Advantages of SEO Hosting UK 1.Ips from 12 Different City 2.Get High rankings in uk search engines and get more uk clients 3.We have plans starting from 10 ips uptil 20 ips we will be increasing that soon [...]]]></description>
			<content:encoded><![CDATA[<p>To Rank high in google.co.uk ideastack after a request by lot of clients has finally launched seo hosting uk</p>
<p>Advantages of SEO Hosting UK</p>
<p>1.Ips from 12 Different City</p>
<p>2.Get High rankings in uk search engines and get more uk clients</p>
<p>3.We have plans starting from 10 ips uptil 20 ips we will be increasing that soon to 100 ips</p>
<p>&nbsp;</p>
<p>for more details and costs visit</p>
<p><a href="http://ideastack.com/uk-seo-hosting.html">uk seo hosting </a>Page</p>
]]></content:encoded>
			<wfw:commentRss>http://ideastack.com/blog/ideastack-launches-uk-seo-hosting/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>happy independence day USA</title>
		<link>http://ideastack.com/blog/ideastack-solutions-private-limited-wishes-united-state-happy-independence-day/</link>
		<comments>http://ideastack.com/blog/ideastack-solutions-private-limited-wishes-united-state-happy-independence-day/#comments</comments>
		<pubDate>Mon, 04 Jul 2011 12:14:02 +0000</pubDate>
		<dc:creator>hemang</dc:creator>
				<category><![CDATA[Cpanel Server Hosting]]></category>
		<category><![CDATA[Web Hosting]]></category>
		<category><![CDATA[Web Programming]]></category>
		<category><![CDATA[1776]]></category>
		<category><![CDATA[american independence day]]></category>
		<category><![CDATA[July 4]]></category>

		<guid isPermaLink="false">http://ideastack.com/blog/?p=251</guid>
		<description><![CDATA[Ideastack wishes all us citizen&#8217;s a happy Independence day and happy shopping for the 4 th july deal&#8217;s From our end we would offer a 100% Extra Credit for all orders made today to all clients based in USA.r you Just Open a ticket after you place the order we will apply the credit to [...]]]></description>
			<content:encoded><![CDATA[<p>Ideastack wishes all us citizen&#8217;s a happy Independence day and happy shopping for the 4 th july deal&#8217;s<br />
From our end we would offer a 100% Extra Credit for all orders made today to all clients based in USA.r you Just Open a ticket after you place the order we will apply the credit to your account</p>
]]></content:encoded>
			<wfw:commentRss>http://ideastack.com/blog/ideastack-solutions-private-limited-wishes-united-state-happy-independence-day/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

