We moved over to a dedicated server last month, and for the first time I’m handling the administration of the box. There’s a decent learning curve involved, and things really came to a head last week when dealing with a DDOS attack!

Lesson 1: Don’t rely on a host’s “security package” to keep you safe.
Lesson 2: Tech support won’t have all the answers, so get Googling.
Lesson 3: Install a firewall ASAP.

WHM has some security features available in their Security Center, but for whatever reason, it’s disabled by default. Had it been enabled, I probably wouldn’t have had an issue. But this incident caused me to start poking around the Apache config and opimizing it for better performance. At the same time, I installed a firewall to prevent any further issues from outside idiots! So in the long run, it actually helped. (Despite the ulcer it’s caused me over the past 3-4 days)

Hopefully the worst is behind us, and I can get back on track here..