I just updated to WHM 10.8.0 and Cpanel 10.9.0 R57.
I noticed at the end of the update that mod_security was updated to version 1.9.1 or something like that.
I had used a custom ruleset for mod_sec which was mentioned in this thread:
http://forums.cpanel.net/showthread.php?t=30159
Should I update the mod_sec ruleset again, or is the version that is packaged with the latest WHM/Cpanel update good enough for general purpose webserver?
I'd like to be as secure as possible. I took a look at the mod_sec rules that are located at http://www.gotroot.com, but it seems that the rules.conf from gotroot.com has around 585 lines in it and the one from the whm update has about 840.
Any feedback is appreciated.
I noticed at the end of the update that mod_security was updated to version 1.9.1 or something like that.
I had used a custom ruleset for mod_sec which was mentioned in this thread:
http://forums.cpanel.net/showthread.php?t=30159
Should I update the mod_sec ruleset again, or is the version that is packaged with the latest WHM/Cpanel update good enough for general purpose webserver?
I'd like to be as secure as possible. I took a look at the mod_sec rules that are located at http://www.gotroot.com, but it seems that the rules.conf from gotroot.com has around 585 lines in it and the one from the whm update has about 840.
Any feedback is appreciated.