{"id":51005,"date":"2019-01-08T13:00:00","date_gmt":"2019-01-08T19:00:00","guid":{"rendered":"https:\/\/blog.cpanel.com\/?p=51005"},"modified":"2019-01-08T13:00:00","modified_gmt":"2019-01-08T19:00:00","slug":"security-advisor-101","status":"publish","type":"post","link":"https:\/\/devel.www.cpanel.net\/blog\/products\/security-advisor-101\/","title":{"rendered":"Security Advisor 101"},"content":{"rendered":"

Inside the Security Center section of WHM lies a feature that some cPanel & WHM users may not be familiar with. Security Advisor<\/a> is a feature that when selected, displays possible security concerns that hosting providers will want to address, as well as a solution to that warning message. The settings that are flagged may be problematic in some configurations but are not something that would be addressed through a cPanel & WHM version upgrade. So what exactly is Security Advisor?  Let’s dive in!<\/p>\n

What is Security Advisor?<\/h3>\n

<\/p>\n

When selected from the left-hand menu in WHM, Security Advisor fires off a check of services installed, software versions, various passwords strengths, and other various configurations. It then displays either a red, yellow, grey, or green status for that particular check, and educates and informs you on some possible issues that may arise by related to those alerts.<\/span><\/p>\n

For example: if you look at the first entry in Security Advisor from the image above, you’ll see the advisory reads:<\/p>\n

Apache vhosts are not segmented or chroot()ed<\/strong><\/p><\/blockquote>\n

This is then followed by instructions on how to resolve this advisory:<\/p>\n

Enable \u201cJail Apache\u201d in the \u201cTweak Settings<\/a>\u201d area, and change users to jailshell in the \u201cManage Shell Access<\/a>\u201d area. Consider a more robust solution by using \u201cCageFS on CloudLinux<\/a>\u201d<\/p><\/blockquote>\n

Color me interested!<\/h3>\n

The messaging in Security Advisor is color-coded<\/a> depending on the severity of the possible issue. The red advisories are indicative of a more severe issue. We strongly recommend addressing these issues immediately. The yellow advisories are a possible issue that we recommend investigating and resolving as soon as possible. Grey advisories are informational and may indicate a permissions issue where a user may have an unusual level of access. Finally, green advisories are notifications that the Security Advisor does not indicate a problem in that area.<\/p>\n

Configuring Security Advisor Notifications<\/h3>\n

In WHM, the Contact Manager<\/a> interface (WHM >> Home >> Server Contacts >> Contact Manager<\/em>) allows you to specify when and where your server sends various notifications, including notifications around the Security Advisor. Contact Manager is set by default to send alerts (as they’re configured, either by Email, HipChat, a URL, SMS, or etc) when detecting new issues with high importance<\/strong>.<\/p>\n

<\/p>\n

Inside of Contact Manager, you can configure the importance level of Security Advisor alerts (Low, Medium, High or Off) and the method of delivery in which you wish to receive the notifications:<\/p>\n

<\/p>\n

Clicking on the dropdown menu under the “Receives” column will allow you to set the priorities in how the Type of communication will be received. This is important as when you’re configuring the Security Advisor Notifications (mentioned above), these choices will determine how you will be notified when an advisory is tripped. The “Edit” button allows you to configure a destination (i.e. email address, URL, phone number for SMS, ICQ number, etc) for that notification to be sent to!<\/p>\n

Be a contributor!<\/h2>\n

The list of services and other items that Security Advisor checks is generated internally by cPanel. Security Advisor offers a different advantage over other features in cPanel & WHM; the ability to fork off and customize the Security Advisor for yourself! cPanel maintains a GitHub repository<\/a> containing an open source version Security Advisor to fork off and develop on your own.<\/p>\n

You could easily download the repo of Security Advisor, customize it to check your list of services and other features, and then make a pull request to have your work reviewed and merged into the official cPanel GitHub repository, improving the Security Advisor for everyone!<\/p>\n

If you’re not already familiar with the feature, give the Security Advisor a test spin. If you have any questions or comments about the Security Advisor, or how to make your own contribution to it, feel free to reach out to us via Slack<\/a>, Discord<\/a>, or the Official cPanel Subreddit<\/a>. If you’d like to request additions or changes to the Security Advisor, don’t hesitate to submit a feature request<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"

Inside the Security Center section of WHM lies a feature that some cPanel & WHM users may not be familiar with. Security Advisor is a feature that when selected, displays possible security concerns that hosting providers will want to address, as well as a solution to that warning message. The settings that are flagged may be problematic […]<\/p>\n","protected":false},"author":77,"featured_media":65085,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[49],"tags":[89,45,325],"class_list":["post-51005","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-products","tag-cpanel","tag-proddevsec","tag-product-development"],"acf":[],"yoast_head":"\nSecurity Advisor 101 | cPanel<\/title>\n <!-- Mirrored from cpanel.net/wp-json/wp/v2/posts/51005/ by HTTrack Website Copier/3.x [XR&CO'2014], Fri, 06 Sep 2024 11:40:24 GMT --> <meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=https://cpanel.net/"https:////devel.www.cpanel.net//blog//products//security-advisor-101///" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Security Advisor 101 | cPanel\" \/>\n<meta property=\"og:description\" content=\"Inside the Security Center section of WHM lies a feature that some cPanel & WHM users may not be familiar with. Security Advisor is a feature that when selected, displays possible security concerns that hosting providers will want to address, as well as a solution to that warning message. The settings that are flagged may be problematic […]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/devel.www.cpanel.net\/blog\/products\/security-advisor-101\/\" \/>\n<meta property=\"og:site_name\" content=\"cPanel\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/cpanel\/\" \/>\n<meta property=\"article:published_time\" content=\"2019-01-08T19:00:00+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/devel.www.cpanel.net\/wp-content\/uploads\/2019\/01\/secadv101.png\" \/>\n\t<meta property=\"og:image:width\" content=\"3858\" \/>\n\t<meta property=\"og:image:height\" content=\"1527\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"cPanel Community\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@cPanel\" \/>\n<meta name=\"twitter:site\" content=\"@cPanel\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"cPanel Community\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/devel.www.cpanel.net\/blog\/products\/security-advisor-101\/\",\"url\":\"https:\/\/devel.www.cpanel.net\/blog\/products\/security-advisor-101\/\",\"name\":\"Security Advisor 101 | cPanel\",\"isPartOf\":{\"@id\":\"https:\/\/devel.www.cpanel.net\/#website\"},\"datePublished\":\"2019-01-08T19:00:00+00:00\",\"dateModified\":\"2019-01-08T19:00:00+00:00\",\"author\":{\"@id\":\"https:\/\/devel.www.cpanel.net\/#\/schema\/person\/8cf97408aad4fb70cf55d11a1d4f57f8\"},\"breadcrumb\":{\"@id\":\"https:\/\/devel.www.cpanel.net\/blog\/products\/security-advisor-101\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/devel.www.cpanel.net\/blog\/products\/security-advisor-101\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/devel.www.cpanel.net\/blog\/products\/security-advisor-101\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/devel.www.cpanel.net\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Security Advisor 101\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/devel.www.cpanel.net\/#website\",\"url\":\"https:\/\/devel.www.cpanel.net\/\",\"name\":\"cPanel\",\"description\":\"Hosting Platform of Choices\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/devel.www.cpanel.net\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/devel.www.cpanel.net\/#\/schema\/person\/8cf97408aad4fb70cf55d11a1d4f57f8\",\"name\":\"cPanel Community\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/devel.www.cpanel.net\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/e1949945083b5526bb95711bd3d616b3?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/e1949945083b5526bb95711bd3d616b3?s=96&d=mm&r=g\",\"caption\":\"cPanel Community\"},\"description\":\"The web hosting industry's most reliable management solution since 1997. With our first-class support and rich feature set, it's easy to see why our customers and partners make cPanel & WHM their hosting platform of choice. For more information, visit cPanel.net.\",\"sameAs\":[\"https:\/\/cpanel.net\"],\"url\":\"https:\/\/devel.www.cpanel.net\/blog\/author\/cpadmin\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Security Advisor 101 | cPanel","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/devel.www.cpanel.net\/blog\/products\/security-advisor-101\/","og_locale":"en_US","og_type":"article","og_title":"Security Advisor 101 | cPanel","og_description":"Inside the Security Center section of WHM lies a feature that some cPanel & WHM users may not be familiar with. Security Advisor is a feature that when selected, displays possible security concerns that hosting providers will want to address, as well as a solution to that warning message. The settings that are flagged may be problematic […]","og_url":"https:\/\/devel.www.cpanel.net\/blog\/products\/security-advisor-101\/","og_site_name":"cPanel","article_publisher":"https:\/\/www.facebook.com\/cpanel\/","article_published_time":"2019-01-08T19:00:00+00:00","og_image":[{"width":3858,"height":1527,"url":"https:\/\/devel.www.cpanel.net\/wp-content\/uploads\/2019\/01\/secadv101.png","type":"image\/png"}],"author":"cPanel Community","twitter_card":"summary_large_image","twitter_creator":"@cPanel","twitter_site":"@cPanel","twitter_misc":{"Written by":"cPanel Community","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/devel.www.cpanel.net\/blog\/products\/security-advisor-101\/","url":"https:\/\/devel.www.cpanel.net\/blog\/products\/security-advisor-101\/","name":"Security Advisor 101 | cPanel","isPartOf":{"@id":"https:\/\/devel.www.cpanel.net\/#website"},"datePublished":"2019-01-08T19:00:00+00:00","dateModified":"2019-01-08T19:00:00+00:00","author":{"@id":"https:\/\/devel.www.cpanel.net\/#\/schema\/person\/8cf97408aad4fb70cf55d11a1d4f57f8"},"breadcrumb":{"@id":"https:\/\/devel.www.cpanel.net\/blog\/products\/security-advisor-101\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/devel.www.cpanel.net\/blog\/products\/security-advisor-101\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/devel.www.cpanel.net\/blog\/products\/security-advisor-101\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/devel.www.cpanel.net\/"},{"@type":"ListItem","position":2,"name":"Security Advisor 101"}]},{"@type":"WebSite","@id":"https:\/\/devel.www.cpanel.net\/#website","url":"https:\/\/devel.www.cpanel.net\/","name":"cPanel","description":"Hosting Platform of Choices","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/devel.www.cpanel.net\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/devel.www.cpanel.net\/#\/schema\/person\/8cf97408aad4fb70cf55d11a1d4f57f8","name":"cPanel Community","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/devel.www.cpanel.net\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/e1949945083b5526bb95711bd3d616b3?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/e1949945083b5526bb95711bd3d616b3?s=96&d=mm&r=g","caption":"cPanel Community"},"description":"The web hosting industry's most reliable management solution since 1997. With our first-class support and rich feature set, it's easy to see why our customers and partners make cPanel & WHM their hosting platform of choice. For more information, visit cPanel.net.","sameAs":["https:\/\/cpanel.net"],"url":"https:\/\/devel.www.cpanel.net\/blog\/author\/cpadmin\/"}]}},"_links":{"self":[{"href":"https:\/\/devel.www.cpanel.net\/wp-json\/wp\/v2\/posts\/51005"}],"collection":[{"href":"https:\/\/devel.www.cpanel.net\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/devel.www.cpanel.net\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/devel.www.cpanel.net\/wp-json\/wp\/v2\/users\/77"}],"replies":[{"embeddable":true,"href":"https:\/\/devel.www.cpanel.net\/wp-json\/wp\/v2\/comments?post=51005"}],"version-history":[{"count":0,"href":"https:\/\/devel.www.cpanel.net\/wp-json\/wp\/v2\/posts\/51005\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/devel.www.cpanel.net\/wp-json\/wp\/v2\/media\/65085"}],"wp:attachment":[{"href":"https:\/\/devel.www.cpanel.net\/wp-json\/wp\/v2\/media?parent=51005"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/devel.www.cpanel.net\/wp-json\/wp\/v2\/categories?post=51005"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/devel.www.cpanel.net\/wp-json\/wp\/v2\/tags?post=51005"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}