2 Risposte
- Più recenti
- Maggior numero di voti
- Maggior numero di commenti
0
Hi
I understand your situation when your website is hacked, So when it is hacked you must take down the machine and check what is exactly happened in that machine, Checking logs etc.
Security Measures:
- I would suggest you to User AWS WAF, AWS WAF is Managed Service if your application is in Single Ec2 machine its not possible to you WAF so you can use either Load Balancer or CDN before integration of WAF.
- You can AWS predefined WAF rules to block unwanted traffic for example bots, query based, SQL injection rules etc
- If your application is Wordpress, Please check plugins updated and do. not install unverified plugins.
- Do Configure SSL certificate for the encryption in tranist, if you use load balancer so you will get free SSL from Certificate Manager.
Please check reference architecture https://docs.aws.amazon.com/solutions/latest/aws-waf3-security-automations/overview.html
Please let me know if you have any questions.
Thank You Ganesh
con risposta 2 anni fa
0
Looking at Security from a Well Architected perspective would be highly recommended here. Well architected labs.
Also, the following should help.
con risposta 2 anni fa
Contenuto pertinente
- AWS UFFICIALEAggiornata 2 anni fa
- AWS UFFICIALEAggiornata 2 anni fa
- AWS UFFICIALEAggiornata 3 mesi fa