Portal Home > Knowledgebase > Articles Database > Changing Default Ports
Changing Default Ports
Posted by RobInRockCity, 02-09-2015, 11:52 AM |
Probably another newbie question...
Is there any security benefit in having my web host change the default port #'s for WHM, cPanel, and WebMail to something different?
To me this is a good idea because it creates more work for someone snooping around my VPS.
And while there may be tools out there to scan every possible port, why use the same ports that probably everyone else is using for WHM, cPanel and WebMail?!
Thoughts?
Rob
|
Posted by EdgeServ - TSM, 02-09-2015, 12:05 PM |
Its security by obscurity. The ports are still open and vulnerable if there is a vulnerability for them. I don't think cPanel allows you to change their ports either. If anything, change SSH port to something other than 22 and use SSH keys and disable password auth.
|
Posted by bdennie, 02-09-2015, 12:09 PM |
I would agree with edgeserv. We use the standard cpanel ports but changed the SSH port to something different and we also disable root login. This way they have to get the username along with the key.
|
Posted by LiteSpace-Smith, 02-09-2015, 12:12 PM |
true he said @edgeserv ,I think for WHM/cPanel/Webmail etc port can not be replaced because it has a default of cpanel but the settings are provided in WHM on the Tweak Settings.
But you can change the default SSH port to prevent things you do not want.
|
Posted by RobInRockCity, 02-09-2015, 01:23 PM |
Another strike for "security through obscurity"!!
Oh, okay.
No sure that I understand what you mean.
SSH is a protocol that allows a client to securely connect to a server, right?
When I think of SSH, I think of it almost being synonymous with FTP. So, for example, I think you use SSH to FTP things to and from your server, right?
So how does SSH come into this conversation? (Sorry if that is a dumb question!)
Rob
|
Posted by iserversupport, 02-09-2015, 02:10 PM |
Even if you change SSH port you can connect to the server by specifying custom port. Its always good to have a custom port for SSH
|
Posted by NetHosted-Darryl, 02-10-2015, 07:17 AM |
SSH isn't used for FTP, they are different protocols unless you are using SFTP which is FTP over SSH, more traditionally though FTPS will be used which is FTP secured via TLS/SSL over standard FTP port (21) as opposed to SFTP port (22 by default as it's SSH).
|
Posted by AttackerNET, 02-10-2015, 11:01 AM |
In regards to your technical question, You can just change your cPanel port, There is no way to change WHM port. You can change cPanel port by modifying the file /var/cpanel/cpanel.config and change it from 2082 to anything that you want, for example: 3333 , You need to restart cPanel after that.
In that case, Your SSL URL for cpanel should be 3334 (Automatically +1 your regular cpanel port)
You can always restrict access to your own IPs(i.e: static ip, VPS, etc)
|
Add to Favourites Print this Article
Also Read
geoip (Views: 745)