{"id":12243,"date":"2018-03-27T03:36:36","date_gmt":"2018-03-27T03:36:36","guid":{"rendered":"https:\/\/www.hostduplex.com\/?p=12243"},"modified":"2023-10-18T20:08:36","modified_gmt":"2023-10-18T20:08:36","slug":"the-importance-of-a-web-application-firewall-for-wordpress-sites","status":"publish","type":"post","link":"https:\/\/www.hostduplex.com\/blog\/the-importance-of-a-web-application-firewall-for-wordpress-sites\/","title":{"rendered":"The importance of a Web Application Firewall for WordPress Sites"},"content":{"rendered":"<p class=\"p1\"><span class=\"s1\">Before we dive in and get down to the nitty-gritty, let\u2019s begin with some basic background information on firewalls (feel free to bypass this part if you\u2019ve already done your homework). At the most basic level, <em>A Firewall is a software and\/or hardware feature that acts as a shield or \u2018wall\u2019 between your website and all incoming traffic<\/em>. <\/span><span class=\"s2\">Think of it as the space between your home router and the internet<\/span><span class=\"s1\">. In a typical home internet setup, the wireless router serves as the hardware firewall while your computer\u2019s and\/or device&#8217;s standard operating system (Windows, Mac OSX, etc.) serves as the software component of the firewall. <\/span><\/p>\n<p><a href=\"https:\/\/www.hostduplex.com\/wp-content\/uploads\/2018\/03\/FireWall-1.png\" target=\"_blank\"><img decoding=\"async\" class=\" wp-image-12247 aligncenter\" src=\"https:\/\/www.hostduplex.com\/wp-content\/uploads\/2018\/03\/FireWall-1-300x179.png\" alt=\"\" width=\"374\" height=\"223\" \/><\/a><\/p>\n<p><span class=\"s1\">Firewalls protect you\u00a0from the bad guys by using customized filters. These filters are a basic set of rules that are defined in order of prioritization. This is important because as a company, you only want authorized and safe traffic accessing your website. On top of utilizing best practices such as using secure passwords and frequently changing them, you also need to learn about the general importance and the necessity of a firewall. (I wrote a recent blog post about a similar security topic called \u2018<a href=\"https:\/\/www.hostduplex.com\/2018\/03\/16\/the-importance-of-two-factor-authentication-with-wordpress\/\" target=\"_blank\">Two-Factor Authentication<\/a>\u2019 that you can read about if you&#8217;re intrigued). So, in a nutshell, a firewall is that extra important security layer that your website and computer needs. For this blog entry, I\u2019ll be focusing on what is known as \u2018web application firewalls\u2019 or WAF\u2019s for short.<\/span><\/p>\n<p class=\"p1\"><span class=\"s1\">WAF\u2019s are more of a recent introduction to the WordPress ecosystem. WAF\u2019s work hard to counter cyber attacks from malicious hackers who are seeking to <a href=\"https:\/\/www.hostduplex.com\/blog\/how-do-cybercriminals-steal-credit-card-information\/\" target=\"_blank\" rel=\"noopener\">steal highly sensitive information<\/a>. To keep things easy peasy, all you need to remember is that WAF\u2019s exist to protect your WordPress website!\u00a0<\/span><\/p>\n<p class=\"p1\"><strong><span class=\"s1\">Why Do I Need a Web Application Firewall For My WordPress Site?<\/span><\/strong><\/p>\n<p class=\"p1\"><span class=\"s1\">Historically speaking, 2017 holds the RECORD for the total number of cyber attacks in terms of security breaches, ransomware, and exploits according to an annual global security report issued by AppRiver. You very well may have heard about the infamous Equifax nightmare that resulted in possibly 143 million people having their highly <a href=\"https:\/\/www.hostduplex.com\/blog\/how-to-protect-against-leaking-of-your-pii\/\" target=\"_blank\" rel=\"noopener\">sensitive personal data<\/a> (social security and driver\u2019s license numbers) compromised. Ok, Idean, that all sounds fine and dandy but do I really need a <a href=\"https:\/\/www.hostduplex.com\/blog\/wordpress-web-application-firewall-plugins\/\" target=\"_blank\" rel=\"noopener\">web application firewall<\/a> for my WordPress site? I mean, nothing has happened so far and all this is just so companies can make an extra buck right?<span class=\"Apple-converted-space\">\u00a0<\/span>Well, my friend, do I have some interesting and frankly scary data to share with you. Did you know that among all CMS (content management system) platforms, WordPress gets hacked the most? Furthermore, there are up to 90,000 attacks per minute on WordPress sites according to Wordfence, the creator of a popular WordPress plugin. Unfortunately, this is naturally the price we consumers pay for the \u2018user-friendly\u2019 WordPress CMS.<\/span><\/p>\n<p class=\"p1\"><strong><span class=\"s1\">How A Web Application Firewall Works and What We Offer<\/span><\/strong><\/p>\n<p class=\"p3\"><span class=\"s2\">WAF\u2019s are configured to either (or in some hybrid cases both) a) allow certain traffic or to b) block traffic. Whitelisting, or allowing certain data from a pool of accepted IP addresses ensures that the incoming traffic to your website is deemed \u2018safe.\u2019 On the other hand, blacklisting certain IP addresses will ensure that malicious data will not access your website and is designed to thwart anything that can slightly resemble a cyber attack. In regards to WAF\u2019s, all these configurations are carefully executed and set at the software level for WordPress sites.<\/span><\/p>\n<p><a href=\"https:\/\/www.hostduplex.com\/wp-content\/uploads\/2018\/03\/Hacker.png\" target=\"_blank\"><img decoding=\"async\" class=\"size-medium wp-image-12246 aligncenter\" src=\"https:\/\/www.hostduplex.com\/wp-content\/uploads\/2018\/03\/Hacker-300x225.png\" alt=\"\" width=\"300\" height=\"225\" \/><\/a><\/p>\n<p class=\"p3\"><span class=\"s2\">At HD, we understand how important security is for your WordPress site. No different than a 24-hour state of the art home security system that protects your property, our highly skilled security experts strive to go above and beyond to ensure stability and thwart attacks <em>before<\/em> they happen. Just how a home burglary happens approximately every 13 seconds, hackers across the world are hard at work attempting to steal your precious information and data. These days, you need more than a full-grown Rottweiler on the premises to protect your valuable belongings! At an age where we\u2019ve seen notorious attacks like the Equifax breach, a hosting provider that provides 24\/7 security over your website is a <i>mus<\/i>t and not just a \u2018nice to have.\u2019 At HD, we offer a standard WAF that we use for all clients out of the box as well as a highly advanced WAF for our premium plans (in partnership with the good folks at <a href=\"https:\/\/sucuri.net\/\" target=\"_blank\" rel=\"noopener\">Sucuri<\/a>). HD\u2019s state of the art <a href=\"https:\/\/www.hostduplex.com\/managed-wordpress-hosting\/#duplexguard\" target=\"_blank\">DuplexGuard<\/a><\/span><strong>\u2122\u00a0<\/strong>security will keep you safe and protect you from 99% of attacks while also preventing them from happening. As always, we&#8217;re here to answer any of your questions so please, don&#8217;t be a stranger!<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Before we dive in and get down to the nitty-gritty, let\u2019s begin with some basic background information on firewalls (feel free to bypass this&#8230;<\/p>\n","protected":false},"author":6,"featured_media":12247,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[34,91],"tags":[],"class_list":["post-12243","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-general","category-seo","article","has-excerpt","has-avatar","has-author","has-date","has-comment-count","has-category-meta","has-read-more","thumbnail-"],"jetpack_sharing_enabled":true,"jetpack_featured_media_url":"","_links":{"self":[{"href":"https:\/\/www.hostduplex.com\/blog\/wp-json\/wp\/v2\/posts\/12243","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.hostduplex.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.hostduplex.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.hostduplex.com\/blog\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/www.hostduplex.com\/blog\/wp-json\/wp\/v2\/comments?post=12243"}],"version-history":[{"count":4,"href":"https:\/\/www.hostduplex.com\/blog\/wp-json\/wp\/v2\/posts\/12243\/revisions"}],"predecessor-version":[{"id":16066,"href":"https:\/\/www.hostduplex.com\/blog\/wp-json\/wp\/v2\/posts\/12243\/revisions\/16066"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.hostduplex.com\/blog\/wp-json\/"}],"wp:attachment":[{"href":"https:\/\/www.hostduplex.com\/blog\/wp-json\/wp\/v2\/media?parent=12243"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.hostduplex.com\/blog\/wp-json\/wp\/v2\/categories?post=12243"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.hostduplex.com\/blog\/wp-json\/wp\/v2\/tags?post=12243"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}