Fortify WHM Litespeed CloudLinux

Job ID: 40036433

Budget: ₹600 – ₹1,500 INR

I need a security-focused engineer to take a fresh WHM/cPanel server running Litespeed and CloudLinux and lock it down properly. My main objective is enhanced security, so every step you take should reduce attack surface, block common threats, and make day-to-day management safer.

The job in a nutshell
• Install and configure CloudLinux on the server, making sure CageFS and other account-isolation features are active.
• Replace Apache with Litespeed (latest stable) and tune it for reliability under heavy traffic.
• Integrate the server with my existing Cloudflare account, enabling DNS, SSL, WAF rules, rate limiting, and page-rule hardening to deliver strong DDoS protection.
• Deploy a malware-scanning solution (Imunify360, ClamAV, or your preferred tool) and schedule automated daily scans with email alerts.
• Harden WHM/cPanel: CSF firewall, ModSecurity custom rules, SSH best practices, two-factor authentication, brute-force protection, and removal/disablement of unused services.
• Produce a concise hand-over report listing what was installed, key settings, and how to keep everything updated.

Acceptance criteria
1. Cloudflare connection confirmed via green padlock, WAF in “Managed” mode, and test traffic showing Cloudflare IPs in Litespeed logs.
2. DDoS mitigation passes at least one controlled load test without downtime.
3. Malware scanner runs automatically and flags the provided EICAR test file.
4. Security checklist (firewall, mod_security, SSH, cPanel tweaks) signed off.

I will supply root SSH and Cloudflare credentials as soon as we agree on the timeline. Let me know your proposed workflow and any extra tools you like to use—if they strengthen security, I’m open to them.
Related categories: System Admin Linux Web Security Apache Security Cloudflare