Budget: 4000 UAH Deadline: 1 day
contact us
It is necessary to protect the VPS server (HestiaCP, nginx+apache, OpenCart) from HTTP flood and bot traffic.
There is a load from many IPs (Alibaba, Hetzner, DigitalOcean).
Requirements:
configuration of iptables / firewall
configuration of nginx limit_req / limit_conn
configuration of fail2ban
analysis of nginx logs
It is important not to break the site and SEO.
I am looking for a specialist with experience in protecting production servers.
In your response, please write:
which method you will use
your experience
Budget: 4000 UAH Deadline: 1 day
contact us
Budget: 2500 UAH Deadline: 3 days
Hello! I have reviewed the task, the problem is clear: heavy requests to index.php break the cache and hang Apache with the database, but I will solve this issue. I have over 3 years of experience in administration, worked at ApexNodes on game hosting, so filtering garbage traffic on Linux is a familiar task for me. I am well-versed in HestiaCP and VestaCP, so I will set everything up correctly through templates to ensure the configurations do not break. I have encountered distributed flooding from data centers multiple times and successfully implemented autobahn systems through ipset, which reduced Load Average from 50.0 to 0.5 without harming SEO. The work will take a maximum of 2 days, considering log monitoring, to cut off all audacious subnets and ensure the site is flying. We will definitely work well together, I look forward to your feedback!
Budget: 4500 UAH Deadline: 4 days
Hello.
I have practical experience in configuring and securing production servers with nginx and online stores. I have worked with VPS, control panels, and e-commerce projects.
How I will secure:
- I will limit excessive connections and frequent requests from a single IP.
- I will set up protection at the web server level to reduce load from bots.
- I will configure automatic blocking of suspicious activity.
- I will analyze logs and identify the main sources of load.
I perform all configurations carefully — without affecting real users and SEO.
I work calmly and without haste, with attention to detail.
Cost: ~ 4,500 UAH
Completion time: 3–4 days
I am ready to start after analyzing the logs.
Budget: 5000 UAH Deadline: 1 day
Hello, I will do the protection. Write to me in private messages. I can start right away.
Budget: 5000 UAH Deadline: 1 day
Hello! Please, I am ready to discuss the details and specific tasks for the project. I suggest we agree on clarifying the details and conditions for the project's execution.
Budget: 2700 UAH Deadline: 1 day
Good day. I can take care of it right now. I have solved such problems multiple times. Feel free to contact me.
Budget: 20000 UAH Deadline: 2 days
Good day!
I have experience in setting up production servers. I can protect a VPS from HTTP floods and bot traffic while considering SEO and website stability.
**Method (multi-level):**
1. **Nginx limit_req / limit_conn** — rate limiting at the nginx level (first barrier). Soft limits for the main site and directory, stricter for API/admin. Googlebot and other useful bots — a separate zone with higher limits to avoid affecting indexing.
2. **fail2ban** — automatic banning based on patterns in logs (repeated 429/404, suspicious User-Agent). Jail time 10–60 minutes to avoid blocking legitimate users with dynamic IPs.
3. **iptables / firewall** — limiting connections from a single IP (connlimit), optionally — blocking known data centers (Alibaba, Hetzner, DO) for aggressive paths (/wp-admin, /xmlrpc, etc.). Main site and directory — without strict blocking to preserve SEO.
4. **Log analysis** — script or cron for analyzing access.log: top IPs by requests, User-Agent, status codes. Helps configure fail2ban and check if useful bots are being banned.
**Experience:**
- VPS, nginx reverse proxy, SSL
- Rate limiting in nginx (allowlist for webhooks, request limits)
- Working with access.log / error.log for diagnostics
- Firewall, access restrictions to ports
- Runbooks for production, health checks
HestiaCP (nginx+apache) — I work with nginx configurations, considering the specifics of the panel.
**SEO:** Googlebot, Bingbot — not banned, limit_req for them is softer. Checking robots.txt and sitemap after configurations.
**Approach (to avoid breaking the site):**
- First nginx limit_req — the safest step
- Then fail2ban
- iptables — last, cautiously (data centers sometimes use regular users)
- If there is staging or testing capability — we check there first
**Cost:** $400–600 (approximately 1–2 days of work).
**Deadline:** 1–2 days.
I am ready to discuss the details.
Sergiy
Budget: 3000 UAH Deadline: 30 days
I can set up Cloudflare protection, or a captcha if needed.
I can look at the project as a whole.
Many years of experience with Linux.
10 proposals 27 July
34 proposals 22 July
7 proposals 18 July