install modsecurity for your platform

get rules from gotroot applicable to your modsecurity version

  • download from http://gotroot.com/ into /etc/apache2/modsecurity/ for example
    • recommended confs: apacheN-rules, exclude, jitp, proxy, recons, rootkits, rules, useragents

create a config for apache to load the modsecurity module


restart apache

implement more TikiSecurity

