Plesk - Nimbusec Webhosting Security

Table of Contents

This how-to guide describes the usage of the Nimbusec Webhosting Security Plugin for Plesk.

Installation & Uninstallation

For the installation and uninstallation, please refer to the instructions on the Github repository: https://github.com/cumulodev/nimbusec-plesk.

Usage

Setup

After successfully installing the Nimbusec Plesk Extension a setup screen can be found asking for the Nimbusec API Key and Secret.

Setup Tab

In order to download the Nimbusec Agent and start detecting webshells, please enter your API Key and Secret and click on "Download Server Agent". If you don't have API credentials yet, get in contact with plesk@nimbusec.com.

Settings

The settings screen allows to configure the extension:

  • Register and unregister Plesk domains in the Nimbusec Portal
  • View the Nimbusec Agent Configuration
  • Configure schedule and advanced options for the Nimbusec Agent
  • Activate the Nimbusec Agent

Register and unregister Plesk domains

Domains Settings

The register view shows all domains which are available within your Plesk installation. In order to allow the Nimbusec Agent to scan your domains you must first register them with a plan (e.g link them). To conduct this, select one or more domain you want to register, select the wished plan and click on "Register the selected domains".

The domains will be registered and are moved below the correct plan. From there it is possible to unregister the domains.

In the unregister view you see all domains which are already registered with Nimbusec and grouped by their corresponding plan. In case you want the Nimbusec Agent to stop scanning your domains, select the domains you wish to unregister and click on "Unregister the selected domains".

View the Nimbusec Agent Configuration

The Agent Congfiguration view shows you the current configuration file which is used by the Nimbusec Agent every time it starts scanning. This will give you the possibility of verifying the Agent's functionality. For more information about the agent configuration file, please refer to: https://kb.nimbusec.com/Server Agent/agent-configuration.

Set Run Settings for the Nimbusec Agent

In order to start the Nimbusec Agent's scanning process, it must be activated. This can be done by checking the "Status" checkbox and clicking on "Save settings" afterwards.

Additionally, the Nimbusec Agent must be set to a specific schedule interval. This means basically how often the Nimbusec Agent should scan every day. For that you can choose between one, two, three or four times a day. Again, save the settings afterwards by clicking the "Save settings" button.

Update Agent

This screen gives you an overview about your current Nimbusec Agent installation. The extension will check for an updated version in the background and will show a green/success or yellow/warning message on top of the page in case of an available update. Please check back to this page from time to time.

Dashboard

The Dashboard is very new and shows the issues found on your monitored websites. From there you have the option to

  • view the possible malicious files,
  • move them to quarantine
  • remove from quarantine back to their origin
    • this is much likely the case, if a file was moved that is crucial for the website to run

Dashboard

Still need help? Get in touch!
Last updated on 14th Aug 2018