Holdfire Hosting Blog

Wordpress tips, Holdfire Updates, Resources and more.

Holdfire clients using Mint, disable mod_security

Posted in Holdfire on January 17th, 2010 by Jordan | 1 Comment

We have currently changed around some of our mod_security settings on all of our servers and as a result have noticed a growing issue with Mint.

We receive the error "ModSecurity: Access denied with code 406 (phase 2). Invalid UTF-8 encoding: invalid byte value in character at ARGS:resource_title" from all instances of Mint on all of our servers. We looked into it and according to several posts on Mint's troubleshooting forum, Shaun has recommended the user include an .htaccess file in the mint directory with the following which will disable mod_security for that directory only.

<IfModule mod_security.c>
SecFilterEngine Off
SecFilterScanPOST Off
SecFilterCheckURLEncoding Off
SecRuleRemoveById 950801
</IfModule>

References:

Celebrating 4 years of service

Posted in Holdfire on November 23rd, 2009 by Jordan | No Comments

This past October Holdfire celebrated it's 4th birthday. While we were a little late on celebrating another year of business, we did manage to launch our new website. Along with our new website, we have decided to retire one of our shared plans and on of our reseller plans.

This decision was based on the lack of interest in the two plans removed as well as simplifying our selection for potential clients. While more options are great to have sometimes it can be too confusing--we're going to keep it simple! And since we removed two plans we decided to "upgrade" the remaining packages with more disk space or bandwidth (or both.)

We also expanded in other areas and now offer the ability to purchase virtual private servers and dedicated servers. Each have three plans to chose from and give you the ability to customize them based on your needs. On either of the servers you can select your operating system, control panel and add the option for fully managed support. However, with our dedicated servers while there is a main setup, you can opt to add extra harddrives in any RAID configuration, order extra IP blocks, upgrade/downgrade your main harddrive, and of course opt for other add-ons available.

You may see some bugs here and there with our website and other products (forum, blog, support area) but we're trying to squash them as we see them. If there's something we've missed, send an email or support ticket letting us know--it's greatly appreciated!

Chirp – Server Migration

Posted in Holdfire on September 5th, 2009 by Jordan | No Comments

Chirp has been our main (shared) server for over two years now, and has served us quite well. However, in the last few months I have noticed that the server specs are no longer providing the quality of service that I expect for Holdfire. Server loads average 1.5 or higher on a daily basis, and when I've accessed cPanel throughout the day, I notice in increase in wait time for it to load.

Because of this we have deployed a new server to replace Chirp. As we have many clients on Chirp, we will only be migrating accounts on certain days. To organize this process as best we can, we will only migrate via alphabetical order per day. A-G will begin migration on Sunday September 6th, H-N on Monday September 7th, O-U on Tuesday September 8th, and V-Z on Wednesday September 9th.

When your account has been migrated over in full, you will receive a new account details email which will include new nameservers, and the new server IP address. The chirp nameservers will remain in effect (although will be pointing to the new server on 9/10) until September 20th to allow all users time to change them. After this they will be deactivated and if you have an account still using these nameservers, the domain will be unable to connect properly.

If you have any questions about our migration, please submit a support ticket.

Creating a secure password

Posted in Resources on July 30th, 2009 by Steve | 1 Comment

Today it seems that people are still not creating secure passwords to use. Everyone should be using a secure password whether its just for a social networking site, banking website, home computer or a personal e-mail account.

The reason for utilizing a different secure password for each resource is to ensure that attempts to gain access to any of your accounts are prevented. You may be thinking that this is something hard to do or that you may forget the password you created but for how many simple options (free and paid) there are today, this is no excuse.

Majority of websites today allow you to reset your password simply by entering in your e-mail or username. So even if you were to create a hard uncrackable password and did forget it, you can always get your information back or reset simply by doing this.

There are many different ways to store these hard to remember passwords that are uncrackable. Some of the applications out there that can store these for you such as the all mighty popular 1Password for OS X, RoboForm for Windows, KeePass for Windows and LastPass for OS X/Windows/Linux. There are other ways as well, like simply creating a text file on your computer. While this may not seem secure it usually is especially if you hide it well or name it differently.

You can generate passwords without an application by going to websites such as Secure Password Generator by PcTools or Password Generator by Bytes Interactive. There are many more on the web too which you can easily find by doing a search for "generate password."

Now that we have gone different ways to generate and store your password, also have the option to create a safe password. You don't need to rely on a password generator, but rather by using creating one on your own. To help you create your own password, I have created an example that you can utilize.

Pick 3 easy-to-remember words so that we can get started on creating a password. For example, say you love cooking, your boyfriend's name is Steve (or girlfriend, et al.) and your favorite number is 14. You can then combine the letters from those three words make a password such. My example password from 'cooking,' 'steve,' and '14' was sCtoeOvKEi14G. I put it into one in my own method to remember.

You should notice that not only did I make every other letter something different, but I also capitalized some of the letters to make it even harder for someone to guess. Even if you didn't utilize a method like this but, I highly recommend you capitalize some of the letters and use numbers as well.

Lastly, more websites are increasing their security measures. Some may allow you to fill in a field to where answer a question that you either created or selected from a list. While I do recommend you fill these out, I also recommend that they be difficult answers. For example, if the question were "What High School did you attend?", now a days this answer could be very, very easily obtainable especially with social networks like Facebook. You might want to answer it with something completely different that you will still remember.

Hopefully you have found this post helpful. If you have any questions or feedback, feel free to leave a comment. Pass this on to those that you think may not have secure passwords especially family members. While you may not think it, people are out to get your information and secure passwords are vital in helping to ensure that does not happen. So make sure to change them if you have not already and do so every so often.

Just remember to be careful when creating your passwords, password question/answer, who you tell, where your store them and so forth.

Free .com domain with annual purchase

Posted in Holdfire on July 23rd, 2009 by Jordan | 3 Comments

It has been quite some time since we've had a promotion here at Holdfire. We decided to go ahead and change things up a bit since the summer has been quite placid. With any annual order, you receive a fee .COM domain name (or transfer) with your purchase.

To receive your free domain, simply chose any shared or reseller package from our order cart, then enter in your desired .COM domain. You will then be taken to the package description page where you will select annual from the billing options.

Voila!

« Older Entries | Newer Entries »