@phdthesis{digilib67429, month = {August}, title = {PENERAPAN MODSECURITY, FAIL2BAN, IPTABLES, DAN RULE OWASP UNTUK MENINGKATKAN KEAMANAN WEB}, school = {UIN SUNAN KALIJAGA YOGYAKARTA}, author = {NIM.: 20106050064 Muhammad Chabib Al Rahman}, year = {2024}, note = {Pembimbing: Dr. Ir. Bambang Sugiantoro, S.Si., M.T., IPM.}, keywords = {Keamanan web, ModSecurity, SQL Injection, XSS, SDLC}, url = {https://digilib.uin-suka.ac.id/id/eprint/67429/}, abstract = {The digital era has facilitated communication and access to information but has also increased the risk of cyber threats such as SQL Injection and Cross-Site Scripting (XSS). Websites and online applications, including those managed by the Indonesian government, often become targets of attacks that can expose sensitive data and damage systems. This research aims to enhance web security by implementing ModSecurity, Iptables, Fail2ban, and OWASP rules on an Apache server. The goal is to detect and block cyber attacks and prevent unauthorized access. The methodology follows the SDLC (System Development Life Cycle) approach, including the phases of Requirements Analysis, Design, Implementation, Testing, Evaluation, and Conclusion. The results show that this combination of tools significantly improves protection, with effective detection and blocking of attacks. Evaluation also indicates that vulnerabilities existed without the firewall, whereas no vulnerabilities were detected after its implementation. Recommendations include regular software updates and increased security awareness among web administrators.} }