Why need a firewall on webserver?

In a case where a standalone websever is the firewall.

With a software running, you still have to open incoming on 80 and SSH port.
SSHD takes care of logins
Apache takes care of HTTP

DDOS can not be stopped by software firewall or even hardware firewall.

Most breakins are due to bad scripts, easy gussing passwords, unupdated software.

So why do you need a firewall at all? In what cases, a firewall can make your sever more secure?

 

 

 

 

Top