[{"data":1,"prerenderedAt":121},["ShallowReactive",2],{"seo-verification":3,"blog-securiser-vps-crowdsec-en":6},{"google":4,"bing":5},"EycwPY2XMyTkVzas3n1ygeNJFGAH513qrMjfDljzsMQ","",{"id":7,"slug":8,"title":9,"excerpt":10,"readTime":11,"views":12,"isPinned":13,"publishedAt":14,"category":15,"categories":20,"featuredImage":22,"bgImage":23,"posterImage":24,"relatedSolution":25,"intro":28,"sections":29,"ctaTitle":75,"ctaBody":76,"ctaButton":77,"ctaUrl":78,"relatedPosts":79},108,"securiser-vps-crowdsec","Securing your VPS with CrowdSec","Deploy CrowdSec on your VPS to block attacks thanks to behavioral detection and a shared community blocklist.",8,596,false,"2026-03-04T00:00:00+00:00",{"id":11,"name":16,"slug":17,"color":18,"icon":19},"Security & Monitoring","securite-monitoring","bg-rose-500\u002F10 text-rose-400","security",[21],{"id":11,"name":16,"slug":17,"color":18,"icon":19},null,"\u002Fblog\u002Fcovers\u002Fbg.svg","\u002Fblog\u002Fcovers\u002Fsecuriser-vps-crowdsec-poster.svg",{"categorySlug":26,"appSlug":27},"securite","crowdsec","CrowdSec modernizes server protection: instead of banning an IP based on your logs alone, it relies on the shared intelligence of an entire community. Behavioral analysis, modular bouncers and a collaborative blocklist make this open source tool a defense of choice to self-host on your VPS.",[30,34,44,47,69,72],{"type":31,"title":32,"body":33},"h2","Why self-host CrowdSec on a VPS","Fail2ban works in a closed loop: it reads your logs and bans according to your rules. CrowdSec adds a collaborative dimension. When its engine detects malicious behavior (SSH bruteforce, scan, web exploitation) thanks to scenarios, it reports the IP to a community database; in return, you benefit from a shared blocklist built from the reports of thousands of other machines. The result: you block malicious IPs before they even attack you. CrowdSec also separates detection (the agent that analyzes the logs) from remediation (the bouncers that apply the blocking at the firewall, Nginx, Traefik or Cloudflare level). This modular architecture and hosting everything on your VPS give you far richer protection than a simple local ban, without depending on a SaaS WAF that sees all your traffic pass through.",{"type":35,"title":36,"items":37},"ul","What CrowdSec brings to your VPS",[38,39,40,41,42,43],"Community blocklist: benefit from the reports of thousands of servers to block malicious IPs upstream.","Behavioral detection via scenarios (SSH, HTTP, bruteforce, scan) more refined than a simple failure count.","Modular bouncers: apply the blocking at the firewall, Nginx, Traefik, Cloudflare or application level.","Web console to visualize alerts, decisions and banned IPs in real time.","Hub of ready-to-use collections to protect SSH, Nginx, WordPress and many other services.","Low footprint and decoupled detection\u002Fremediation architecture, suited to a VPS.",{"type":31,"title":45,"body":46},"Requirements to host it","The CrowdSec agent is lightweight: a 1 vCPU VPS with 1 GB of RAM is enough to protect a standard web and SSH server. The local database (SQLite by default) takes up little space; switch to PostgreSQL only if you centralize several agents. You need root access to install the agent and the firewall bouncer, as well as the logs of the services to monitor (auth.log for SSH, access.log for Nginx). No additional inbound port is required: CrowdSec communicates outbound with the community API. A domain name is only necessary if you want to expose the local console.",{"type":48,"title":49,"steps":50},"steps","Install CrowdSec and its firewall bouncer",[51,54,57,60,63,66],{"title":52,"body":53},"Install the CrowdSec agent","Add the official repository then install: `curl -s https:\u002F\u002Finstall.crowdsec.net | sudo sh` then `sudo apt install crowdsec`. The agent automatically detects the services present (SSH, Nginx) and installs the appropriate collections.",{"title":55,"body":56},"Check the active scenarios","List what is loaded: `sudo cscli scenarios list` and `sudo cscli collections list`. Add a collection from the hub if needed, for example `sudo cscli collections install crowdsecurity\u002Fnginx`.",{"title":58,"body":59},"Install a bouncer to apply the blocking","The agent detects but does not block on its own. Install the firewall bouncer: `sudo apt install crowdsec-firewall-bouncer-iptables`. It inserts the decisions into iptables\u002Fnftables and actually bans the reported IPs.",{"title":61,"body":62},"Enable the community blocklist","Register the instance to receive the shared blocklist: `sudo cscli capi register`, then restart the agent. You now benefit from the reports of the entire community in addition to your own detections.",{"title":64,"body":65},"Test and inspect the decisions","Simulate a detection or check the state: `sudo cscli decisions list` displays the banned IPs, `sudo cscli alerts list` the alerts. You can ban manually with `sudo cscli decisions add --ip X.X.X.X`.",{"title":67,"body":68},"Connect the console (optional)","For graphical monitoring, enroll the agent in the CrowdSec console with `sudo cscli console enroll VOTRE_CLE`, or keep everything local via `cscli` if you prefer not to expose anything externally.",{"type":70,"body":71},"tip","Combine two bouncers for defense in depth: a firewall bouncer (iptables) that blocks SSH attacks and scans at the network level, and an application bouncer (Nginx or Traefik) that can present a captcha rather than outright blocking suspicious web IPs. This reduces false positives on your legitimate traffic while keeping strict remediation on the lower layers. Also consider whitelisting your office's fixed IP via `cscli` so you never ban yourself.",{"type":70,"title":73,"body":74},"The official documentation","For advanced configuration and options specific to the tool, refer to the \u003Ca href=\"https:\u002F\u002Fdoc.crowdsec.net\" target=\"_blank\" rel=\"noopener noreferrer\">official CrowdSec documentation\u003C\u002Fa>. This guide covers deployment on a VPS; the vendor's documentation remains the reference for fine-tuning, major updates and specific use cases.","Protect your VPS with CrowdSec","The ServOrbit Cloud VPS gives you root access and the resources needed to deploy the CrowdSec agent and its bouncers, and benefit from the community blocklist from day one.","Secure my Cloud VPS","\u002Fvps-cloud",[80,94,108],{"id":81,"slug":82,"title":83,"excerpt":84,"readTime":85,"views":86,"isPinned":13,"publishedAt":87,"category":88,"categories":89,"featuredImage":22,"bgImage":23,"posterImage":91,"relatedSolution":92},105,"superviser-vps-uptime-kuma","Monitoring your VPS with Uptime Kuma","Deploy Uptime Kuma on your VPS to monitor your sites and services self-hosted, with alerts and a public status page.",6,1520,"2026-03-07T00:00:00+00:00",{"id":11,"name":16,"slug":17,"color":18,"icon":19},[90],{"id":11,"name":16,"slug":17,"color":18,"icon":19},"\u002Fblog\u002Fcovers\u002Fsuperviser-vps-uptime-kuma-poster.svg",{"categorySlug":26,"appSlug":93},"uptime-kuma",{"id":95,"slug":96,"title":97,"excerpt":98,"readTime":99,"views":100,"isPinned":13,"publishedAt":101,"category":102,"categories":103,"featuredImage":22,"bgImage":23,"posterImage":105,"relatedSolution":106},106,"monitoring-vps-grafana-prometheus","VPS Monitoring with Grafana and Prometheus","Set up a Grafana + Prometheus stack on your VPS to collect, store and visualize your system and application metrics.",9,522,"2026-03-06T00:00:00+00:00",{"id":11,"name":16,"slug":17,"color":18,"icon":19},[104],{"id":11,"name":16,"slug":17,"color":18,"icon":19},"\u002Fblog\u002Fcovers\u002Fmonitoring-vps-grafana-prometheus-poster.svg",{"categorySlug":26,"appSlug":107},"grafana",{"id":109,"slug":110,"title":111,"excerpt":112,"readTime":85,"views":113,"isPinned":13,"publishedAt":114,"category":115,"categories":116,"featuredImage":22,"bgImage":23,"posterImage":118,"relatedSolution":119},107,"monitorer-vps-netdata","Monitor your VPS in real time with Netdata","Install Netdata on your VPS for per-second real-time monitoring: thousands of metrics, zero configuration, alerts included.",559,"2026-03-05T00:00:00+00:00",{"id":11,"name":16,"slug":17,"color":18,"icon":19},[117],{"id":11,"name":16,"slug":17,"color":18,"icon":19},"\u002Fblog\u002Fcovers\u002Fmonitorer-vps-netdata-poster.svg",{"categorySlug":26,"appSlug":120},"netdata",1785628461464]