In this manual of TripleZero iT we deal with Scammers actively using fake emails. Security is layers: updates, unique passwords, 2FA, fewer open ports and monitoring. One weak login makes the rest useless.
We write based on the working method in our customer panel and the control panels that belong to your package (DirectAdmin, CyberPanel or Plesk). Follow the steps in order and test after each change.
Preparation
- Login for the TripleZero iT customer panel.
- Access to DirectAdmin, CyberPanel, Plesk, or the VPS console — depending on your product.
- A current backup or snapshot if you change something structurally.
- The exact hostname or IP you will be testing on.
Steps
- Make an inventory of which services are available (web, mail, SSH, RDP, databases).
- Update software and delete unused accounts.
- Enable 2FA on customer panel and control panel.
- Restrict access (IP allowlist or VPN) to management ports.
- Check logs for repeated failed logins.
Check whether it was successful
- Does the service work from another network or 4G (no old DNS cache)?
- Do you not see any new 4xx/5xx or auth errors in logs?
- Is the time correct: DNS-TTL, Microsoft-verification or SSL-issuance may take minutes.
If things still go wrong
Reset the previous value if the change is clearly the culprit. Write down error texts literally (no paraphrase). Send in a ticket to TripleZero iT: product, domain/IP, timestamp and screenshot.
Can't figure it out after these steps? Open a ticket at TripleZero iT via the customer panel. Mention your domain name or VPS hostname, the time and what you have already tried.
Related: SSL, Wordfence, phishing and VPS firewall.
