Anuncios | VPSGrid
BetaEspañol
EnglishBeta EspañolPortuguês (Brasil)Coming soonFrançaisComing soonDeutschComing soonBeta translation — some areas may still appear in English.
Área de cliente

All announcements

Security

IP Abuse Monitoring: how VPSGrid protects network reputation

Every VPS on VPSGrid shares responsibility for the health of our Dallas network. Outbound spam, phishing, open relays, and compromised mail systems damage IP reputation for everyone — not only the source service. That is why we operate continuous IP abuse monitoring across active customer IPs and enforce a clear abuse policy.

This announcement explains our policy, how monitoring works, what customers can expect, and how we protect the platform without interrupting legitimate mail or application traffic.

Our IP abuse policy

VPSGrid prohibits using assigned public IPs for unsolicited bulk email, spam, phishing, malware distribution, open SMTP relays, botnet activity, or any traffic that places our address space on major blocklists. This applies to all Linux VPS, Windows VPS, and Custom VPS services.

  • Customer responsibility — You must secure your VPS, keep mail and web software patched, and prevent third parties from abusing outbound SMTP or submission ports.
  • Fair use of email — Transactional and application mail is acceptable when volume and behavior stay within normal patterns and recipients have opted in where required by law.
  • Enforcement — Confirmed abuse may lead to warnings, temporary restriction of mail ports, suspension, or termination under the VPSGrid Terms of Service — after review by our operations team.
  • No silent black-hole policy for customers — When risk is elevated, we notify the account contact so you can investigate and remediate quickly.

Policy goal: keep VPSGrid’s public IPv4 space clean, protect neighboring customers from collateral reputation damage, and give responsible operators a transparent path to stay compliant.

How we monitor active VPS IPs

Monitoring covers active VPS services with assigned public IPs on our platform. New deployments are enrolled automatically when the service comes online; terminated services are removed from active monitoring so we stay focused on live address space.

Our abuse pipeline watches outbound mail-related activity and reputation signals, including:

  • Outbound SMTP and submission ports — Ports commonly used for mail delivery and authenticated submission (including 25, 465, and 587) are observed at the infrastructure layer for unusual connection volume and failure patterns.
  • Behavioral thresholds — Short-window and hourly volume checks flag sudden spikes that often indicate spam campaigns, infected software, or misconfigured relays.
  • DNS-based blocklist checks — We periodically evaluate monitored IPs against well-known DNSBL providers used by mailbox providers worldwide.
  • Continuous sampling — Checks run on a recurring schedule so emerging abuse is detected early — not only after a provider complaint arrives.

How we protect the network

  1. Detect — Automated monitoring scores connection volume, failure patterns, and blacklist signals per customer IP.
  2. Alert — Internal operations receives severity-based alerts. When thresholds are crossed, the service owner also receives a notice at the WHMCS account email so remediation can start immediately.
  3. Review — Our team evaluates context: one-off application mail versus sustained abuse, blacklist listings, and repeat critical events.
  4. Act — We coordinate containment when needed (customer guidance, colocation coordination for port restrictions, or lifecycle actions under the Terms of Service). Monitoring itself does not silently rewrite customer firewalls or VPS configuration.

Important: Abuse monitoring is designed for visibility and response. Automatic detection does not replace human review for suspension decisions, and it does not replace your obligation to secure mail daemons, CMS plugins, and credentials on the VPS.

What customers should do

  • Disable unused mail services (Postfix, Exim, Sendmail, IIS SMTP) if you do not send mail from the VPS.
  • Use authenticated relays or reputable transactional providers when you need application email at scale.
  • Keep control panels, WordPress, plugins, and SSH credentials locked down — most spam bursts start from compromised software, not intentional campaigns.
  • If you receive an abuse notice from VPSGrid, investigate outbound mail processes immediately and reply via a support ticket with findings.

Transparency and network health

Platform availability remains visible on our Network Status page. Abuse monitoring sits alongside that operational visibility: one channel tells you whether the platform is healthy; the other protects the IP reputation that keeps mail and APIs deliverable for every customer on the Dallas network.

Questions about legitimate high-volume mail, PTR requirements, or a specific notice you received? Open a ticket from the client portal — we will help you stay compliant while keeping your workloads online.