CloudLinux hosting at Theory7
Stable and secure shared hosting thanks to CloudLinux on all our servers
- CloudLinux on all shared hosting servers
- CageFS isolation: your site shielded from others
- LVE resource limits for guaranteed performance
- Hardened kernel against known exploits
CloudLinux technology on all our servers
CageFS isolation per account
CageFS places every hosting account in an isolated virtual environment. If another website on the same server gets hacked, the attacker can't reach your files, databases, or email.
LVE resource limits
Lightweight Virtual Environment (LVE) guarantees that every website gets a fair share of server resources. A website with a traffic spike can't come at the expense of your site's performance.
Hardened kernel against exploits
CloudLinux uses a hardened Linux kernel with extra security patches. Known kernel exploits are blocked before they can cause damage, even if an official patch isn't available yet.
PHP Selector with multiple versions
Choose the optimal PHP version per website via the CloudLinux PHP Selector. From PHP 7.4 to 8.5 and newer, with the option to set a different version per domain.
Imunify security suite
All servers run Imunify: an advanced security platform that detects malware, blocks brute-force attacks, and automatically filters suspicious traffic. All at no extra cost.
SSH access on all packages
Thanks to CageFS isolation, you can safely get SSH access on all hosting packages. You have command-line access to your own files without it posing a security risk to other accounts.
What is the noisy neighbor problem and how does CloudLinux solve it?
The noisy neighbor problem is one of the biggest drawbacks of traditional shared hosting. When multiple websites run on the same server without resource limits, a single high-usage website can negatively affect the performance of all other websites. Think of an online store that suddenly gets ten times more visitors during a sale, or a WordPress site with a poorly optimized plugin that consumes excessive CPU.
On a server without CloudLinux, all websites share the same pool of CPU, memory, and disk capacity. If one website claims a large share, less remains for the rest. The result: slower load times, timeouts, and in the worst case, unreachable websites.
How CloudLinux solves this:
- LVE resource limits, every account gets hard limits for CPU, RAM, I/O, and processes. A website can never use more than what's allocated.
- Fair distribution, the available server resources are distributed fairly across all accounts. No account can disadvantage others.
- Automatic throttling, when an account hits its limit, it's automatically throttled instead of affecting the whole server.
The result: at Theory7 web hosting your websites consistently perform well, regardless of what other websites on the same server do. That's the difference CloudLinux makes.
Choose your CloudLinux hosting package
Includes CageFS, LVE, Imunify, and LiteSpeed Enterprise
- 1 website
- 1GB NVMe SSD storage
- CloudLinux + CageFS
- LiteSpeed Enterprise
- Free SSL certificate
- 3 websites
- 5GB NVMe SSD storage
- CloudLinux + CageFS
- LiteSpeed Enterprise
- SSH access
- 10 websites
- 15GB NVMe SSD storage
- CloudLinux + CageFS
- LiteSpeed Enterprise
- SSH access + cron jobs
CloudLinux, LiteSpeed, and NVMe: the ultimate hosting stack
Theory7 combines three leading technologies into a hosting stack that's unmatched in the Dutch hosting market. Each component reinforces the others, together delivering the best possible experience for shared hosting.
The three pillars of our hosting:
- CloudLinux, the operating system that provides account isolation (CageFS), fair resource distribution (LVE), and extra security (hardened kernel + Imunify). CloudLinux makes shared hosting reliable and secure.
- LiteSpeed Enterprise, the web server that processes PHP requests up to 12x faster than Apache. Includes built-in caching, HTTP/3 support, and the free LiteSpeed Cache plugin for WordPress and other CMS platforms.
- NVMe SSD storage, the fastest storage technology available for web hosting, with read speeds up to 7,000 MB/s. Databases and files load in milliseconds, directly resulting in faster load times.
This combination is standard with every hosting package: from Mini (€0.49/mo) to Ultimate (€19.99/mo). There are no cheaper packages with lesser technology. Whether you choose WordPress hosting, regular web hosting, or reseller hosting, you always get the full stack of CloudLinux, LiteSpeed Enterprise, and NVMe SSD.
Frequently asked questions about CloudLinux hosting
CloudLinux is a specialized operating system for web hosting, based on Linux but with important additions for stability, security, and performance management. It's used by more than 4,000 hosting providers worldwide and runs on more than 200,000 servers. CloudLinux adds technologies such as CageFS (account isolation), LVE (resource management), and a hardened kernel that provides extra protection against known exploits.
CageFS is a virtualized file system that places every hosting account in its own isolated environment. This means users on the same server can't see or access each other's files, processes, or data. If a website on the server gets hacked, the damage stays limited to that one account. CageFS is one of the main reasons shared hosting at Theory7 is secure.
LVE stands for Lightweight Virtual Environment. It's a CloudLinux technology that limits CPU, memory, I/O, and the number of processes per hosting account. This prevents a single high-usage website from affecting the performance of other websites on the same server. Every website gets a guaranteed share of resources, regardless of what other accounts do.
Yes, Theory7 runs CloudLinux on all shared hosting servers. This applies to every package, from Mini (€0.49/mo) to Ultimate (€19.99/mo). Our WordPress hosting and reseller hosting also run on CloudLinux. You don't need to choose an extra package or option: CloudLinux with CageFS and LVE is included by default.
Yes, CloudLinux adds multiple security layers that standard Linux distributions lack. The hardened kernel blocks known exploits, CageFS prevents hacked accounts from reaching other accounts, and Imunify detects and blocks malware and brute-force attacks. This combination makes shared hosting at Theory7 significantly safer than providers that run standard CentOS or AlmaLinux.
Yes, thanks to CageFS isolation, you can safely get SSH access on your hosting account. You have command-line access to your own files, databases, and tools, but you can't see or access the files of other accounts. SSH is available on all hosting packages at Theory7.
Via the CloudLinux PHP Selector, you can choose from multiple PHP versions per website, from PHP 7.4 to PHP 8.5 and newer. You can set a different PHP version per domain, which is handy if you host multiple websites with different requirements. Switching PHP versions is easy via DirectAdmin with no downtime.
No, there's no visible difference for visitors. CloudLinux works entirely in the background and has no effect on how your website looks or functions. What visitors do notice is the result: a stable, fast website that doesn't slow down because of other sites on the same server. CloudLinux keeps the hosting environment reliable.
Why does Theory7 run CloudLinux on all shared hosting servers?
Shared hosting means multiple websites run on the same physical server. This is the most affordable form of hosting, but it naturally comes with risks: if a website on the server consumes a lot of resources or gets hacked, it can affect all other websites. That's exactly the problem CloudLinux solves.
Theory7 runs CloudLinux on all shared hosting servers because we believe affordable hosting shouldn't come at the cost of stability and security. CloudLinux isn't an optional extra or premium add-on with us: it's standard on every package, from the Mini package at €0.49 per month to the Ultimate package. Whether you choose regular web hosting, WordPress hosting, or reseller hosting, your website always runs on CloudLinux.
CageFS: every website in its own isolated environment
CageFS is one of the core components of CloudLinux and arguably the most important security feature for shared hosting. CageFS creates a virtualized file system for every hosting account that's fully shielded from all other accounts on the same server.
In practice, this means the following: if you have a hosting account at Theory7, your website runs in its own virtual environment. You can only see your own files, databases, and processes. The files of other customers on the same server are completely invisible and inaccessible. This works both ways: other customers can't access your files either.
What CageFS protects against
CageFS isolation protects against a range of security risks inherent to shared hosting:
- Symlink attacks, a common technique where an attacker tries to read files from other accounts via symbolic links. CageFS makes this impossible because the files of other accounts simply don't exist within your virtual environment.
- Process inspection, on a regular Linux server, any user can see the running processes of all other users. CageFS limits the process list to only your own processes.
- Sensitive system files, CageFS hides sensitive configuration files and system information that an attacker could use to further compromise the server.
- Horizontal escalation, if an attacker gains access to an account through a vulnerability in a WordPress plugin, the damage stays limited to that one account. The attacker can't move on to other accounts thanks to CageFS isolation.
LVE: guaranteed resources for every website
Lightweight Virtual Environment (LVE) is CloudLinux's resource management technology. LVE allocates a guaranteed share of server resources to every hosting account and prevents any single account from using more than its fair share.
LVE manages four critical resources:
- CPU, every account gets a maximum percentage of CPU time allocated. A website with inefficient code or a sudden traffic spike can't use more CPU than what's allocated, so other websites keep running undisturbed.
- Memory (RAM), the amount of working memory per account is limited. A memory leak in a PHP script or a heavy database query can't consume the available memory for the entire server.
- I/O (disk access), the speed at which an account can read and write data to disk is capped. According to Google, load time is a critical ranking factor for websites. A heavy backup or import can't affect disk performance for all other accounts as a result.
- Processes, the maximum number of concurrently running processes per account is limited. A fork bomb or uncontrolled script can't fill up the server's process table.
The result is that your website consistently performs well, regardless of what other websites on the same server do. This predictable performance is one of the major advantages of CloudLinux hosting compared to shared hosting on standard Linux.
Hardened kernel: extra protection at the system level
CloudLinux runs on a hardened Linux kernel that includes additional security measures on top of the standard Linux kernel. The hardened kernel is maintained by the CloudLinux team and receives patches for known vulnerabilities faster than the standard kernels of CentOS or AlmaLinux.
The hardened kernel provides protection against kernel-level exploits that an attacker could use to break the isolation of individual accounts. Even if a zero-day vulnerability is discovered in the standard Linux kernel, the hardened CloudLinux kernel often already offers protection thanks to additional security mechanisms such as extra system-call filtering and memory protection.
Imunify: advanced security suite
Besides CageFS isolation and the hardened kernel, all Theory7 servers run Imunify: an advanced security platform specifically developed for web hosting. Imunify combines multiple security technologies in one integrated platform.
The main components of Imunify are:
- Malware scanner, automatically scans files for known malware, web shells, and suspicious code. Infected files are detected and quarantined.
- Web application firewall, filters incoming web traffic and blocks known attack patterns such as SQL injection, cross-site scripting (XSS), and remote file inclusion.
- Brute-force protection, automatically detects and blocks repeated login attempts on WordPress, DirectAdmin, and other applications.
- Proactive defense, analyzes PHP scripts in real time and blocks suspicious actions before they can cause damage, even if the malware isn't yet in the database.
These security measures all work in the background without requiring any configuration from you. They're active by default on all hosting packages, at no extra cost.
CloudLinux hosting vs standard shared hosting
Not all hosting providers use CloudLinux. Many providers run standard CentOS, AlmaLinux, or another Linux distribution without the additional isolation and security technologies of CloudLinux. The practical difference is significant.
| Feature | CloudLinux hosting (Theory7) | Standard Linux hosting |
|---|---|---|
| Account isolation | CageFS: full isolation per account | Basic permissions, limited isolation |
| Resource limits | LVE: guaranteed CPU, RAM, I/O | No hard limits, shared resources |
| Kernel security | Hardened kernel with extra patches | Standard kernel, depends on distro |
| Malware protection | Imunify with real-time scanning | Often optional or absent |
| PHP versions | Multiple versions configurable per account | Often limited to a single version |
| SSH security | Safe thanks to CageFS isolation | Risky due to lack of isolation |
| Noisy neighbor problem | Solved by LVE resource limits | Present: one site affects others |
With providers that don't use CloudLinux, you run the risk of the so-called noisy neighbor problem: another website on the same server consumes so many resources that your website becomes slower or even unreachable. With CloudLinux and LVE, this problem is fully solved.
Combined with LiteSpeed and NVMe for maximum performance
CloudLinux isn't the only part of the hosting infrastructure at Theory7. Our servers run the combination of CloudLinux with LiteSpeed Enterprise web servers and NVMe SSD storage. These three technologies reinforce each other and together deliver the best possible hosting experience for shared hosting.
LiteSpeed Enterprise processes PHP requests up to 12 times faster than Apache, making it the fastest web server technology on the market. Combined with NVMe SSD storage, which delivers read speeds up to 7,000 MB/s, web pages load blazingly fast. CloudLinux ensures this speed is consistently available for every website thanks to LVE resource management.
The combination means you get fast web hosting at Theory7 that's also stable and secure. You don't have to choose between speed and security: with CloudLinux, LiteSpeed, and NVMe, you get both. Check out our hosting packages and discover why more and more website managers choose the stability and security of CloudLinux hosting at Theory7.
PHP Selector: multiple PHP versions per account
One of the most practical features of CloudLinux for website managers is the PHP Selector. This tool lets you choose a different PHP version per website, from PHP 7.4 to PHP 8.5 and newer. This is especially valuable if you host multiple websites on the same account, since not every website is compatible with the same PHP version.
Say you run a WordPress website that works optimally on PHP 8.2, but you also host an older web application that still depends on PHP 7.4. On a server without CloudLinux, you'd have to choose: either run all websites on the same PHP version, or set up separate hosting accounts. With the CloudLinux PHP Selector, you set the optimal version per domain, with no compromises.
The PHP Selector also lets you configure individual PHP extensions and settings per account. Need the ionCube Loader for a specific application, or want to raise the upload limit? Through the DirectAdmin control panel, you adjust these settings easily without having to contact support. This flexibility is unique to CloudLinux and is missing on servers with standard Linux distributions.
MySQL Governor: database resources under control
Besides CPU, memory, and I/O, CloudLinux also manages database resources per account via the MySQL Governor. MySQL is often the biggest bottleneck on shared hosting servers: a single heavy database query can affect the performance of the entire MySQL server and slow down all websites on it as a result.
The MySQL Governor monitors database usage per account in real time and automatically intervenes when an account consumes an excessive amount of database resources. This works the same way as the LVE limits for CPU and memory: every account gets a fair share of database capacity and can't come at the expense of other accounts.
In practice, this means an online store with thousands of products and complex search queries can't affect the database performance of your WordPress blog on the same server. The MySQL Governor ensures every website has consistently fast database access, regardless of the load from other accounts. This is one of the reasons our web hosting delivers reliable performance, even during peak moments. Research by Uptime Institute shows that 99.9% uptime is the industry standard for professional hosting.
CloudLinux versus Docker and containerization
Some technically savvy users wonder how CloudLinux compares to Docker and other containerization technologies. Although both technologies offer isolation, they're designed for fundamentally different purposes.
Docker containers are designed for packaging and deploying applications. Every container holds a complete application with all its dependencies. Docker is popular among developers and in cloud-native environments, but it's not specifically designed for the challenges of shared web hosting.
CloudLinux is built specifically for the web hosting environment. CageFS provides file system isolation that works transparently with existing control panels such as DirectAdmin, without customers having to change their workflow. LVE provides fine-grained resource management that integrates seamlessly with the web hosting stack. The hardened kernel and Imunify specifically target the security challenges of shared hosting.
The difference comes down to focus. Docker solves a broad range of problems in software development, while CloudLinux is specifically optimized for running hundreds of websites securely and stably on the same server. For shared hosting, CloudLinux is the superior choice, and that's exactly why Theory7 uses it on all servers.
Why most budget hosts don't use CloudLinux
If CloudLinux offers so many advantages, why don't all hosting providers use it? The answer is simple: cost. CloudLinux is commercial software with a per-server license fee. For providers competing on the lowest possible price, every extra cost is a reason to cut corners.
Many budget hosting providers therefore run on free alternatives such as AlmaLinux or Rocky Linux. These operating systems are stable and reliable, but lack the specialized isolation, resource management, and security features of CloudLinux. Without CageFS, there's no account isolation. Without LVE, there's no per-account resource limiting. Without the hardened kernel, you miss an extra layer of security.
At Theory7, we've deliberately chosen to run CloudLinux on all shared hosting servers, including the cheapest Mini package at just €0.49 per month. We absorb the licensing costs of CloudLinux ourselves because we believe security and stability shouldn't be premium features. Every customer deserves the same protection, regardless of the package they choose.
Theory7's choice for quality infrastructure
The use of CloudLinux fits into a broader philosophy at Theory7: we invest in the best available technology for our hosting infrastructure, without passing this on as extra costs to customers. CloudLinux, LiteSpeed Enterprise, NVMe SSD storage, Imunify, DNSSEC, free SSL certificates, and daily backups are all included by default with every package.
This approach sets Theory7 apart from providers that offer basic hosting and then sell essential features as paid add-ons. With us, you pay a fair price for a complete package. SSH access is available on all packages, including shared hosting, made possible thanks to CloudLinux's CageFS isolation. With providers that don't use CloudLinux, SSH on shared hosting is often unavailable due to the security risks.
Whether you choose web hosting, WordPress hosting, or reseller hosting, you always get the full CloudLinux stack with CageFS, LVE, hardened kernel, and Imunify. Combined with LiteSpeed Enterprise and NVMe SSD, we offer a hosting platform that competes on performance, security, and stability with solutions that cost many times more. That's the Theory7 promise: professional hosting without compromise, affordable for everyone.
Performance improvement in practice
The benefits of CloudLinux aren't just theoretical. Benchmarks and customer experience show that websites on CloudLinux servers consistently deliver better performance than on traditional shared hosting. LVE resource limits ensure your website always has enough CPU and memory available, even during busy moments on the server. The MySQL Governor prevents database requests from slowing down because of other accounts.
For WordPress websites, the difference is especially noticeable. WordPress depends on PHP and MySQL, exactly the two components CloudLinux optimizes best. The PHP Selector ensures you can always use the fastest PHP version, the MySQL Governor guarantees fast database access, and the LVE limits prevent other sites from slowing down your WordPress installation. Combined with LiteSpeed Cache, available by default on all our servers, a WordPress website at Theory7 loads significantly faster than at providers on standard Linux.
Sources and references
- Google, Core Web Vitals, web.dev
- HTTP Archive, httparchive.org
- Uptime Institute, uptimeinstitute.com
Start with your own domain name
Instantly check whether your desired domain name is still available