WordPress.org

Ready to get started?Download WordPress

Ideas

wp-admin folders should be configurable

  1. R33D3M33R
    Member

    12345

    I think you would be more secure from hackers, when you could rename the wp-admin folder to something else. So my idea is: there should be an option in wp-config.php where you could define the location of wp-admin folder. Replacing wp-admin in each file is time consuming and when you upgrade you loose your changes. So make it configurable if possible!

    Thanks :)

    Posted: 7 years ago #
  2. allstar
    Member

    12345

    Most likely problem with this is where do you stop? The first thing I liked about WordPress when I started using it was how easy it was to install. Adding a section into the intall page saying "you can change the wp-admin folder name" makes instalation look harder when infact it isn't.

    Perhaps it would be better to have the folders stay named as they are but the URL for the admin pages be changed through htaccess on the permalinks page?

    Posted: 7 years ago #
  3. xsakex
    Member

    So make it configurable if possible!

    I think that is a good idea.

    Adding a section into the intall page saying "you can change the wp-admin folder name" makes instalation look harder when infact it isn't.

    I think that this option will be more usefull than hindrance for newer users

    Posted: 7 years ago #
  4. R33D3M33R
    Member

    12345

    Adding a section into the intall page saying "you can change the wp-admin folder name" makes instalation look harder when infact it isn't.

    This would be just an option in the config file. Most of the users leave this alone if they don't know what is doing.

    Perhaps it would be better to have the folders stay named as they are but the URL for the admin pages be changed through htaccess on the permalinks page?

    Maybe some users don't have this option turned on. I for example can't use htaccess on my server.

    Posted: 7 years ago #
  5. Samuel Wood (Otto)
    Tech Ninja

    12345

    You don't get security through obscurity. The folder itself should be secure even if a hacker knows the name of it.

    And if the folder is already secure, then changing its name doesn't add any extra security to it.

    Posted: 7 years ago #
  6. R33D3M33R
    Member

    12345

    Changing the name prevents hackers from using wordlists and bruteforce attacks.

    Posted: 7 years ago #
  7. Kimb Jones
    Member

    This is and has been an excellent idea for a long, long time now. I have no idea why it wasn't included in the recent and rather large update.

    I can only assume this is harder than it seems from the surface because of the nature of the WP system.

    However, the ASP.NET CMS 'Umbraco' manages it quite well. You can change the location of the CMS folder simply by changing a line in an XML file and then renaming the appropriate folder:

    add key="umbracoPath" value="/umbraco"

    Something like this could be incorporated into the wp-config file in a similar manner to the $table_prefix option.

    What do you all think?

    Posted: 7 years ago #
  8. Kimb Jones
    Member

    Bump?

    Anyone else still interested in this?

    Posted: 7 years ago #
  9. paccma
    Member

    I am...

    Posted: 6 years ago #
  10. dempsey
    Member

    I think this would be a great addition! It would involve quite a lot of work as all references to wp-admin would have to get changed to eg $WP_Admin_Path or whatever and I guess it would break some plugins, but it is definatley a much needed addition!

    Posted: 6 years ago #

RSS feed for this topic

Topic Closed

This topic has been closed to new replies.

  • Rating

    12345
    14 Votes
  • Status

    Duplicate of another idea