• Tranny

    (@tranny)


    I run a very high traffic site with lots of activity. I have 400,000 registered members and a new comment made on average every 3 minutes.

    I never used to have any issues with the plugin, but after upgrade to the latest version, which came after a long time of no updates, it started to randomly lock out members without them failing to login.

    Because I have a very active site, I stay in touch with my most active members so I get to hear from them if something like this happen. At first I thought this had something to do with switches to IPv6 cause many members started to access the site form those. But it no longer seems to be the case.

    This one member was once locked out when his IP was not on the list of locked out IPs. It kept him locked out for almost two days, but then he was able to log back in and comment, so I though the problem with switch to IPv6 was over but now he’s locked out again, his IP is NOT on the list of locked out IPs yet he can’t log in.

    He’s a trusted member who spends a lot of time on my site every day. It really bothers me to know he can’t login. I realize most WP sites are splogs that don’t see much activity so this may not have been experienced, but trust me, it’s happening. Would restoring the previous version of the plugin resolve the problem?

    https://wordpress.org/plugins/login-lockdown/

Viewing 3 replies - 1 through 3 (of 3 total)
  • mvandemar

    (@mvandemar)

    @tranny – is the guy who is getting locked out on an IPv6 as well? I don’t have it coded to support IPv6 yet so that may indeed be the issue. Also, when you say that he was locked out for 2 days, how long do you have the lockout set for?

    If you like and are willing, I could do some debugging on your setup, see if we can narrow down why this is happening. If so drop me a line at michael at endlesspoetry dot com.

    -Michael

    Thread Starter Tranny

    (@tranny)

    Hello Michael,

    I use the default settings so the lockout is set for 1 hour and time within which failed logins are counted is 5 minutes. It would appear that this second lockout is permanent. It has not let him log in for 2 days again and still not letting him. I fear all other people using IPv6 are also locked out.

    I’m not sure about debugging on the site. That may be a bit tricky.

    mvandemar

    (@mvandemar)

    @tranny – My guess is that it is related to the IPv6 issue, since I know for certain I haven’t coded that in yet. I will see what I can do to fix it and will push an update as soon as I have. The big issue though is testing, since I don’t have a block of IPv6 addresses to test from. I will try though.

    Would you be willing to beta test a copy of the plugin before I make it go live? Drop me an email if so please.

    -Michael

Viewing 3 replies - 1 through 3 (of 3 total)
  • The topic ‘Keeps Locking Some Users Out Even Without Faled Logins’ is closed to new replies.