Hi, this plugin will protect your site from frontal attacks and it will prevent your site from being spammed. If someone hacked your site from the server side then this plugin cannot control that action.
First check to make sure you have minimal security features enabled, go to WP Security -> Dashboard. Check to make sure you have the following enabled.
- Admin Username
- Login Lockdown
- File Permission
- Basic Firewall
Once you have check the above then make sure you carry out the following.
- Do you have the following enabled Rename Login Page under Brute Force tab?
- Go to WP Security -> Filesystem Security and make sure you have the correct file permissions added to your site.
- If your site allows people to sign up then I suggest that you enable the following Login Lockdown under User Login tab.
- You should also enable one of the following features…..Completely Block Access To XMLRPC: or Disable Pingback Functionality From XMLRPC:
- You should also check the Additional Firewall Rules.
The above should set your website between basic to intermediate security level. There are many more features you will need to investigate further. But this should put you on the right track.
Let me know if you need more help.
Regards
-
This reply was modified 9 years, 7 months ago by
mbrsolution.
Thread Starter
gleg
(@gleg)
Hi,
where is number 4 above? How do you get to that setting?
Hi, for step number 4 click on WP Security -> Firewall -> Basic Firewall Rules.
Let me know if you need more help.
Regards
Thread Starter
gleg
(@gleg)
Hi Thanks for all the info.
On number 5, additional firewall rules, are you saying check all of those on the page or wanting me to look at them and decide? Most of my sites with your plugin are regular wordpress sites. Some use ebay’s api to pull in ads that I get a commission from if they click back and buy, not sure if any of this would effect that function. Other than that some of my customers “may” use proxy servers to look at my site. I didn’t know if that mattered either.
Thanks
In regards to point number 5, it is up to you to decide which security feature you want to enable. I pointed you to that area for you know. Remember not all features will work for you depending on the site you are installing the plugin.