Gert
Forum Replies Created
-
Hi Gerroald,
No, the problem is that, although I set the option to block the IP of users who try to sign in as “admin” WordFence does not seem to block users who try to sign in as “admin”. Or any of the other defined usernames.
The next time this user would try to login as “admin” it should be immediately blocked again. Otherwise I comnpletely misunderstand this functionality of WordFence.
Having said all of that: I removed all of the “invalid” usernames I previously defined and than I reinserted only the “admin” username. Now it seems to work. Buhh.
I did not try to add additional “invalid” usernames again yet.
Thanx,
GertHi Gerroald,
I hope this is going to work.
https://www.awesomescreenshot.com/project/1028573/05333d85e0522f934df9a811669806c7
Gert
Hi Gerroald,
I get a lot of login attempts from all kind of different IP addresses. Today seems to be a bit of a bad day with some 40 attempts from 40 different IP addresses in the past 6 hours, but that is the general picture. I guess it is not really a security issue as the user “admin” does not exist. Still, I wonder why the blocking option does not work.
Thanx,
GertHi Gerroald,
Thanx for coming back to me.
Yes, the Enable brute force protection-option is still set to ON.
Gert
Hi Gerroald,
As much as I would like to, this forum does not seem to have the option to share screenshots. As far as the Live Traffic goes, the typical message is:
Istanbul, Turkey attempted a failed login using an invalid username “admin”. https://sitename/wp-login.php
6/14/2019 8:50:06 PM (40 minutes ago)
IP: 185.84.180.48 Hostname: bhl-2.bilintel.com
Human/Bot: Human
Browser: Firefox version 62.0 running on Linux
Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:62.0) Gecko/20100101 Firefox/62.0The settings of the “immediate block of IP users” is pretty straight forward to: I entered “admin” in the big block and I hit enter. The “admin” moved to the bottom under the box. I also tried to block “adm”, “administrator”, “login”, “support”
Does this help?
Gert
- This reply was modified 7 years ago by Gert.
— closed due to no response —
— closed due to duplicate —