Title: tbob21's Replies - page 2 | WordPress.org

---

# tbob21

  [  ](https://wordpress.org/support/users/tbob21/)

 *   [Profile](https://wordpress.org/support/users/tbob21/)
 *   [Topics Started](https://wordpress.org/support/users/tbob21/topics/)
 *   [Replies Created](https://wordpress.org/support/users/tbob21/replies/)
 *   [Reviews Written](https://wordpress.org/support/users/tbob21/reviews/)
 *   [Topics Replied To](https://wordpress.org/support/users/tbob21/replied-to/)
 *   [Engagements](https://wordpress.org/support/users/tbob21/engagements/)
 *   [Favorites](https://wordpress.org/support/users/tbob21/favorites/)

 Search replies:

## Forum Replies Created

Viewing 12 replies - 16 through 27 (of 27 total)

[←](https://wordpress.org/support/users/tbob21/replies/?output_format=md) [1](https://wordpress.org/support/users/tbob21/replies/?output_format=md)
2

 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Insert Pages] Latest version no longer working](https://wordpress.org/support/topic/latest-version-no-longer-working/)
 *  Thread Starter [tbob21](https://wordpress.org/support/users/tbob21/)
 * (@tbob21)
 * [4 years, 9 months ago](https://wordpress.org/support/topic/latest-version-no-longer-working/#post-14974788)
 * Unfortunately it doesn’t, these are public pages.
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Kadence Security – Password, Two Factor Authentication, and Brute Force Protection] .htaccess and wp-config.php CLEARED!](https://wordpress.org/support/topic/htaccess-and-wp-config-php-cleared/)
 *  [tbob21](https://wordpress.org/support/users/tbob21/)
 * (@tbob21)
 * [4 years, 11 months ago](https://wordpress.org/support/topic/htaccess-and-wp-config-php-cleared/#post-14781902)
 * Yes, I believe it was enabled on my sites. Just looking at my backups before 
   the 8.0 update the permissions were still 0400.
 * I believe there should have been a warning after update to warn that files may
   have been reset to “hazardous” permissions, if it wasn’t for the sites going 
   down I may have not noticed.
 * Just to be clear, I realize that this isn’t as much of an issue on dedicated 
   hosting, but on shared hosting it is more likely to be an issue.
    -  This reply was modified 4 years, 11 months ago by [tbob21](https://wordpress.org/support/users/tbob21/).
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Kadence Security – Password, Two Factor Authentication, and Brute Force Protection] .htaccess and wp-config.php CLEARED!](https://wordpress.org/support/topic/htaccess-and-wp-config-php-cleared/)
 *  [tbob21](https://wordpress.org/support/users/tbob21/)
 * (@tbob21)
 * [4 years, 11 months ago](https://wordpress.org/support/topic/htaccess-and-wp-config-php-cleared/#post-14781727)
 * I did see that, as mentioned in that very post setting to more restricted permissions
   is more secure.
 * Required? Maybe not, but the WP documentation does say it’s a “hazard” to leave
   it at 644.
 * I was more concerned with the plugin overriding the permissions I had set previously
   which should not be happening, sounds like the plugin needed more testing before
   this major release.
    -  This reply was modified 4 years, 11 months ago by [tbob21](https://wordpress.org/support/users/tbob21/).
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Kadence Security – Password, Two Factor Authentication, and Brute Force Protection] .htaccess and wp-config.php CLEARED!](https://wordpress.org/support/topic/htaccess-and-wp-config-php-cleared/)
 *  [tbob21](https://wordpress.org/support/users/tbob21/)
 * (@tbob21)
 * [4 years, 11 months ago](https://wordpress.org/support/topic/htaccess-and-wp-config-php-cleared/#post-14781494)
 * I disagree on the wp-config.php permissions.
 * See the following documentation:
 * > [Changing File Permissions](https://wordpress.org/support/article/changing-file-permissions/)
 * > NOTE: If you installed WordPress yourself, you likely DO need to modify file
   > permissions. Some files and directories should be “hardened” with stricter 
   > permissions, specifically, the wp-config.php file. This file is initially created
   > with 644 permissions, and it’s a hazard to leave it like that. See Security
   > and Hardening.
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Kadence Security – Password, Two Factor Authentication, and Brute Force Protection] .htaccess and wp-config.php CLEARED!](https://wordpress.org/support/topic/htaccess-and-wp-config-php-cleared/)
 *  [tbob21](https://wordpress.org/support/users/tbob21/)
 * (@tbob21)
 * [4 years, 11 months ago](https://wordpress.org/support/topic/htaccess-and-wp-config-php-cleared/#post-14777843)
 * OK, maybe it was then. I never had this issue previously, and it did seem to 
   keep the previous permissions if it was overwriting the files.
 * Either way, I’m no longer using that function as there seems to be too much risk
   of it breaking something.
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Kadence Security – Password, Two Factor Authentication, and Brute Force Protection] .htaccess and wp-config.php CLEARED!](https://wordpress.org/support/topic/htaccess-and-wp-config-php-cleared/)
 *  [tbob21](https://wordpress.org/support/users/tbob21/)
 * (@tbob21)
 * [4 years, 11 months ago](https://wordpress.org/support/topic/htaccess-and-wp-config-php-cleared/#post-14777782)
 * If banned IP’s are set to write to the database that option shouldn’t affect 
   anything. The files were never getting overwritten hourly before version 8.
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Kadence Security – Password, Two Factor Authentication, and Brute Force Protection] .htaccess and wp-config.php CLEARED!](https://wordpress.org/support/topic/htaccess-and-wp-config-php-cleared/)
 *  [tbob21](https://wordpress.org/support/users/tbob21/)
 * (@tbob21)
 * [4 years, 11 months ago](https://wordpress.org/support/topic/htaccess-and-wp-config-php-cleared/#post-14777608)
 * It was also saving them with 644 permissions. I had to go through and manually
   update the permissions on 50+ sites.
 *   Forum: [Reviews](https://wordpress.org/support/forum/reviews/)
    In reply to:
   [[Kadence Security – Password, Two Factor Authentication, and Brute Force Protection] Many features removed.](https://wordpress.org/support/topic/free-version-now-useless-2/)
 *  Thread Starter [tbob21](https://wordpress.org/support/users/tbob21/)
 * (@tbob21)
 * [4 years, 11 months ago](https://wordpress.org/support/topic/free-version-now-useless-2/#post-14777540)
 * I see it now. That is a very strange place to put it.
 * I can see why there are so many reviews thinking features a lot of missing features
   because of the confusing UX. For example, under features the submenu items are
   the same as the TABS, while some of the other areas are completely separate pages,
   this should be consistent.
 * I think just moving Features, Tools, and Advanced to the Configure menu all together
   would likely reduce confusion.
 * This would make a lot more sense to me:
 * Configure
    – Features (submenu not needed as there are already tabs) – Global
   Settings – Lockouts – Tools – Advanced
 * User Groups and Notifications seem fine.
 * I’d adjust my review but it doesn’t seem like I’m able to.
    -  This reply was modified 4 years, 11 months ago by [tbob21](https://wordpress.org/support/users/tbob21/).
    -  This reply was modified 4 years, 11 months ago by [tbob21](https://wordpress.org/support/users/tbob21/).
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Kadence Security – Password, Two Factor Authentication, and Brute Force Protection] .htaccess and wp-config.php CLEARED!](https://wordpress.org/support/topic/htaccess-and-wp-config-php-cleared/)
 *  [tbob21](https://wordpress.org/support/users/tbob21/)
 * (@tbob21)
 * [4 years, 11 months ago](https://wordpress.org/support/topic/htaccess-and-wp-config-php-cleared/#post-14777505)
 * Had .htaccess not finish saving because of this and broke a site. Had to restore
   the .htaccess from a backup.
 * Disabling Settings > Configure > Global Settings seems to have stopped it from
   being re-saveing every hour.
 * It should only be updating these files on config save!
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[User Access Manager] Permissions issue](https://wordpress.org/support/topic/permissions-issue-27/)
 *  Thread Starter [tbob21](https://wordpress.org/support/users/tbob21/)
 * (@tbob21)
 * [5 years, 3 months ago](https://wordpress.org/support/topic/permissions-issue-27/#post-14324797)
 * 2.2.13 seems to have solved the issue for us. Thanks for the quick update!
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Theme My Login] Unable to login into admin site](https://wordpress.org/support/topic/unable-to-login-into-admin-site/)
 *  [tbob21](https://wordpress.org/support/users/tbob21/)
 * (@tbob21)
 * [6 years, 1 month ago](https://wordpress.org/support/topic/unable-to-login-into-admin-site/#post-13091394)
 * Same issue. Reverted to an older version and all is well.
 *   Forum: [Reviews](https://wordpress.org/support/forum/reviews/)
    In reply to:
   [[CatalogX - Catalog Mode, Enquiry & Quotes for WooCommerce] Avast reported a virus in demo website](https://wordpress.org/support/?post_type=topic&p=9038209)
 *  [tbob21](https://wordpress.org/support/users/tbob21/)
 * (@tbob21)
 * [9 years, 3 months ago](https://wordpress.org/support/?post_type=topic&p=9038209&paged=2#post-9066091)
 * One of my sites got hacked through this plugin a few days ago. I’ve since restored
   a backup and uninstalled the plugin.
 * Shouldn’t the changelog show something like “Patched Arbitrary File Upload Vulnerability”
   to inform users running older versions that it is a high priority security patch?

Viewing 12 replies - 16 through 27 (of 27 total)

[←](https://wordpress.org/support/users/tbob21/replies/?output_format=md) [1](https://wordpress.org/support/users/tbob21/replies/?output_format=md)
2