Kilépés a tartalomból
  • Bejelentkezés
  • Regisztráció
WordPress.org

Magyar

  • Sablonok
  • Bővítmények
  • Hírek
  • Névjegy
  • Alapok
    • Történet
    • Követelmények
    • Telepítés
  • Tárhely
  • Frissítés
  • Biztonsági mentés
  • Biztonság
  • WordPress letöltése
Get WordPress

Bővítmények

  • Kedvenceim
  • Béta tesztelés
  • Fejlesztők
Letöltés

Login LockDown – Protect Login Form

Szerző: WebFactory Ltd
  • Részletek
  • Vélemények
  • Telepítés
  • Fejlesztés
Támogatás

Leírás

Login LockDown records the IP address and timestamp of every failed login attempt. If more than a certain number of attempts are detected within a short period of time from the same IP range, then the login function is disabled for all requests from that IP address. This helps to prevent brute force password discovery and attacks.
The plugin defaults to a 1 hour lock out of an IP block after 3 failed login attempts within 5 minutes. This can be modified in options. Administrators can release locked out IP ranges manually from the panel.

Configure the plugin from Settings – Login LockDown

Képernyőmentések

  • Protect your login form by banning IPs with multiple failed login attempts

Telepítés

  1. Extract the zip file into your plugins directory into its own folder.
  2. Activate the plugin in the Plugin options.
  3. Customize the settings from Settings – Login LockDown panel.

Vélemények

Does one job and does it well

strarsis 2022.09.26.
Nice plugin that adds protection against brute-force login attempts.

Just the kind of WP plugin we need more of!

David Waumsley 2021.09.20.
I can't believe after many many years of use I have not said thank you. I really appreciate this plugin. I recommended this recently to a friend who was delighted there was no advertising and upsell. Indeed! Great to know there are still some who go to the effort of sharing and updating because it's a nice thing to do.

a must have for high volume websites

aseannewstoday 2021.04.01.
This is brilliant. It's a must have for websites that attract a lot of traffic and which therefore will attract a lot of forced login attempts.

Works great!

ondrique 2020.05.11.
Thank you for this perfect plugin. You wouldn't believe how many login attempts you can get even on a brand new website w/o any external links so far. This is one of the plugins, I install everywhere.

Great little plugin

2020.05.10.
Thanks, been working away in background for ages.

Useful security plug

Closed account 2019.09.25.
I like this plugin and use it on a number of websites I am a webmaster for. In case it helps, here are some thoughts on how/why I have configured the plugin. I leave the first 3 entries as default (3,5,60). They seem ideal to me. I set Lockout Invalid Usernames? to YES. If they don't know the Username, why are they trying to login? I am careful, so I won't lock myself out. I set Mask Login Errors? to YES. Denies useful intelligence to people who are trying to login when they shouldn't. Why help them? I set Show Credit Link? to NO. I love helping people - and as it happens it's my professional work - however telling people about the plugin so they can protect their blogs also tells people who are trying to login when they shouldn't what security I am using. This is a more minor point, however it also falls under the 'need to know policy' - they don't.
51 (az összes) vélemény olvasása

Közreműködők és fejlesztők

“Login LockDown – Protect Login Form” egy nyílt forráskódú szoftver. A bővítményhez a következő személyek járultak hozzá:

Közreműködők
  • WebFactory

“Login LockDown – Protect Login Form” 3 nyelvre lett lefordítva. Köszönet a fordítóknak az áldozatos munkájukért!

“Login LockDown – Protect Login Form” fordítása a saját nyelvünkre.

Érdekeltek vagyunk a fejlesztésben?

Browse the code, check out the SVN repository, or subscribe to the development log by RSS.

Változási napló

v1.83

  • 2022/10/04
  • fixed timezone bug

v1.82

  • 2022/09/23
  • WebFactory took over development
  • a full rewrite will follow soon, for now we patched some urgent things
  • prefixed function names that are in global namespace
  • properly escaped all inputs

Old changelog

ver. 1.8.1 30-Sep-2019

  • adding missing ./languages folder

    ver. 1.8 30-Sep-2019

  • fixed issues with internationalization, added .pot file

  • changed the credit link to default to not showing

    ver. 1.7.1 13-Sep-2016

  • fixed bug causing all ipv6 addresses to get locked out if 1 was

  • added in WordPress MultiSite functionality
  • fixed bug where subnets could be overly matched, causing more IPs to be blocked than intended
  • moved the report for locked out IP addresses to its own tab

    ver. 1.6.1 8-Mar-2014

  • fixed html glitch preventing options from being saved

    ver. 1.6 7-Mar-2014

  • cleaned up deprecated functions

  • fixed bug with invalid property on a non-object when locking out invalid usernames
  • fixed utilization of $wpdb->prepare
  • added more descriptive help text to each of the options
  • added the ability to remove the “Login form protected by Login LockDown.” message from within the dashboard

    ver. 1.5 17-Sep-2009

  • implemented wp_nonce security in the options and lockdown release forms in the admin screen

  • fixed a security hole with an improperly escaped SQL query
  • encoded certain outputs in the admin panel using esc_attr() to prevent XSS attacks
  • fixed an issue with the ‘Lockout Invalid Usernames’ option not functioning as intended

    ver. 1.4 29-Aug-2009

  • removed erroneous error affecting WP 2.8+

  • fixed activation error caused by customizing the location of the wp-content folder
  • added in the option to mask which specific login error (invalid username or invalid password) was generated
  • added in the option to lock out failed login attempts even if the username doesn’t exist

    ver. 1.3 23-Feb-2009

  • adjusted positioning of plugin byline
  • allowed for dynamic location of plugin files

    ver. 1.2 15-Jun-2008

  • now compatible with WordPress 2.5 and up only

    ver. 1.1 01-Sep-2007

  • revised time query to MySQL 4.0 compatibility

    ver. 1.0 29-Aug-2007

  • released

Meta

  • Verzió: 1.83
  • Utolsó frissítés: 3 hónap ezelőtt
  • Aktív telepítések: 100 000+
  • WordPress verzió: 4.0 vagy magasabb
  • Tesztelve eddig: 6.1.1
  • PHP verzió: 5.2 vagy magasabb
  • Nyelvek:

    Dutch, Dutch (Belgium), English (US), ás Japanese.

    Fordítás a kiválasztott nyelvre

  • Címkék:
    loginlogin formsecurity
  • Bővített nézet

Vélemények

Összes
  • 5 csillagos 43
  • 4 csillagos 0
  • 3 csillagos 2
  • 2 csillagos 0
  • 1 csillagos 6
Az értékeléshez be kell jelentkezni.

Közreműködők

  • WebFactory

Támogatás

Elmúlt két hónapban megoldott problémák:

1 problémából 1

Támogatási fórum megtekintése

  • Rólunk
  • Hírek
  • Tárhelyszolgatatás
  • Adományozás
  • Swag
  • Documentation
  • Developers
  • Get Involved
  • Learn
  • Showcase
  • Bővítmények
  • Sablonok
  • Patterns
  • WordCamp
  • WordPress.TV
  • BuddyPress
  • bbPress
  • WordPress.com
  • Matt
  • Privacy
  • Public Code
WordPress.org
WordPress.org

Magyar

  • Visit our Facebook page
  • Visit our Twitter account
  • Visit our Instagram account
  • Visit our LinkedIn account
A kód költemény.