See terminal and command line prompt for word press. SSH commands are different for all types of servers. Therefore, for the commands to be used, please refer to the server type documentation. Now you can use the following tips to secure your site. Try it. 1. protect important files. One of the best edits you can make is the error log, WP config. PHP and PHP. With the INI file. Protect htaccess files. The following changes will deny attempts to access these files: Confirm to load the summary jennimckinnon\/c1696c5f022e7aadca886716e69f9c99 file, PHP. Make sure there is no INI file. Instead, PHP5. You can use a file named ini. In this case, in the above rule, PHP. Ini is PHP5. Please replace with ini. Male 2 If you use a fixed IP address to restrict administrator access, you can also add the following rules to restrict access to the administrator dashboard and login pages. Load the summary jennimckinnon\/c4d00cd8dfc775b640ac. The first two lines redirect the unapproved IP address to the 404 error page. This also helps to resolve all redirection loops to avoid the site appearing to panic\/ Both instances of path to your site\/ must be edited to the actual path of \/path to your site\/. In addition, replace IP address one, IP address two, and IP address three with the actual IP address to access the page. If you want to add only one address, omit lines 9 and 10. You can repeat 10 rows as needed and change each row. You can also repeat 10 lines as needed and replace each IP address three with the actual IP address to be added to the white list. If you or your other users have dynamic IP addresses, multi site networks, or multiple users on the network that need to log in, you can use the following rules instead: Load the summary jennimckinnon\/9192 de868de5326e91de\file-htaccess load the summary jennimckinnon\/9192 de868de5326e91de and 2 lines, convert \/path to your site\/ to the actual path of \/path to your site\/ and convert it to your site \/ site. Don’t forget to change com to the actual domain. Many hackers use robots to access the administrator dashboard or try to log in from outside. This. After being added to the htaccess file, only people who manually enter the site in the address bar of the browser can access the page. Although it will not prevent hackers who try to guess the login details of users manually, in most cases, it will greatly reduce the number of undifferentiated intrusions that cause huge differences and suffer. 3. if visitors who prevent directory browsing enter a directory in the domain and then enter a directory in the address bar of the browser, you can view the site directory list in the front end. There is a fixed document structure on the text printer, so now someone is on your site. Nothing prevents you from visiting com\/wp-content-uploads\/ to view a list of folders and files. If hackers can easily view the target file literally without guessing the location of the file, it will be easier to hack into important files on the site, which is obviously not what they want. It is like hiding the spare key in your place in a very smart and secret place, and then immediately issuing a note on the door to let all visitors know where your spare key is hidden. This line. Htaccess files prevent browsing directories, making it harder for hackers to identify users. Load summary jennimckinnon\/cb78701
Don’t forget to replace it with the actual domain name. For more information about enforcing the use of SSL on your site, see the WordPress post on how to use SSL and HTTPS. 10. prevent image hot link visitors from obtaining one of the image URLs and uploading the image to the server instead of uploading it to the site, which will steal bandwidth. Also known as hot links. To avoid this, do the following: Add to htaccess file. Load the summary jennimckinnon\/6ce71d9cb036e7904b6402a5e2ea1506 in the second line of your site. Replace com with the actual domain in the third line http:\/\/www.your-site.com\/hotlink.gif Don’t forget to replace with the actual URL of the image you want to protect. Finally, use these tips and rules to protect your WordPress site or network and prevent hackers when they have the opportunity. However, don’t forget that these changes are only one step in enhancing site security. You can and should always do more. Installing security plug-ins such as defender can greatly improve the security of the site. Defender is also included in the wpmu dev membership, and you can use defender for free. To strengthen security. Have you edited the htaccess file? What are your favorite changes to htaccess files? What other tools do you like to use to enhance the security of your site or network? Please share your experience in the comments below. Label: htaccess word press security