Backup does not work. With this in mind, elegant themes recently wrote an article on how to manually generate custom login URLs, which is worth considering if other solutions are needed. Step 4: add a login layer to log in to the website. Our last step is related to the previous step, but it is certainly a better solution. If a second authentication layer is added to the WordPress administration and login pages, hackers will not be able to access the username and password fields (which is actually worrying). If another login dialog is displayed on the robot, it is likely to go to the next site. In other words, it can successfully defend against indiscriminate counterpart attacks. Surprisingly, there are many ways to achieve this. One of the popular solutions is 2fa (phase II certification). This is the confirmation step that the user needs to enter the code in the dedicated application of the smart device. There have been many 2fa solutions for WordPress of different quality levels. But now, we recommend the secure sign on module of updraftplus backup plug-in developer key and jetpack. Both achieve 2fa in different ways. The former uses Google authenticator to request the code of smart devices, and jetpack uses WordPress. Request login using COM credentials. The latter completely deletes the login form of the site, just word press. You can also rely on COM to perform heavy tasks. Finally. You can also add a second password layer using htaccess. This provides greater flexibility in creating custom solutions. If you are not currently a fan of the plug-in 2fa solution, password protection of the URL in this way may be an ideal choice. Conclusion website security is an issue worthy of serious consideration. In this regard, lax efforts may cause great damage to your website and reputation. Fortunately, beginners can also quickly complete the steps they need to take. This post discusses how to create a fully functional security solution by integrating third-party solutions, word press settings, additional PHP, and multiple word press plug-ins. Let’s outline the four steps we need to perform. Select the WAF that is appropriate for your site. Protect you from malicious intrusion, including indiscriminate attack. Change the login address and login page URL of the administrator. Add an additional login layer to publish the project to your site. Do you have other ways to protect your site? So, what is the method? Please let us know in the comments section below! Main picture: dariuszsankowski.