Hi Nintechnet,
thanks for your answer. I’m now using the plugins “cache-enabler” https://www.ads-software.com/plugins/cache-enabler/ for my cache, without the htaccess rewrite rule.
I have try with Wordfence the rate limiting but do not work.
Do you know if with NinjaFirewall (WP+ Edition) rate limiting will work and block this stupid guys who connect thousand time to my site for trying to ddos it ?
I’m using mod_security in OVH, and in my log I found many thing like this:
[Sat May 06 09:24:49 2017] [error] [client xxx.xxx.xxx.xxx] ModSecurity: Warning. Operator LT matched 20 at TX:inbound_anomaly_score. [file “/usr/local/apache2/conf/modsecurity/base_rules/modsecurity_crs_60_correlation.conf”] [line “32”] [msg “Inbound Anomaly Score (Total Inbound Score: 2, SQLi=, XSS=): Range: field exists and begins with 0.”] [hostname “mywebsite.com”] [uri “/index.php”] [unique_id “WQ16QQoAWsoAADukIRQAAAAp”]
And this is all the day, 4 or 5 time by seconds, so my logs are flodded and my web site slow.
I have try to block IP in my htacces, but 1mn later, they change IP and keep on going…
So if NinjaFirewall can protect me for this ddos it will be great and I will buy the WP+ Edition.
Best regards.
-
This reply was modified 7 years, 10 months ago by
wplike75.