Is this still accepting new registration?
]]>Hi, Is registration still active for this plugin?
I tried to install it, but I didn’t receive the activation email.
Thank you
]]>Hi there!
Sorry, somehow I have got subscribed to your Bruteguard Revisions and on all update changes I’m getting so many emails, I couldn’t find the button to unsubscribe. Are you aware of where I could stop these emails?
Thoughts?
TA
]]>I really like the idea of this plugin but the execution of it is wonky because an attacker can trigger the plugin to block innocent users.
Here’s an example, an attacker knows the username of an user on a wordpress blog (trivial to figure out).
The attacker uses a botnet to attack wp-login.php trying to authenticate with different passwords using the users account name.
The real user visits the website and tries to login, gets an error message saying he is blocked from logging in even though it was the first time for him trying to login for that day.
What needs to be done is the plugin needs to log the ip address of each attacker and use that as reference rather for blockage rather then block the entire username from logging in.
Come to think of it do not see how this plugin would work if it did not take ip address into consideration, perhaps this issue has to do with cloudflare proxying every request to a website resulting in the plugin thinking the attacker ip and user ip is the same?
Anyway a client of mine has a wordpress site with a lot of traffic, he has been having trouble with hackers and i’ve been hired to secure the site, i installed this plugin as it seemed like an easy solution to the bruteforce problem but now many of his users are being blocked from logging in even if its their first time logging in that day.
Looking at the logs i can see that their accounts have been bruteforced by another ip yet their ip has only made 1 request yet they got blocked for that 1 request.
]]>Your IP “xx.xx.xxx.xx” has been flagged for potential security violations. Please try again in a little while…
Not possible to access any of my own and my client’s sites anymore.
I need to have this stripped from your records a.s.a.p.
Opened a ticket at mailster support as well.
Hi – I’m trying to set up the BruteGuard plugin on one of my domains. I entered a valid email address com and clicked on the ‘Get Protected’ button. All I get is a message saying ‘There was an error processing your request!’. It is a real email address (a forwarder) and I copied and pasted the email address to make sure there are no typos.
I then went to your website and tried to send you a message via the contact form on your site. I entered the message, ticked the ‘I am human’ box, then clicked send. All I get is a message saying ‘There was an error trying to send your message. Please try again later.’
I like the idea of this plugin, but at the moment it just does not work (and neither does your web site). Any chance you can fix it? It’s a great idea for a plugin and I’d love to use it.
Thanks
Chris
]]>What is the difference with most known security plugins secure login brute force options and this plugin?
]]>Hi,
Is this plugin working great together with CloudFlare as well or only on websites that aren’t added to CloudFlare?
I have already a cloud guard plugin installed to prevent people from certain countries to accessing the wp-admin/wp-login.
Thank you
]]>Hello I triey to activate your plugin on a wp mu subdomain+domain mapping setup.
On main wp site all ok but when i tried to activate on sub site i get this msg:
]]>The plugin is not activated due to critical error.
Fatal error: Call to undefined method BruteGuard::get_main_blog_id() in /home//public_html/wp-content/plugins/bruteguard/classes/bruteguard.class.php on line 111