Attemtped admin logins
-
I’m trying to increase my understanding of WordPress Security.
I have several websites that I admin on a shared hosting facility.
I use .htaccess in the root of “public_html” and the root of each domain to allow only my IP address (which rarely changes) to acesss the hidden backend. If I use my mobile phone or try to access the back end from another location (different IP) and use “mydomain/hidden”, I get a 403 “access denied” and no log in screen, so that works ?? If I use “mydomain/wp-login”, I get to the site but have a 404 displayed – no entries were found. If I use “mydomain/wp-admin”, I get a 403 and no log in screen. So I’m fairly happy that other IPs trying to access the back end can’t!Question, why do I get reports that “some other IP” has tried to log in as “admin”, there isn’t a login screen displayed ?
The page I need help with: [log in to see the link]
- The topic ‘Attemtped admin logins’ is closed to new replies.