• Resolved Fabio Oliveira

    (@fabio-oliveira)


    Hi, I do not know if this has been asked already, but since WP search did not retrive me what I need I came to ask here. I am tired of getting hundreds of failed logins to all my clients’s wordpress sites (I run a small wp agency with around 50 clients). Althought Wordfence blocks then after specified attemps, since they all run scripts to search for vulnerabilities, I think changing the login URL would make it far better. This is the only feature that is making me wanting to change all my clients from Wordfence to iThemes Security.

    Since I am very satisfied with Wordfence, I would like to keep it, so I would like to ask if you could include this feature in future releases. Anyway, I am going to have to do it manually for some clients because the failed login attemtps are way too frequent, so I would like to know if I need to change anything for wordfence to keep working after I change the login url.

    Best Regards

    https://www.ads-software.com/plugins/wordfence/

Viewing 15 replies - 1 through 15 (of 24 total)
  • We’ve actually had this suggestion several time before. I have opened a case with our devs to look at adding this to a future release. Please understand I can’t guarantee its inclusion or when it would be added, but I can tell you that every suggestion we get is carefully considered. Some of our best features came from customer requests.Thanks for helping make the plugin great!

    In the interim, I think many of our customers have used the “redirect wp-login.php” plugin with success.

    tim

    Thread Starter Fabio Oliveira

    (@fabio-oliveira)

    Hi, ty for the reply. I could not find the mentioned plugin in the wp repository, the closest was “Rename wp-login.php” by avryl, is this it?

    That’s it. I apologize for misquoting it.

    tim

    Thread Starter Fabio Oliveira

    (@fabio-oliveira)

    Ty, working like a charm and so far no more hits, lets see the next few days. Tyvm ??

    No problem ??

    was this feature ever added? attempts on our clients sites are so profuse they’ve taken down our server, multiple times. Thanks to wordfence, nobodys actually gotten in. renaming wp-login sounds like a brilliantly simple way to avoid these attempts. Id love to be able to do it in wordfence than to install another plugin.

    Plugin Author WFMattR

    (@wfmattr)

    Wordfence does not currently have an option to rename the login page, but I will check if the previous request above.

    I guess you have had lots of requests about hiding wp-login.php, and I also know that you don’t like security through obscurity. However, the world is full of silly brute force attacks that a simple wp-login rename would avoid.
    I love your plugin and I have learnt a lot about security by reading your documentation (I’m a Software Engineer).
    In fact, my site was never hacked and my super admin user was never discovered. But, as many others, I’m tired of getting mails of login attempts from Ukraine, mainly, with common user names like admin or administrator.
    I think your plugin is really powerful, and adding this featured will make it better.
    Thanks!

    PS: The plugin Rename wp-login.php is unmaintained.

    We’re aware of the plugin not being renamed. I am only letting you know that many of our users utilizing it as a workaround with no problems.

    tim
    FB624

    Hi Tim, thanks for your answer.
    However, I would like to know if this feature could be included in a future release or if it is something that will never be included in Wordfence.

    Hello everyone,

    The plugin WPS Hide Login seems to be the same as Rename wp-login.php. The difference is that WPS Hide Login is still maintained ??

    @tim @WF Support: Just wanted to let you know I’d also appreciate this option directly in Wordfence instead of having to install another plugin. Thanks!

    Plugin Author WFMattR

    (@wfmattr)

    @julie: Thanks for the input, we’ve passed it on to the dev team. And thank you also for the link to the additional login plugin that is being actively maintained, in the meantime.

    -Matt R

    I must add that since I saw this reply from the Rename wp-login.php plugin author, I decided to give it a try and it works fine with Wordfence. The author said here:

    I’m happy to receive pull requests and update this plugin. I actually check each new version of WordPress and see if there are any issues. I added “unmaintained” because I don’t have the time to read support tickets and fix network related issues etc. But again, I’m happy to look at any pull requests.

    Nevertheless, I would like this feature in Wordfence ??

    If I may jump in here … This is one of several reasons why I use https://www.ads-software.com/plugins/wp-simple-firewall/ in conjunction with WordFence. It offers that functionality and lots more. And from what I can tell, the two plugins work along well together and don’t get in each others way …

Viewing 15 replies - 1 through 15 (of 24 total)
  • The topic ‘Change login URL’ is closed to new replies.