• Resolved awakegal

    (@awakegal)


    Hi,

    I added user name and password for HTTP authentication and the next time I logged into the website I find out that my IP address is blocked.

    Deleted user.ini and NinjaFirewall content from htaccess and was able to get into the website and then deactivated the plugin.

    Have reactivated the plugin and cannot delete my name from the HTTP authentication box.

    How do I turn off HTTP authentication?

    Thanks in advance.

    https://www.ads-software.com/plugins/ninjafirewall/

Viewing 1 replies (of 1 total)
  • Plugin Author nintechnet

    (@nintechnet)

    Hi,

    It does not block IPs. If you set it up to “Yes, if under attack”, it will only enable the HTTP authentication when an attack is occurring (regardless of the IP), and it you set it up to “Always ON”, it will always enable it.

    If you lost your password and want to reset the login protection, you can follow those steps: Lost password (brute-force protection)

    Lost password (brute-force protection) :
    If you cannot access your WordPress admin console because you lost the brute-force protection username and/or password :

    1. Connect to your server via FTP.
    2. Depending on your NinjaFirewall version and edition:
    – delete the /wp-content/plugins/ninjafirewall/log/nfwbfd.php script.
    Or :
    – delete the /wp-content/nfwlog/cache/bf_conf.php script.
    3. Log in to the WP admin console, click on “NinjaFirewall > Login Protection” and configure the brute-force detection options. NinjaFirewall will recreate a new nfwbfd.php.

    Removing the .ini or .htaccess will not help otherwise.

    To turn off the protection, select “NinjaFirewall > Login Protection > Enable brute force attack protection > No (default)” and click on “Save Login Protection” to apply the change.

Viewing 1 replies (of 1 total)
  • The topic ‘How do I turn off HTTP authentication?’ is closed to new replies.