Possible issue
-
This plugin sounds interesting, I have read the information about login cool-down system of this plugin.
I really want to try this plugin. But I can think of an issue that may happen if I install this plugin.
One of my website has been attacked by a single IP since 2 days ago. It access my /wp-login.php about 4 times every minutes. It has generated more than 10 thousands login attempts so far.
If I install Simple Security Firewall and set the Login Cooldown Interval = 60 seconds, chances I’m not not able to login will be high. Because someone just tried to login recently. But if I set the interval less than 15 seconds, this plugin is useless to slow down the login bots, isn’t it?
I build and monitor several websites, and I study their login bots’ patterns. They’re now more clever. They won’t come back in just seconds. Many of them will try to login again after several hours (using same IP). They’re persistent, only will give up after may days of trying.
- The topic ‘Possible issue’ is closed to new replies.