• Make Tech Easier
  • Videos
  • Downloads
  • Articles
    • Windows
    • Linux
    • Mac
    • Android
    • Firefox
    • Chrome
    • Web
    • Google
    • WordPress
    • All Categories
  • Search

5 Useful Ways To Protect Your WordPress Login

Damien 6th Jul 2011 WordPress 2 Comments
  • 14
    Facebook 2 Twitter 12
    Google Plus 0 Pinterest 0
    Stumbleupon 0 Reddit 0
    Pocket Instapaper
  • Next
  • Prev

wp-login-lockIf you have not done anything to protect your WordPress site, most probably you are not safe. By default, WordPress only comes with a single login mechanism. Anyone that has your username and password can easily login to your site and wreak havoc. The only way to prevent it is to tighten the security of your site so other people won’t be able to crack into your site easily.

1. Google Authenticator

The Google Authenticator plugin makes use of the Google Authenticator mobile app to provide a two-factor authentication login to your WordPress site.

Note: Before activating Google Authenticator, make sure that you have enabled two-factor authentication in your Google account and installed the Google Authenticator app in your Android, iPhone or Blackberry phone.

Once you have installed and activated the plugin, go to the “Users -> Your Profile” section and you should see the Google Authenticator settings.

wp-google-authenticator

Check the box beside “Active” and save the changes. Next time you login, it will prompt you to enter the secret key. If you failed to enter the correct code, you will not be able to login.

wp-google-authenticator-login

Google Authenticator

2. One Time Password

One Time Password allows you to login to your WordPress without using your real password. It generates a list of passwords that you can use to login to your site. These passwords are valid only for a single session, so even when the password is stolen, others won’t be able to login to your site. This is particularly useful if you are travelling but need to login to your site in a cybercafe.

Once installed and activated, go to the One Time Password section to generate your password list. Enter a passphrase and click the “Generate” button.

wp-otp

Print out the generated password list and bring it with you wherever you go.

otp-generated-password

When you need to login, it will show a sequence number. You just have to match the sequence number with your password list and enter the password accordingly.

wp-otp-seq

One Time Password

3. WP Login Security

WP Login Security works via the IP address. It first requires administrators to register or whitelist their IP address. Next, it will detect the IP address whenever the administrator logins. If the IP address is not recognized, it will send an email to the administrator with a link that contains a one-time key.

wp-login-security

A good thing about this plugin is that there is little or no configurations required. You just activate it and it is good to go.

WP Login security

4. Login Lockdown

We have mentioned Login Lockdown before in our previous post on WordPress security. We are going to mention it again here because it is truly a useful plugin. What it does is to records the IP address and timestamp of every failed login attempt. If more than a certain number of attempts are detected within a short period of time from the same IP range, then the login function is disabled for all requests from that range.

Login Lockdown

5. WP Firewall 2

This plugin is not directly related to the login field, but it protects your site by investigating web requests to identify malicious attack. It is able to stop the attack before it causes damage to your database.

After activating, you can find the configuration options under the Firewall section. The default options are often good enough for everyone and you seldom have to make any changes.

wp-firewall

WordPress Firewall 2

The above mentioned methods are only some of the ways to protect your WordPress site, don’t forget to check out:

  • 11 Ways To Secure Your WordPress Blog
  • How to Increase Your Website Security And Performance With CloudFlare
  • How To Connect To Your WordPress Account Via Secure FTP
Do you like what you read here?

Receive the latest update in your inbox.

Or connect with us:

Similar Articles

Best Plugins to Automatically Watermark Images In WordPress
Giveaway of The Week: 5 Premium ThemeFuse Themes (Update: Contest Closed)
How to Color Code Your WordPress Posts Page

2 Comments

  • himanshu

    will try the first plugin. seems good

    11th July 2011 02:12:00 Reply

  • Matt Walker

    You could also mention https://www.shieldpass.com 2nd factor authentication which isnt vulnerable to mobile trojans or just calling a targets telco and requesting they forward all future calls. They have a nice WordPress Plugin.

    21st September 2011 11:11:00 Reply

  • About
  • Contact Us
  • Advertise
  • Privacy Policy
  • RSS Feed Terms

© 2007 - 2013 Make Tech Easier. All rights reserved.



Receive Daily Update in your Inbox

Quick Tips

Setting Multiple Home Page For Firefox

Do you know you can set multiple websites as the home page in Firefox? Here is how you do it:

1. Go to the "Preferences -> General" section in Firefox.

2. At the Home Page input field, enter the URL of the websites that you want to set as home page, separating each URL with a "|" symbol. For example: http://maketecheasier.com|http://google.com.

3. When you click the "Home' icon in Firefox, a couple of tabs will open, each loading one URL that you entered.

Poll
Best Posts
  • How to Enable Appindicator in Gnome Shell
  • 5 Free Alternatives to Microsoft Sharepoint
  • How to Embed A Survey Form in Email And Receive Higher Completion Rate [Google Forms]
  • Extend Your Android Battery Life With Battery Doctor
  • How To Adjust Text Size In Firefox
  • Converting Files In Google Drive With DriveConverter
  • Gmail Shortcuts Cheat Sheet to Boost Your Productivity
  • Subsonic: Stream Your Media from Anywhere
  • Create Custom Ringtone in Android with Ringtone Maker
  • Add a Theme to Facebook Using My Facebook Theme