SiteGuard WP Plugin

By : jp-secure

You can find docs, FAQ and more detailed information on English Page Japanese Page.

Simply install the SiteGuard WP Plugin, WordPress security is improved. This plugin is a security plugin that specializes in the login attack of brute force, such as protection and management capabilities.

Notes

  • It does not support the multisite function of WordPress.
  • It only supports Apache 1.3, 2.x for Web servers.
  • To use the CAPTCHA function, the expansion library “mbstring” and “gd” should be installed on php.
  • To use the management page filter function and login page change function, “mod_rewrite” should be loaded on Apache.
  • To use the WAF Tuning Support, WAF ( SiteGuard Lite ) should be installed on Apache.

There are the following functions.

  • Admin Page IP Filter

It is the function for the protection against the attack to the management page (under wp-admin.) To the access from the connection source IP address which does not login to the management page, 404 (Not Found) is returned. At the login, the connection source IP address is recorded and the access to that page is allowed. The connection source IP address which does not login for more than 24 hours is sequentially deleted. The url(https://wordpress.org/plugins/siteguard/under wp-admin) where this function is excluded can be specified.

  • Rename Login

It is the function to decrease the vulnerability against an illegal login attempt attack such as a brute force attack or a password list attack. The login page name (wp-login.php) is changed. The initial value is “login_<5 random digits>” but it can be changed to a favorite name.

  • CAPTCHA

It is the function to decrease the vulnerability against an illegal login attempt attack such as a brute force attack or a password list attack, or to receive less comment spam. For the character of CAPTCHA, hiragana and alphanumeric characters can be selected.

  • Login Lock

It is the function to decrease the vulnerability against an illegal login attempt attack such as a brute force attack or a password list attack. Especially, it is the function to prevent an automated attack. The connection source IP address the number of login failure of which reaches the specified number within the specified period is blocked for the specified time. Each user account is not locked.

  • Login Alert

It is the function to make it easier to notice unauthorized login. E-mail will be sent to a login user when logged in. If you receive an e-mail to there is no logged-in idea, please suspect unauthorized login.

  • Fail Once

It is the function to decrease the vulnerability against a password list attack. Even is the login input is correct, the first login must fail. After 5 seconds and later within 60 seconds, another correct login input make login succeed. At the first login failure, the following error message is displayed.

  • Disable Pingback

The pingback function is disabled and its abuse is prevented.

  • Updates Notify

Basic of security is that always you use the latest version. If WordPress core, plugins, and themes updates are needed , sends email to notify administrators.

  • WAF Tuning Support

It is the function to create the rule to avoid the false detection in WordPress (including 403 error occurrence with normal access,) if WAF ( SiteGuard Lite ) by JP-Secure is installed on a Web server. WAF prevents the attack from the outside against the Web server, but for some WordPress or plugin functions, WAF may detect the attack which is actually not attack and block the function. By creating the WAF exclude rule, the WAF protection function can be activated while the false detection for the specified function is prevented.

Authentication and xmlrpc log writer

This plugin writes the log of failed access attempts (brute force attack) and invalids pingbacks requests ( by xmlrpc.php ). Very useful to process data via fail2ban....

Similar: 34%

IP Geo Block

There are some cases of a site being infected. The first one is the case that contaminated files are uploaded via FTP or some kind of uploaders. In this case, scaning and verifing integrity of files in your site is useful to detect the infection. The second one is cracking of the login username .........

Similar: 19%

IOSEC HTTP Anti Flood/DoS Security Gateway Module

This module provides security enhancements against (HTTP) Flood & Brute Force Attacks for WordPress. Massive scanning tools (like vulnerability scanners), HTTP Flood tools can be blocked or detected by this module. This module can be integrated with htaccess, any firewall, iptables or etc. via .........

Similar: 15%

QueryWall: Plug'n Play Firewall

QueryWall analyzes queries automically to protect your site against malicious URL requests. How it works QueryWall analyzes all incoming HTTP requests and silently blocks malicious queries containing risky strings like wp-config.php, eval code, base64_ encrypted code, and many more. Features Pl.........

Similar: 12%

NinjaFirewall (WP Edition)

NinjaFirewall (WP Edition) is a true Web Application Firewall. Although it can be installed and configured just like a plugin, it is a stand-alone firewall that sits in front of WordPress. It allows any blog administrator to benefit from very advanced and powerful security features that usually are.........

Similar: 9%

WP Limit Login Attempts

Brute Force Attack aims at being the simplest kind of method to gain access to a site: it tries usernames and passwords, over and over again, until it gets in. This plugin limit rate of login attempts and block ip temporarily. It is detecting bots by captcha verification. Go to Settings > WP Lim.........

Similar: 5%

BulletProof Security

BulletProof Security Feature Highlights One-Click Setup Wizard jQuery UI Dialog Form Uninstall Options: BPS Pro upgrade uninstallation or complete BPS plugin uninstallation .htaccess Website Security Protection (Firewalls) Login Security & Monitoring Idle Session Logout (ISL) Auth Cookie Expir.........

Similar: 3%

AS login

Create your own custom login page use this Plugin. Customize your login page as you choice. Plugin Features !!!!! 1.Easy to use. 2.Plugin on/off. 3.Change Logo Link. 4.Change Logo Width. 5.Unlimited custom logo. 6.Unlimited color. 7.Change Login box width. 8.Change text color and many more....

Similar: 3%

As Nice Scroll

As nice scroll is a jquery plugin for WordPress site. This plugin will create a nice scrollbar for your site. After installing and Activating the plugin, go to WordPress Admin Dahsbord and then go to Appearance > As option Here you can customize default settings. So customize settings as you choi.........

Similar: 3%

As woocomerce with owl carousel

As woocommerce with owl carousel is a jquery plugin for WordPress site. This plugin will create a nice carousel for your site. After installing and Activating the plugin, go to WordPress Admin Dahsbord and then go to Appearance > As option Here you can create Shortcode and publish a carousel .........

Similar: 2%