This simple and light plugin safely rename wp-login.php and closes access to the WordPress admin panel. The plugin does not change the code of your site, does not rename files and does not make any changes to your server configuration. It can intercept admin pages requests, which means that it can work on any WordPress site, regardless of your server.
There are several levels of security in the plugin. When changing the login page you will receive an email with an access recovery link if you forget the login page address. In addition, the plugin will take care that your posts and pages addresses do not intersect with the new login page address, since if the addresses are the same, the login page will be looped.
Why you should hide WP admin and Hide my WordPress?
Dozens of bots daily attacks your WordPress admin area at /wp-login.php and /wp-admin/, brute force passwords and wanting to access your admin panel. Even if you are sure that you have created a hard and reliable password, this does not guarantee security and does not relieve your login page overload. The easiest way to hide login page is simply change its address to a unique one that will be known only to you.
- Hide wp-login.php, wp-signup.php and block access
- Hide wp admin directory and block access
- Allows you to rename login url
- Works with permalinks and without
- There is an opportunity to restore access to hidden login page
Functions related to authorization, such as registration, password recovery, registration confirmation will continue to work in usual mode.
If you are using a cache plugin, you should add your new login URL prefix in the stop caching list.
The wp-admin directory and the wp-login.php page will be unavailable, so it’s important to create a bookmark or remember new custom login page url. Deactivating this plugin will return your site to its previous usual state.
THANK FOR THE PLUGINS’ AUTHORS
We used some plugins features:
WPS Hide Login, WP Hide & Security Enhancer, Hide My WP – WordPress Security Plugin, Easy Hide Login, Hide WP Admin and Login – WordPress Security, Clearfy – WordPress optimization plugin and disable ultimate tweaker, Rename wp-login.php
RECOMMENDED SEPARATE MODULES
We invite you to check out a few other related free plugins that our team has also produced that you may find especially useful:
- Clearfy – WordPress optimization plugin and disable ultimate tweaker
- WordPress Assets manager, dequeue scripts, dequeue styles
- Disable Comments for Any Post Types (Remove Comments)
- Disable updates, Disable automatic updates, Updates manager
- Disable admin notices individually
- Cyrlitera – transliteration of links and file names
- Upload the plugin files to the
/wp-content/plugins/plugin-namedirectory, or install the plugin through the WordPress plugins screen directly.
- Activate the plugin through the ‘Plugins’ screen in WordPress
- Go to the general settings and click on the “Hide login page” tab, activate the options and save the settings.
Does the plugin work in multisite mode?
No, plugin does not support multisites. It is temporary. We will try to add network support in the future.
I forgot the login page address, what should I do?
Go to your mailbox and find a letter with the subject “[Hide login page] Your New WP Login” and follow the link to restore login access.
Find in the database in the wp_options table option named wbcr_hlp_login_path, wbcr_hlp_hide_login_path, wbcr_hlp_hide_wp_admin, wbcr_hlp_cache_options and delete them.
Remove hide-login-page plugin from /wp-content/plugins directory. Log in and re-install the Hide login page plugin.
How to access the registration and password recovery page?
After changing the login page URL, the registration and password recovery page addresses will be as follows:
http://site.com/login?action=register and http://site.com /login?action=lostpassword
Contributors & Developers
“Hide login page, Hide wp admin – stop attack on login page” is open source software. The following people have contributed to this plugin.Contributors
“Hide login page, Hide wp admin – stop attack on login page” has been translated into 1 locale. Thank you to the translators for their contributions.
Translate “Hide login page, Hide wp admin – stop attack on login page” into your language.
Interested in development?
Browse the code, check out the SVN repository, or subscribe to the development log by RSS.
- Fixed: Freemius framework conflict
- Added: Compatibility with WordPress 6.2
- Added: Compatibility with WordPress 6.0
- Added: Compatibility with WordPress 5.9
- Added: Compatibility with WordPress 5.8
- Fixed: Minor bugs
- Fixed: Redirect to 403
- Fixed: Settings were lost after update
- Added: Compatibilities with Titan Security plugin
- Added: Added compatibility WordPress 5.4
- Fixed: Added compatibility with ithemes sync
- Fixed: Compatibility with W3 total cache
- Fixed: Update core framework
- Fixed: When you enter https://site.dev/login, you could open the login form. Now it is impossible to do.
- Added: Compatibility with Clearfy 1.4.2
- Added: Multisite support ready
- Fixed: Update core framework
- Fixed: Menu bug
- Fixed: When requesting the wp-register.php page, a redirect to the hidden login page.
- Fixed: In some themes working with Woocommerce, there were php errors when trying to request a wp-admin page.
- Update core
- Fix smull bugs
- Plugin release