• Resolved teresacuervo

    (@teresacuervo)


    I use Jetpack on my site and it uses the file XML-PRC. I am trying to set the 2FA on my site which does allows to disable or skip said file. Given than I cannot disable it, will I still get login attempts through that file and the POST received without user agent error? I saw that you have a separate plugin for Login Security and they do say that it has protection for the XML-PRC file. However,I do have full plugin with login security. Is that added protection solely in the new separate plugin or do I have it as well on my full Wordfence plugin.

    Many thanks

    The page I need help with: [log in to see the link]

Viewing 1 replies (of 1 total)
  • You can block or require 2FA for xml-rpc login attempts (most bad ones use this) in the full Wordfence plugin too. Look for it on the Wordfence > Login Security > Settings page. You must leave it enabled if you use Jetpack as some parts will not work (I think it is remote posting but there is probably others as well. Blocking xml-rpc will drastically cut down on your login attempts.

    Tim

Viewing 1 replies (of 1 total)

The topic ‘Login Security’ is closed to new replies.