Just another contact form plugin. Simple but flexible.
About Lockdown WP Admin
This plugin hides the WordPress Admin area from users who are not logged in. It also allows you to rename the login URL and add HTTP authentication for added security. It does not change any core files or affect the accessibility of CSS and image files.Frequently asked questions
What does this plugin do?
This plugin will hide WordPress Admin (/wp-admin/) when a user isn't logged in. If a user isn't logged in and they attempt to access WP Admin directly, they will be unable to and it will return a 404. It can also rename the login URL.
Can I add HTTP authentication?
Yes, you can add HTTP authentication directly from WP Admin and add custom username/password combinations for the HTTP auth or use the WordPress credentials.
Does this plugin modify any core files or .htaccess?
No, this plugin does not touch any .htaccess files or change the WordPress core files. All the CSS/Images under /wp-admin/ are still accessible, just not the .php ones.
What happens if I enable HTTP authentication?
If you enable HTTP authentication, it will add HTTP authentication to the PHP files in /wp-admin/.
How can I contribute to the development of this plugin?
To contribute to the development, check out the GitHub Repository: https://github.com/srtfisher/Lockdown-WPAdmin
Changelog
1.0
- Initial release
1.0.1
- Fixed a link to a broken file
1.1
- Fixed a bug on activating the plugin network wide, we disabled network wide activation.
- Cleaned up the plugin and prevented a double loop of the HTTP check, unnecessary.
1.2
- Cleaned up more code.
- Security fixes that will prevent somebody from possibly hijacking your website. (Props Jon Cave)
1.3.1
- Added the ability to change the login URL entirely. It will disable /wp-login.php and give it whatever you want to make it.
1.4
- Fixed a bug with user’s with a index.php base
- Added stats for us to collect about about URL setup and server configuration for our users. This will let us make the plugin even better.
- Fixed bug for having private user management in WP Admin
1.4.2
- Bug fixes
- Added
admin-ajax.phpto the files that we permit to be access in wp-admin.
1.6
- Added way to get back into WP-ADMIN if locked out (See the FAQ)
1.7
- Removed the stats that were collected to that we could understand the issues that users were having with the plugin.
1.8
- Finally discovered why so many users had HTTP authentication errors. Fixed it to support almost 80% of hosts out there.
- If you still have problems, shoot me an email.
1.9
A very late update, sorry! Worked to fix many issues with the admin bar and the “get_current_screen()” error. If you still see issues, please contact me!
2.0
- Provided a system dump to help in debugging issues that may arise.
- Fixes a issues on the 404 page under 3.5.1 (
get_current_screen()) - Cleanup, cleanup!
2.0.1
- Bug fix by Michal Krause
2.0.2
- Query string detection bug fix by James Bonham
- Issues with WordPress in a sub-directory
2.1
- Unit Testing! Unit Testing ensure more reliable code going forward
- Support for WordPress 3.6
- General Cleaning
2.2
- Fixing issues with other plugins
- Support tested for 3.9
- Large code structure changes. If you are extending the
Lockdown_Managerat all, you should basically check the class anew since it was separated into Admin and Application services.
2.3
- Fixing issues with latests WordPress Version
- Cleaning of code, enhancements.
- Localizing all the strings.