informatique:securite:wordfence
Différences
Ci-dessous, les différences entre deux révisions de la page.
Les deux révisions précédentesRévision précédenteProchaine révision | Révision précédente | ||
informatique:securite:wordfence [10/06/2024 08:39] – [Autour de Wordfence] cyrille | informatique:securite:wordfence [02/08/2024 12:02] (Version actuelle) – [Autour de Wordfence] cyrille | ||
---|---|---|---|
Ligne 1: | Ligne 1: | ||
- | ====== Wordfence (wordpress plugin) ====== | + | ====== Wordfence (wordpress |
Pare-feu d' | Pare-feu d' | ||
Ligne 6: | Ligne 6: | ||
Super plugin que je utilise depuis des années sur de nombreux sites. | Super plugin que je utilise depuis des années sur de nombreux sites. | ||
+ | |||
+ | ===== Configuration ===== | ||
+ | |||
+ | ==== General Wordfence Options ==== | ||
+ | |||
+ | Cocher " | ||
+ | |||
+ | ==== Advanced Firewall Options ==== | ||
+ | |||
+ | Immediately block IPs that access these URLs: | ||
+ | < | ||
+ | /.git/* | ||
+ | /.env | ||
+ | / | ||
+ | / | ||
+ | / | ||
+ | </ | ||
+ | |||
+ | ==== Activity Report ==== | ||
+ | |||
+ | List of directories to exclude from recently modified file list | ||
+ | < | ||
+ | wp-content/ | ||
+ | wp-content/ | ||
+ | wp-content/ | ||
+ | </ | ||
+ | |||
+ | ===== Autour de Wordfence ===== | ||
+ | |||
+ | * [[https:// | ||
+ | * [[https:// | ||
+ | * [[https:// | ||
+ | |||
+ | collection of bad username and file paths for WordFence: | ||
+ | * https:// | ||
+ | * https:// | ||
===== Wordfence -> firewall ===== | ===== Wordfence -> firewall ===== | ||
Ligne 33: | Ligne 69: | ||
* learned:waf : "XSS: Cross Site Scripting", | * learned:waf : "XSS: Cross Site Scripting", | ||
* lockedOut, loginFailInvalidUsername, | * lockedOut, loginFailInvalidUsername, | ||
- | |||
- | |||
- | Projets: | ||
- | * [[https:// | ||
informatique/securite/wordfence.1718001584.txt.gz · Dernière modification : 10/06/2024 08:39 de cyrille