Comments (7)
Hello,
WordOps, like EasyEngine, already provide the ability to define WordPress username, so I'm not sure generating random WordPress username is needed.
from wordops.
Yes, you're right.
my thinking is in just not having an equal login for everyone, having a different one, I believe this will increase security.
from wordops.
It doesn't, because username is still displayed in WordPress RSS feed and it's pretty easy to get it using the wp-json API. We are working on a solution for this.
exemple : http://yoursite.tld/wp-json/wp/v2/users/1
from wordops.
Maybe you guys could use gpw? For my docker stack script that I wrote does this automatically via:
docker run -it --rm demyx/utilities sh -c "gpw 1 10"
avemssited # Sample output
WordOps, like EasyEngine, already provide the ability to define WordPress username, so I'm not sure generating random WordPress username is needed.
I kinda agree with you on this one but I just wanted to make life easier by not going through the install process. If it can be automated, why not?
from wordops.
Hello, I'm not sure to understand the purpose of your script. Can you explain more about it?
from wordops.
@VirtuBox my script uses Docker so it wouldn't work with WO but the package gpw
is available in the repos for Ubuntu and probably Debian.
from wordops.
@demyxco ah ok I understand. Don't worry for that part, it can be done in python without having to use an additional package.
But like I said previously, I do not think random username is a way to secure WordPress properly because it's pretty easy to get a list of users by browsing RSS feed or wp-json API.
EasyEngine already included a rate limiter on /wp-login.php, and I'm working on fail2ban integration to add an additional layer on security on this page. I have also increased WordPress passwords size to 24 characters.
from wordops.
Related Issues (20)
- [Request] TCP Fast Open Support HOT 4
- problems with codes/commads HOT 2
- cannot import name 'distro' after upgrade to latest version HOT 7
- Cert expired, and not renewed HOT 1
- more_set_headers X-Powered-By : WordOps HOT 6
- Weird 301 redirection to my old domain HOT 3
- Getting ERR_INVALID_REDIRECT after update to v3.21.0 HOT 3
- Error after upgrading WO HOT 13
- Quic Protocol Error on Elementor Frontend.min.js asset HOT 8
- QUIC connection could not be established HOT 1
- Restarting Nginx [OK] Oops Something went wrong HOT 6
- eXtplorer is not working properly HOT 3
- Run "wo log show site.com" get error "UnicodeDecodeError: 'utf-8' codec can't decode byte 0xff in position 2326: invalid start byte" HOT 2
- Admin Dashboard displays no interface, only code HOT 2
- Error in all installing, updating or upgrading commands HOT 1
- After purging php8.1, it continues to try to be loaded
- http2" directive is deprecated
- Installation Failure on Ubuntu 24.04 LTS HOT 3
- Many resources are not being served via HTTP/3 HOT 2
- Netdata can not be purged HOT 1
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from wordops.