Limit Login Attempts
Posted by Mitch Mitchell on Dec 16, 2009
One of our new friends around here is Udegbunam Chukwudi, and he writes a blog called StrictlyOnlineBiz.com. I followed one of his links to his blog to take a look around, and I think he writes a pretty nice blog, so I hope you check it out.
One of his posts was called Secure WordPress Plug-ins, and he gave us 10 WordPress plugins to help us make our WordPress blogs secure. The first one is the one that caught my eye.
The plugin is called Limit Login Attempts, and its purpose is to dissuade those bad folks who know how to write software that can take its time in trying to break both your username and password. As I keep coming across more and more folks who have had their blogs cracked, including some of the big boys, I read that what happens is these weasels somehow figure out your username and password, get into your blog, and that’s that folks.
It made me remember that two of our other friends had their blogs hacked. Peter Lee had written about it last year, though it may not have been the same way, and Yan of Thou Shall Blog also had his blog hacked, and they did figure out his username and password.
The thing is, most of us are too lazy to change our username from Admin. I know I’m bad at this, yet I keep thinking my password is unique enough that it should protect me. But if someone automates software, then I’m gone just like many other people would be. Thus far, the best thing about not having thousands of subscribers is that I figure I’m still under the radar. Then again, I bet Yan and Peter both thought the same thing at the time.
I decided it was time to add a bit more protection to my blogs, so I went to that page, read about this plugin, and decided I liked what it had to offer. The download takes almost no time, and I uploaded it to all my blogs at the same time. But I tested it on this one, just to make sure it wouldn’t mess up my dashboard; it didn’t.
You get to make a couple of decisions with your settings. The first is how many login attempts you’ll allow before it shuts down for a certain number of minutes. It’s defaulted to 4, so I left that alone. The second is how long you want to make people wait before they can try it again. The default is 20 minutes, and I kicked that up to 30 minutes. The next 3 I left alone because I have absolutely no idea what any of it means. The last thing is after how many tries you want to be notified that someone has failed to login. It was defaulted to 4, and that made sense so I left it alone.
I now feel that I have an extra layer of protection, and that will help me sleep better. Of course it’s no substitute for making sure to back up your blog every once in awhile, but it does give an bit more peace to my mind. I think it’s a good idea; y’all should take a look at it yourselves.
Copyright secured by Digiprove © 2011 Mitch Mitchell



I'm Just Sharing is where I share my thoughts on internet marketing, writing, blogging and many other things. You never know what I'll be posting on. So keep coming back, read, enjoy, and buy something! ;)


.-= Mike´s last blog ..Atlanta Movers =-.
Mitch Reply:
December 16th, 2009 at 3:40 PM
.-= Anne´s last blog ..New Theme & Image Issues Abound =-.
Mitch Reply:
December 16th, 2009 at 11:09 PM
Anne Reply:
December 17th, 2009 at 10:34 PM
.-= Anne´s last blog ..Let it Snow, Let it Snow, Let it Snow ~ Please =-.
~ Kristi
.-= Kikolani´s last blog ..Ultimate Freelance Resources – 100+ Links to Freelance Jobs, Blogs, Podcasts, Guides & More =-.
Mitch Reply:
December 16th, 2009 at 11:28 PM
.-= Rose´s last blog ..10 Christmas themes for Blogger =-.
Mitch Reply:
December 16th, 2009 at 11:29 PM
.-= DeAnna Troupe´s last blog ..Listen To Denise J Hart (motivationmama) Interview Me About Being A Creative Entrepreneur =-.
Mitch Reply:
December 16th, 2009 at 11:29 PM
.-= Peter Davies´s last blog ..Does anyone have any knowledge regarding worldprofit.com? =-.
Mitch Reply:
December 17th, 2009 at 8:15 AM
This is a good one man! I’ve often feared having someone try to hack my wordpress based blogs due to lack of security. Not that my blogs are worth hacking, but you never know who you may have ticked off online.
Happy holidays!!!
-TAM
.-= The Almost Millionaire´s last blog ..Email links – the devil is in the detail! =-.
Mitch Reply:
December 17th, 2009 at 8:16 AM
.-= Dennis Edell´s last blog ..Pick My New Domain Names With A chance To Win $10! =-.
Mitch Reply:
December 17th, 2009 at 12:25 PM
Dennis Edell Reply:
December 17th, 2009 at 9:45 PM
.-= Dennis Edell´s last blog ..Pick My New Domain Names With A chance To Win $10! =-.
Mitch Reply:
December 17th, 2009 at 10:05 PM
Dennis Edell Reply:
December 19th, 2009 at 3:56 PM
.-= Dennis Edell´s last blog ..Pick My New Domain Names With A chance To Win $10! =-.
.-= DailyManila´s last blog ..There’s no such thing as a hack-proof WordPress blog =-.
Mitch Reply:
December 17th, 2009 at 12:25 PM
DailyManila Reply:
December 17th, 2009 at 7:35 PM
.-= DailyManila´s last blog ..There’s no such thing as a hack-proof WordPress blog =-.
Thanks for the mention.;-)
.-= Udegbunam Chukwudi´s last blog ..Nigerians Get Payoneer Prepaid MasterCard Free! =-.
Mitch Reply:
December 17th, 2009 at 2:53 PM
And I’m glad to give you the shout out.
.-= Sire´s last blog ..Of Gary Vaynerchuk And His Belief That You Can Cash In On Your Passion =-.
Mitch Reply:
December 18th, 2009 at 5:40 AM
Thanks for making me cringe thinking about my blog hack.Although it didn’t quite qualify as a real hack, the fear is always there as I’ve been also hacked on my email account right before my very eyes. There are just too many people out there who choose to use their good skills for the wrong purpose. There is never enough protection for anything nowadays. But your plugin sounds good to take a look.
-Peter
.-= Internet Home Business´s last blog ..My Google Adsense Crossed $100/mth: 7 Things I learned =-.
Mitch Reply:
December 18th, 2009 at 11:59 PM
.-= Internet Home Business´s last blog ..Challenges Of Starting A Blog =-.
Mitch Reply:
December 19th, 2009 at 2:38 AM
[...] my passwords. I also remembered a post Mitch did about securing your blog where he mentioned the Limit Login Attempts plugin. I should have installed then and there but I didn’t because I was sure no one would [...]
by the way, i suggest you to also limit the ip where people can login to your account.
Mitch Mitchell Reply:
February 23rd, 2011 at 8:51 PM
This plugin is quite essential that every blogger should have it or some other form of protection
Mitch Mitchell Reply:
February 24th, 2011 at 10:38 PM