Hi Nithin,
I appreciate your help.
I disabled all plugins and even changed themes (custom and default), but the issue persisted.
Two findings:
1. If I enable 2FA for the user, after entering the code, I get redirected from http://www.domain.com/custom-slug to http://www.domain.com/wp-admin with the message:
This feature is forbidden temporarily for security reason. Try login again.
2. If 2FA is disabled, all users receive this error:
Cookies are blocked or not supported by your browser. You must enable cookies to use WordPress.
I’m unsure if and how the 2FA relates to the above errors, but I think something else is happening here.
Note: I’m using EasyWP, so they might be causing the issue.
The plugin documentation (https://wpmudev.com/docs/wpmu-dev-plugins/defender/#mask-login-area) does not mention that the custom slug must contain the word “login”. E.g., custom-login, customloginslug, my-custom-login-slug, etc.
Please correct me if I’m wrong, but this is how I made it work for my WP site.
Anyways, I hope this info helps other people.