Forum Replies Created

Viewing 3 replies - 1 through 3 (of 3 total)
  • Hi.

    I had a similar problem this evening approx 20:00 GMT. I set up Wordfence 2fa a month ago on a subsidiary page that was created using the “WPS Hide Login” plugin & it’s been working fine. However tonight it failed to change from the opening credentials page, for all 3 admin accounts, locking us out of eh dashboard.

    luckily one admn was able to access the site through the hosting site & deactivate word fence plugin. this allowed us to login with our existing credentials without using 2fa.

    have now activated wordfence again & it seems to be functioning normally again.

    site is running an old version of PHP 7.4.33 – a recent attempt to update it, crashed the site when tested with a clone. we have now updated everything possible, and so testing the clone again.

    Do you know what has happened with the 2fa login & how to prevent a recurrence?

    Thanks

    S

    Thanks – that’s very clear & helpful.

    loginizer logs are only showing last 24 hrs; can I access older ones?

    is there a way to tell if xmlrpc is being used on the site?

    thanks

    s

    similar question – site has had some bot activity that created user organiser roles & some venues & organisations.

    loginizer reports /wp-config.php &  htaccess as writable & 0640. how do I know if system requires that ability? wordfence has just written to htaccess, so presumably it is necessary.

    thanks

    S

Viewing 3 replies - 1 through 3 (of 3 total)