• Informazioni su WordPress
    • Informazioni su WordPress
    • WordPress.org
    • Documentazione
    • Supporto
    • Feedback
  • Login
  • Registrati
Vai al contenuto

WordPress.org

Italia

  • Temi
  • Plugin
  • Supporto
  • Team
  • Community
  • Traduci
  • Scarica WordPress ™
  • About Us: Our Mission
  • Blog

Directory dei plugin

  • Preferiti
  • Beta
  • Sviluppatori
Scarica

Shield Security: Powerful All-In-One Protection

Di Shield Security
  • Dettagli
  • Recensioni
  • Installazione
  • Supporto
  • Sviluppo

Descrizione

Get the highest rated 5* Security Plugin for WordPress

Don’t settle for the same ol’ security plugin just because everyone else does.

Shield makes Security for WordPress easy

There’s no reason for security to be so complicated.

Shield is the easiest security plugin to setup – you simply activate it and as you learn more, you can tweak the settings to suit your needs best.

Non-stop Notifications Are Not Okay.

Wouldn’t it be great if your Security plugin took responsibility and handled problems for you without non-stop email notifications?

Shield does exactly this. It’s your Silent Guardian.

Shield Features You’ll Absolutely Love =

  • Automatic Bot & IP Blocking – points-based system (that you control) to detect bad bots and block them.
  • Block Bot Attacks On Important Forms:
    • Login
    • Registration
    • Password Reset
  • Limit Login Attempts + Login Cooldown System
  • Powerful Firewall Rules
  • Restricted Security Admin Access
    • Prevents Unauthorized Changes To Site Even By Admins.
  • (2FA) 2-Factor Login Authentication:
    • Email
    • Google Authenticator
    • Yubikey
  • Block XML-RPC (including Pingbacks and Trackbacks)
  • Block Anonymous Rest API
  • Block and Bypass IP Addresses
    • Automatic IP Address Blocking Using Points-Based/Offenses System
    • Block or Bypass individual IPs
    • Block or Bypass IP Subnets
  • Automatic File Scanning
    • Detect File Changes – Scan & Repair WordPress Core Files
    • Detect Unknown/Suspicious PHP Files
  • Create a Custom Login URL by hiding wp-login.php
  • Detect (and optionally Block) Comment SPAM.
  • reCAPTCHA & hCAPTCHA support
  • Never Block Google: Automatic Detection and Bypass for GoogleBot, Bing and other Official Search Engines including:
    • Google
    • Bing,
    • DuckDuckGo
    • Yahoo!
    • Baidu
    • Apple
    • Yandex
  • Automatically Detect 3rd Party Services and Prevent Blocking Of:
    • ManageWP / iControlWP / MainWP
    • Pingdom, NodePing, Statuscake, UptimeRobot, GTMetrix
    • Stripe, PayPal IPN
    • CloudFlare, SEMRush
  • Full Audit Trail – Monitor All Site Activity, including:
    • All login/registration attempts
    • Plugin and Theme installation, activation, deactivation etc.
    • User creation and promotion
    • Page/Post create, update, delete
  • Advanced User Sessions Control
    • Restrict Multiple User Login
    • Restrict Users Session To IP
    • Block Use Of Pwned Passwords
    • Block User Enumeration (?author=x)
  • Full/Automatic Support for All IP Address Sources including Proxy Support
  • Full Traffic Log and Request Monitoring
  • HTTP Security Headers & Content Security Policies (CSP)

Dedicated Premium Support When You Go PRO

The Shield Security team prioritises email technical support over the WordPress.org forums.
Individual, dedicated technical support is only available to customers who have purchased Shield Pro.

Discover all the perks turning your security Pro at our Shield Security store.

Our Mission

We’re on a mission to liberate people who manage websites from unnecessarily repetitive work by automating as much as possible for you.

We have three rules that apply to everything we do, and you’ll see these when you use our products or contact us for help:

  1. Make everything as simple and easy-to-use as possible (and no simpler!).
  2. Be reliable – we make sure our products do what they promise.
  3. Take ownership for resolving problems – we will solve the problem if we can, or point you towards the solution.

This all combines to make it much more difficult for spambots (and also human spammers as they have to now wait) to work their dirty magic 🙂

Screenshot

  • A top-level dashboard that shows all the important things you need to know at-a-glance.
  • IP Whitelist and Blacklists lets you manage access and blocks on your site with ease.
  • A full audit log lets you see everything that happens on your site and why, and by whom.
  • Track user sessions and monitor who is logged-into your site and what they're doing.
  • Simple, clean options pages that let you configure Shield Security and all its options easily.

Installazione

Note: When you enable the plugin, the firewall is not automatically turned on. This plugin contains various different sections of
protection for your site and you should choose which you need based on your own requirements.

Why do we do this? It’s simple: performance and optimization – there is no reason to automatically turn on features for people that don’t
need it as each site and set of requirements is different.

This plugin should install as any other WordPress.org repository plugin.

  1. Browse to Plugins -> Add Plugin
  2. Search: Shield
  3. Click Install
  4. Click to Activate.

A new menu item will appear on the left-hand side called ‘Shield’.

FAQ

Please see the dedicated help centre for details on features and some FAQs.

How does the Shield compare with other WordPress Security Plugins?

Easy – we’re just better! 😉

Firstly, we don’t modify a single core WordPress or web hosting file. This is important and explains why randomly you upgrade your security plugin and your site dies.

Ideally you shouldn’t use this along side other Anti-SPAM plugins or security plugins. If there is a feature you need, please feel free to suggest it in the support forums.

My server has a firewall, why do I need this plugin?

This plugin is an application layer firewall, not a server/network firewall. It is designed to interpret web calls to your site to
look for attempts to circumvent it and gain unauthorized access.

Your network firewall is designed to restrict access to your server based on certain types of network traffic. The Shield
is designed to restrict access to your site, based on certain type of web calls.

How does the IP Whitelist work?

Any IP address that is on the whitelist will not be subject to any of the firewall processing. This setting takes priority over all other settings.

Does the IP Whitelist support IP ranges?

Yes. To specify a range you use CIDR notation. E.g. ABC.DEF.GHJ.KMP/16

I want to black list an IP address, where can I do that?

You can’t. The plugin runs an automatic black list IP system so you don’t need to maintain any manual lists.

I’ve locked myself out from my own site!

This happens when any the following 3 conditions are met:

  • you have added your IP address to the firewall blacklist,
  • you have enabled 2 factor authentication and email doesn’t work on your site (and you haven’t chosen the override option)

You can completely turn OFF (and ON) the Shield by creating a special file in the plugin folder.

Here’s how:

  1. Open up an FTP connection to your site, browse to the plugin folder /wp-content/plugins/wp-simple-firewall/
  2. Create a new file in here called: “forceOff”.
  3. Load any page on your WordPress site.
  4. After this, you’ll find your Shield has been switched off.

If you want to turn the firewall on in the same way, create a file called “forceOn”.

Remember: If you leave one of these files on the server, it will override your on/off settings, so you should delete it when you no longer need it.

Which takes precedence… whitelist or blacklist?

Whitelist. So if you have the same address in both lists, it’ll be whitelisted and allowed to pass before the blacklist comes into effect.

What changes go into each version?

The changelog outlines the main changes for each release. We group changes by minor release “Series”. Changes in smaller “point” releases are highlighted
using (.1) notation. So for example, version 4.4.1 will have changelog items appended with (.1)

Can I assist with development?

Yes! We actively develop our plugin on Github and the best thing you can do is submit pull request and bug reports which we’ll review.

How does the pages/parameters whitelist work?

It is a comma-separated list of pages and parameters. A NEW LINE should be taken for each new page name and its associated parameters.

The first entry on each line (before the first comma) is the page name. The rest of the items on the line are the parameters.

The following are some simple examples to illustrate:

edit.php, featured

On the edit.php page, the parameter with the name ‘featured’ will be ignored.

admin.php, url, param01, password

Any parameters that are passed to the page ending in ‘admin.php’ with the names ‘url’, ‘param01’ and ‘password’ will
be excluded from the firewall processing.

*, url, param, password

Putting a star first means that these exclusions apply to all pages. So for every page that is accessed, all the parameters
that are url, param and password will be ignored by the firewall.

How does the login cooldown work?

When enabled the plugin will prevent more than 1 login attempt to your site every “so-many” seconds. So if you enable a login cooldown
of 60 seconds, only 1 login attempt will be processed every 60 seconds. If you login incorrectly, you wont be able to attempt another
login for a further 60 seconds.

More Info: https://shsec.io/2t

How does the GASP Login Guard work?

This is best described on the blog

How does the 2-factor authentication work?

2-Factor Authentication is best described here.

I’m getting an update message although I have auto update enabled?

The Automatic (Background) WordPress updates happens on a WordPress schedule – it doesn’t happen immediately when an update is detected.
You can either manually upgrade, or WordPress will handle it in due course.

How can I remove the WordPress admin footer message that displays my IP address?

You can add some custom code to your functions.php exactly as the following:

add_filter( 'icwp_wpsf_print_admin_ip_footer', '__return_false' );

How can I change the text/html in the Plugin Badge?

Use the following filter and return the HTML/Text you wish to display:

add_filter( 'icwp_shield_plugin_badge_text', 'your_function_to_return_text' );

How can I change the roles for login notification emails?

Use the following filter and return the role in the function:

add_filter( 'icwp-wpsf-login-notification-email-role', 'your_function_to_return_role' );

Possible options are: network_admin, administrator, editor, author, contributor, subscriber

Recensioni

Site down, HTTP ERROR 500

crazyturks 7 Gennaio 2021
Activating this plugin brings the site down. HTTP ERROR 500

Awesome plugin & superb support.

Cristopher 7 Dicembre 2020
* Reliable. * Easy-to-use. * Great features that really protect. * Well documented. * Fast and accurate support.

Fantastic Plugin with great support

traceybarron 6 Dicembre 2020
I've used this plugin on many sites for some time now. It's fantastic. Not only has it helped keep out any security threats, it's a great way to check the audit trail of what's been going on on our sites. It's super configurable too. The support is great as well. They are friendly, prompt and resolve issues quickly. Thoroughly recommended!!

great security with many options

mdebeus 25 Novembre 2020
what a lot of great options! So please take your time to look into it. It's installed in a minute but it takes time to adjust this plugin to your own needs. For me IP Bypass List does not always works with IPv6, dunno why but i'm not into IPv6. Regardless I do like the plugin. I can recommend it!

Intriguing Point System for Blocking

bzle 18 Novembre 2020
Shield Security has a ton of great options to improve the security of WordPress, and a lot of these can be found in other security plugins too. However, their point system is fairly unique from what I've seen. You get to control whether an action is ignored, logged, counts as a point, two points, or immediate block. Those options aren't available for everything, but it's an interesting way to let you customize how tight the security is. Sometimes I still find it difficult to navigate all the settings modules. Many times I've had a specific settings in mind and I don't know which module to click on, so I have to hunt around in different modules and tabs within those modules. But on the plus side, those settings and features are there... just need to find them. Worth it.

peace of mind

18 Novembre 2020
goes on every WP site I oversee!
Leggi tutte le recensioni di 934

Contributi e sviluppo

“Shield Security: Powerful All-In-One Protection” è un software open source. Le persone che hanno contribuito allo sviluppo di questo plugin sono indicate di seguito.

Collaboratori
  • One Dollar Plugin
  • Paul

“Shield Security: Powerful All-In-One Protection” è stato tradotto in 7 lingue. Grazie ai traduttori per i loro contributi.

Traduci “Shield Security: Powerful All-In-One Protection” nella tua lingua.

Ti interessa lo sviluppo?

Esplora il Codice segui il Repository SVN iscriviti al Log delle Modifiche. Puoi farlo tramite RSS con un lettore di feed.

Changelog (registro delle modifiche)

The full Shield Changelog can be viewed from our home page:

Full Shield Security Changelog

ShieldPRO delivers exclusive security features to the serious site administrator to maximise site security
You’ll also have direct access to our technical support team.

Go Pro from just $1/month.

Meta

  • Versione del plugin: 10.1.5
  • Ultimo aggiornamento: 4 settimane fa
  • Installazioni attive stimate: 70.000+
  • Richiede WordPress: 3.5.2 o superiore
  • Testato fino alla versione: 5.6
  • Richiede PHP: 7.0 o superiore
  • Lingue:

    Dutch, English (Canada), English (UK), English (US), German, Italian, Japanese, e Romanian.

    Traduci nella tua lingua

  • Tag:
    firewalllogin protectionmalwarescantwo factor authentication
  • Visualizzazione avanzata

Valutazioni

Leggi tutto
  • 5 stelle 879
  • 4 stelle 24
  • 3 stelle 10
  • 2 stelle 6
  • 1 stella 15
Accedi per inviare una revisione.

Collaboratori

  • One Dollar Plugin
  • Paul

Supporto

Hai qualcosa da dire? Ti serve aiuto?

Problemi risolti negli ultimi due mesi:

14 su 18

Chiedi nel forum di supporto

Donazioni

Vuoi sostenere le versioni future?

Fai una donazione per lo sviluppo

  • Chi siamo
  • Blog
  • Hosting
  • Donazione
  • Supporto
  • Sviluppo
  • Mettersi in gioco
  • Imparare
  • Vetrina
  • Plugin
  • Temi
  • WordCamp
  • WordPress.TV
  • BuddyPress
  • bbPress
  • WordPress.com
  • Matt
  • Privacy
  • Public Code
  • @WordPress
  • WordPress

Il Codice è Poesia