콘텐츠로 바로가기
WordPress.org

한국어

  • 테마
  • 플러그인
  • 소식
    • 문서
    • 포럼
  • About
    • WordPress 6.9
    • 워드프레스 6.8
    • 워드프레스와 40% 웹을 위한 여정
    • 워드프레스 번역 핸드북
  • 워드프레스 한국팀
  • 워드프레스 받기
워드프레스 받기
WordPress.org

Plugin Directory

Holographic Login Shield

  • 플러그인 제출하기
  • 내 즐겨찾기
  • 로그인
  • 플러그인 제출하기
  • 내 즐겨찾기
  • 로그인

Holographic Login Shield

작성자: Holographic
다운로드
  • 세부사항
  • 평가
  • 설치
  • 개발
지원

설명

Holographic Login Shield helps protect the WordPress login area from repeated failed logins, automated abuse and common account-discovery behaviour.

The plugin is designed to stay focused. It adds practical login hardening without replacing the WordPress admin area, adding unnecessary front-end assets or sending free-plugin security logs to an external service.

Free features include configurable failed-login lockouts, an automatic permanent IP block threshold, local allowed and blocked IP address lists, Cloudflare-aware visitor IP detection, a paginated recent activity log, CSV log export, log retention cleanup, generic login errors, XML-RPC control, Application Password control, optional author archive blocking, a hidden bot trap and optional throttled failed-login email alerts.

Allowed IP addresses can be added manually or with the Add My IP button. Blocked IP addresses can be added manually and are also populated automatically when the permanent blocking threshold is reached. Both lists remain local to your WordPress site.

스크린샷

Main Holographic Login Shield settings screen showing security status, protection settings, allowed and blocked IP address controls, and recent login activity.
Main Holographic Login Shield settings screen showing security status, protection settings, allowed and blocked IP address controls, and recent login activity.

설치

  1. Upload the plugin files to the /wp-content/plugins/holographic-login-shield directory, or install the plugin ZIP through the WordPress Plugins screen.
  2. Activate the plugin.
  3. Go to Settings > Login Shield.
  4. Review the default login protection settings and save any changes.

FAQ

Does this block brute-force login attempts?

Yes. The plugin can lock out repeated failed login attempts from the same IP address and username combination. You can configure the failed attempt limit, attempt window, lockout length and automatic permanent IP block threshold.

What does the permanent IP block setting do?

It automatically adds an IP address to the local blocked IP list after that IP reaches the configured failed-login threshold within the attempt window. Set the value to 0 if you want to disable automatic permanent blocking.

Can I allow my own IP address?

Yes. Add your IP address to the allowed IP list manually or use the Add My IP button on the settings page. Allowed IP addresses bypass local lockouts, automatic permanent blocking and the local block list.

Can I remove a blocked IP address?

Yes. Delete the IP address from the blocked IP box and save the settings.

Does the free plugin send login logs to Holographic Plugins?

No. The free plugin stores login security logs locally in your WordPress database. It does not send those logs to Holographic Plugins.

Can I disable XML-RPC?

Yes. You can disable XML-RPC from the plugin settings if your site does not need it.

Can I disable Application Passwords?

Yes. The plugin can disable WordPress Application Password authentication if your site does not need external application access.

Can I export the login log?

Yes. Site administrators can export recent login activity as a CSV file from the plugin settings page.

후기

이 플러그인에 대한 평가가 없습니다.

기여자 & 개발자

“Holographic Login Shield”(은)는 오픈 소스 소프트웨어입니다. 다음의 사람들이 이 플러그인에 기여하였습니다.

기여자
  • Holographic

자국어로 “Holographic Login Shield”(을)를 번역하세요.

개발에 관심이 있으십니까?

코드 탐색하기는, SVN 저장소를 확인하시거나, 개발 기록을 RSS로 구독하세요.

변경이력

1.0.15

  • Added safe Cloudflare-aware visitor IP detection for login protection and activity logging.
  • Added pagination to the Activity Log.
  • Improved Activity Log notes when a trusted Cloudflare proxy is detected.

1.0.14

  • Added the plugin screenshot asset and screenshot readme entry.
  • Improved the WordPress.org readme description and FAQs.

1.0.13

  • Updated the WordPress.org short description and tightened remaining form and notice input handling flagged by the local checker.

1.0.12

  • Reworked remaining form and notice input handling to use WordPress unslash and sanitising functions instead of PHP filter input helpers.

1.0.11

  • Tightened login honeypot nonce handling and request validation.
  • Moved local activity logging away from direct custom-table calls to remove the remaining database-query warnings.

1.0.8

  • Fixed a fatal callback error caused by a removed security header method still being registered.
  • Restored bundled admin CSS and JavaScript assets used by the settings page.

1.0.7

  • Completed a release-prep optimisation and security pass.
  • Tightened login bot trap handling, IP validation, cache invalidation and uninstall cleanup.
  • Added suggested privacy policy wording for local login security logs.
  • Changed new-install failed-login email alerts to opt-in.
  • Removed the public plugin-identifying response header.

1.0.6

  • Fixed the Add My IP admin button script so it correctly adds the detected administrator IP address to the allowed IP list.

1.0.5

  • Added an Add My IP button for the allowed IP list.
  • Added automatic permanent IP blocking after a configurable number of failed logins.

1.0.4

  • Added object caching around CSV export log retrieval to satisfy Plugin Check database caching requirements.

1.0.3

  • Added local IP allow and block lists.
  • Added CSV login log export.
  • Added Application Passwords control.
  • Added generic login error protection.
  • Added optional author archive blocking.
  • Added daily log retention cleanup.
  • Added a security status panel.
  • Updated the readme contributor name.

1.0.2

  • Changed uninstall cleanup so the custom log table is cleared without dropping the table.

1.0.1

  • Fixed Plugin Check issues and updated release metadata.

1.0.0

  • Initial release.

기초

  • 버전 1.0.15
  • 최근 업데이트: 2개월 전
  • 활성화된 설치 10보다 적음
  • 워드프레스 버전 6.4 또는 그 이상
  • 다음까지 시험됨: 7.0.3
  • PHP 버전 8.1 또는 그 이상
  • 언어
    English (US)
  • 태그:
    adminBrute Forceloginsecurityxmlrpc
  • 고급 보기

평점

아직 제출된 리뷰가 없습니다.

Your review

모든 리뷰 보기

기여자

  • Holographic

지원

할 말 있으신가요? 도움이 필요하신가요?

지원 포럼 보기

  • 소개
  • 뉴스
  • 호스팅
  • 개인정보
  • 쇼케이스
  • 테마
  • 플러그인
  • 패턴
  • 배우기
  • 지원
  • 개발자 도구
  • WordPress.tv ↗
  • 참여하기
  • 이벤트
  • 기부하기 ↗
  • Swag ↗
  • WordPress.com ↗
  • Matt ↗
  • bbPress ↗
  • BuddyPress ↗
WordPress.org
WordPress.org

한국어

  • X(이전 트위터) 계정 방문하기
  • 블루스카이 계정 방문하기
  • 마스토돈 계정 방문하기
  • 스레드 계정 방문하기
  • 페이스북 페이지 방문하기
  • 인스타그램 계정 방문하기
  • LinkedIn 계정 방문하기
  • 틱톡 계정 방문하기
  • 유튜브 채널 방문하기
  • 텀블러 계정 방문하기
코드는 詩다
The WordPress® trademark is the intellectual property of the WordPress Foundation.