Page tree

Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

FieldValueComment
Site TitleKryptonWe like to reference our domain name.
Usernamesetupadmintempadmin

You probably do not want to use the default admin for username. WordPress (as of Sep 2012) out of the box, has no facilities to stop dictionary attacks against the administration system. Admin will be the first username guessed by automated attacks.

Also keep in mind that anything you Because the username put here will show up in the default site generated after the setup and publicly accessible anyway, this will be a temporary administrator account.

Password 

As mentioned, WordPress has no facilities to stop dictionary attacks. On top of that, the default setup exposes your administrator account name on the Internet.

Choose a very very long and complex password. (Anyone know of a good site that shows how quickly an entered password would be broken with a dictionary attack, put the link here)

Your E-mailadmin@bonsaiframework.comEven in a small company you should have a general support email box that only administrators have access to. Use that rather than your personal email address. This email address will be used for password recovery purposes Whatever email is chosen here, it will not be the final one used by the real administrator account. Keeping in mind that WordPress does not allow duplicate emails, in this example, the administrator will use a personal email and then use a proper email account when the real administrator account is created.
Privacy This depends on the purpose of your website. Unless this is a private site that should not show up on Google, leave it checked.

...

RoleDescriptionUserName
AdministratorAdministrators have access to all the administration features. setupadmin
EditorEditors can publish posts, manage posts as well as manage other people’s posts, etc. perrywhite
AuthorAuthors can publish and manage their own posts, and are able to upload files. clarkkent, loislane
ContributorContributors can write and manage their posts but not publish posts or upload media files. jimmyolsen
SubscriberSubscribers can read comments/comment/receive newsletters, etc. but cannot create regular site content. 
Tip

WordPress has very extensive built in help. On whatever section you are on, click the "Help" button located on the top right of the browser.

 

...

lexluthor

(explain why we do not use the first admin account we created) Creat the real administrator account,

FieldValueComment
Site TitleKryptonWe like to reference our domain name.
Usernamesetupadmin

WordPress (as of Sep 2012) out of the box, has no facilities to stop dictionary attacks against the administration system. So pick something not that obvious. The example here is very obvious so don't use it.

Consider using your server name.

Password 

As mentioned, WordPress has no facilities to stop dictionary attacks. On top of that, the default setup exposes your administrator account name on the Internet.

Choose a very very long and complex password. (Anyone know of a good site that shows how quickly an entered password would be broken with a dictionary attack, put the link here)

Your E-mailadmin@bonsaiframework.comIf there is more than one administrator, you should have a general support email box that only administrators have access to. This email address will be used for password recovery purposes.

...

 

Warning

Past this point is not yet organized or complete.

...