...
Plugin | Description | Notes |
---|---|---|
Google Authenticator | The Google Authenticator plugin for WordPress gives you two-factor authentication using the Google Authenticator app for Android/iPhone/Blackberry. The very first time your browser visits the website, it will require two-factor. Subsequent visits with the browser will not. The two-factor authentication requirement can be enabled on a per-user basis. You could enable it for your administrator account, but log in as usual with less privileged accounts. | Make sure time is synced with same time servers across the phone and server. For example, my iphone was off by 2 minutes because it was set manually to Toronto. Best thing to do is turn on the 4 minute drift allowance. When setting the password make sure there are no spaces otherwise the barcode will not work. |
BAW More Secure Login | Grid Cards | |
Login Security Solution | Adds some common defences against brute force attacks. | Most useful feature is that it blocks user for x number of minutes progressively as more attempts are tried. Also blocks by cookie and ip address. |
Anti-Spam | Stops the spam comments that show up on your blog promoting other websites while filtering out real comments | Have yet to see a comment from a spammer |
bodi0`s Bots visits counter | This logs the bots that visit your site and gives the option to block/unblock by editing the .htaccess file | Its an interesting tool to see what bots visit your site |
Limit Login Attempts | This lets you limit login attempts and logs the IP and username of those who get banned | Think of fail2ban in wordpress its a lot easier to edit too than the actual fail2ban plugin |
P3 (Plugin Performance Profiler) | This is a plugin that tests page performance and records what plugin is taking the most time and it has 2 versions of scanning automatic and manual. | This is really useful if your blog is taking an unusually long amount of time to load and you have no clue why |
WP-Mail-SMTP | If you cannot get Mail() to work in php you can install this plugin to use SMTP instead. | To setup to use Google use: |
Should have link to how to ssh in to disable plugins if they misbehave.
...