Mostra la pàginaRevisions anteriorsQuè hi enllaçaExporta a PDFTorna dalt Aquesta pàgina és només de lectura. Podeu veure'n el codi font, però no podeu canviar-la. Consulteu el vostre administrador si penseu que això és degut a algun error. = WORDPRESS * /vía: [[http://wpzine.com/wordpress-security-hacks-and-tricks/]] * /vía: [[http://www.katharsix.com/la-seguridad-en-wordpress-algunos-consejos/]] * /vía: [[http://www.katharsix.com/la-seguridad-en-wordpress-algunos-consejos-ii/]] * [[web:security:wordpress:multisite]] * [[web:security:wordpress:securizar]] * [[web:security:wordpress:seguridad]] == trucos * obligar método https VS ftp al actualizar:<code php; wp-config.php>define('FS_METHOD', 'direct');</code> == recover & debugging * desactivar plugins:[[https://www.ostraining.com/blog/wordpress/disable-a-wordpress-plugin/]] * ''wp-content/plugins'', rename * DBB -> wp-options -> active_plugins * DEBUG:[[https://wordpress.org/support/article/debugging-in-wordpress/]] == plugins * Activity Log * All in One WP Security * Asesor de Cookies * [[http://wordpress.org/extend/plugins/akismet/|Akismet]], el antispam * [[http://wordpress.org/extend/plugins/broken-link-checker/|Broken Link Checker]] * Contact Form 7 (formularios de contacto sencillos) * Disable XML-RPC-API * Easy HTTPS redirection * Email Log * Font Awesome * Google Analytics * Google Analytics dashboard for WP * [[http://wordpress.org/extend/plugins/limit-login-attempts/|Limit Login attempts]] * Loginizer Security * MailPoet newsletters * Media Library Organizer * <del>miniOrange 2 factor auth.</del> * Obfuscate Email * PHP Compatibility Checker * User Groups * User Groups restrictions * Secure WordPress * WP 2FA - Two-factor authentication for WordPress * WP Construction Mode (diferentes opciones para poner la página "en obras") * WP Database Backup * WP Email Template lite * WP Forms Lite * WPS Hide Login * WP Maintenance mode * [[http://wordpress.org/extend/plugins/wordpress-firewall-2/|WordPress Firewall 2]] * WP Super Cache * YouTube == sistemas * borrar ficheros y carpetas de instalación: * /readme.html * /wp-admin/install.php * proteger fichero wp-config.php<code apache .htaccess> <Files wp-config.php> order allow,deny deny from all </Files></code> * Si es posible, permitir acceso ADMIN solo desde ciertas IPs a los directorios **wp-admin**, **wp-includes**<code php .htaccess># my ip address only order deny,allow allow from 213.27.244.178 allow from 62.97.72.29 deny from all</code> * No permite acceder a las imágenes desde los buscadores, habría que excluir **wp-includes/upload**\\ * evitar el acceso a ficheros:<code php .htaccess> # disable directory browsing Options All –Indexes </code> * controlar acceso a directorio UPLOADS o UPGRADE, permitiendo solo ciertos tipos de ficheros<code php .htaccess> # seguridad de subida de archivos en carpeta <Files ~ ".*\..*"> Order Allow,Deny Deny from all </Files> <FilesMatch "\.(jpg|jpeg|jpe|gif|png|bmp|tif|tiff|doc|pdf|rtf|xls|numbers|odt|pages|key|zip|rar)$"> Order Deny,Allow Allow from all </FilesMatch> </code> * [[http://ayudawordpress.com/seguridad-en-la-carpeta-uploads-de-wordpress/]]\\ web/security/wordpress.txt Darrera modificació: 15/10/2025 05:59per mate