Securing WordPress by Bill Davis

Post on 08-May-2015

1,015 views 1 download

description

Bill Davis advises the East Bay WordPress Meetup on how to keep their WordPress sites safe from malware and hacks.

transcript

Securing WordPress

By Bill Davis

Internet Marketing Muscle

Installation

Script versus Manual?

Don’t use “admin”

Use a strong password

Different nickname from administrator

Bill Davis Internet-Marketing-Muscle.com

Plugins/Tools – Backup

Which plugins?

Backup

– WP DB Backup

– WP Twin

– Backup Buddy

Bill Davis Internet-Marketing-Muscle.com

Plugins/Tools – Security

Which plugins?

Security – Scanning

WebsiteDefender WordPress Security

– Logins Login Lockdown

Limit Lockdown Attempts

– Change Admin Login Admin renamer extended

– .htaccess Bulletproof Security

– Comment SPAM Akismet

SI CAPTCHA Anti-Spam

Bill Davis Internet-Marketing-Muscle.com

Upgrading or Changing WordPress

Always use a test blog!

Always have a current backup!

Check compatibility

Bill Davis Internet-Marketing-Muscle.com

Backing Up

Why it’s important

Frequency

General backup principles

Why backups are not good enough

– Test your restores

Bill Davis Internet-Marketing-Muscle.com

User Administration

Change admin username

Two admins at all times

Use strong passwords

Delete unused accounts

Setting user roles

Bill Davis Internet-Marketing-Muscle.com

Resources

WP Twin –

– http://u-like.us/wptwin

WP Secure Pro –

– http://u-like.us/wpsecurepro

The Ultimate Guide to WordPress –

– http://theultimateguidetowordpress.com/

Internet Marketing Coaching Academy –

– http://coaching-academy.us

Bill Davis Internet-Marketing-Muscle.com