Follow @BPSPro

Whats New In BulletProof Security Pro 5.8

Comments Off RSS Site Feed Author: AITpro Admin
Published: May 1, 2013
Updated: May 14, 2013

Whats New in BPS Pro 5.8/5.8.1/5.8.2

 

BPS Pro 5.8 Primary Focus: Login Security & Monitoring

New Features:

BulletProof Security Pro Login Security & Monitoring


Login Security & Monitoring:

BPS Pro Login Security & Monitoring allows you to choose whether or not to log all user account logins or only log user account lockouts. You can choose to have S-Monitor alerts displayed in your WP Dashboard, BPS Pages only or turn them off based on the Login Security options that you choose. S-Monitor Login Security email alerting options allow you to choose 5 different email alerting options: Choose to have email alerts sent when a User Account is locked out, An Administrator Logs in, An Administrator Logs in and when a User Account is locked out, Any User logs in when a User Account is locked out or Do Not Send Email Alerts. Recommended setting is: A User Account Is Locked Out.

Max Login Attempts: Type in the maximum number of failed login attempts allowed before a User Account is automatically Locked out.

Automatic Lockout Time: Type in the number of minutes that you would like the User Account to be locked out for when the maximum number of failed login attempts have been made.

Manual Lockout Time: Type in the number of minutes that you would like the User Account to be locked out for when you manually lock a User Account using Lock checkbox options in the Dynamic Login Security form.

Max DB Rows To Show: Type in the maximum number of database rows that you would like to display in the Dynamic Login Security form. Leaving this text box blank means display all database rows.

Turn On/Turn Off: Turn On Login Security or Turn Off Login Security.

Logging Options: You can choose to Log All User Account Logins or Log Only User Account Lockouts. Recommended Setting: Log Only Account Lockouts.Reset / Clear Login Security Alerts: If you choose to have S-Monitor Login Security Alerts displayed to you in your WP Dashboard or BPS Pro pages then to clear the alert you will need to click the Reset / Clear Login Security Alerts button.

Search feature: The search feature allows you to search all of the Login Security database rows. To search for a username enter that username, to search for an IP address enter that IP address, etc.

The Dynamic Login Security Form: You have 3 options: Lock, Unlock or Delete database rows. The Login Security database table is hooked into the WordPress Users database table, but they are 2 completely separate database tables. If you lock a User Account then BPS Pro will enforce that lock on that User Account and the User will not be able to log in. If you unlock a User Account then the User will be able to login. Deleting database rows in the Login Security database table does NOT delete the User Account from the WordPress Users database table. When you delete a User Account it is pretty much the same thing as unlocking a User Account. To delete actual User Accounts you would go to the WordPress Users page and delete that User Account.


BPS Pro 5.8.1 Additions/Corrections:


Addition – Stand Alone Login Security Unlock User Account Form:

A stand alone script/Form has been created that allows you to Unlock locked User Accounts outside of your WordPress Dashboard. To use this stand alone script download it from this BulletProof Security Pro plugin folder – /wp-content/plugins/bulletproof-security/admin/htaccess/bpsunlock.php and then upload it to your website root folder. Then type in the path to the bpsunlock.php file in your Browser. Example: http://www.example.com/bpsunlock.php. The stand alone script displays step by step instructions on how to use it.

Addition – Login Security Locked Status Displays in Red Font:
To make Locked out User Accounts stand out better visually Locked User Accounts now display in Bold Red Font.

Addition/Correction – Plugin Description Updated
The BulletProof Security Pro plugin description on the WordPress Plugins page now includes Login Security/Login Monitoring: Log All Account Logins or Log Only Account Lockouts.

Addition/Correction – S-Monitor Login Security Status & Alerts Option:
Choosing Turn Off Displayed Status & Alerts for Login Security Status & Alerts now turns Off both the Login Security Status Display and Login Security Alerts.

Correction – Login Security Search Form:
Doing a search or Locked or Not Locked Status now accurately returns either all Locked User Accounts or all Not Locked User Accounts in the Dynamic DB Search Form. DB Query has been changed from LIKE to = for the Status DB search field. DB Query has also been for the user ID search field from LIKE to =. Note: Search results for the User ID may also return other similar results based on the User ID. Example: if searching for user ID 8 and and 8 exists in other search fields than additional DB search results will be displayed.


BPS Pro 5.8.2 New Login Security Error Messages Option:

Error Messages: 

Standard WP Login Errors: will display the normal WP login errors. Example1: ERROR: The password you entered for the username X is incorrect. BPS Example2: ERROR: This user account has been locked until May 14, 2013 9:31 am due to too many failed login attempts. You can login again after the Lockout Time above has expired.

User/Pass Invalid Entry Error: will display a generic Invalid Entry error message instead of displaying normal WP login errors for incorrect username or incorrect password, but if a user account is locked out then the BPS timestamp and Lockout Time error message will be displayed. Example: ERROR: Invalid Entry for either incorrect username or incorrect password. BPS Example2: ERROR: This user account has been locked until May 14, 2013 9:31 am due to too many failed login attempts. You can login again after the Lockout Time above has expired.

User/Pass/Lock Invalid Entry Error: will display a generic Invalid Entry error message instead of displaying normal WP login errors for incorrect username, incorrect password and when the user account is locked out – the BPS Lockout Time error message will NOT be displayed. 
CAUTION: If the user account is locked out then no indication will be given that the user account is locked out and only a generic ERROR: Invalid Entry message will be displayed.

 

BPS Pro 5.8.2 New Login Security Password Reset Option:

Password Reset: Disable/Enable Password Reset
The Enable Password Reset option will allow the normal WP Lost Password link to be displayed and allow locked out users to reset their passwords. The Disable Password Reset option disables the WP Login reset password feature and displays this error message – Password reset is not allowed for this user. This error message is displayed for valid or invalid user accounts or email addresses. In other words, there is no indication of whether or not a valid username or email address is being entered. This of course disables a lot of cool WordPress login features, but if you want complete Login Stealth Mode then this is the option for you.
Skip to toolbar