{"id":5246,"date":"2016-05-15T09:55:51","date_gmt":"2016-05-15T16:55:51","guid":{"rendered":"http:\/\/www.ait-pro.com\/aitpro-blog\/?p=5246"},"modified":"2016-05-15T10:02:25","modified_gmt":"2016-05-15T17:02:25","slug":"whats-new-in-bulletproof-security-pro-11-8","status":"publish","type":"post","link":"https:\/\/www.ait-pro.com\/aitpro-blog\/5246\/bulletproof-security-pro\/whats-new-in-bulletproof-security-pro-11-8\/","title":{"rendered":"Whats New In BulletProof Security Pro 11.8"},"content":{"rendered":"<div class=\"bluelink\">\n<table border=\"0\" width=\"100%\" cellspacing=\"0\" cellpadding=\"0\">\n<tbody>\n<tr>\n<td>\n<h3><span style=\"color: #000080;\"><strong><br \/>\nNew Setup Wizard Options Option: Enable|Disable htaccess Files:<\/strong><\/span><\/h3>\n<p><strong><a title=\"Setup Wizard Enable|Disable htaccess Files Forum Topic\" href=\"http:\/\/forum.ait-pro.com\/forums\/topic\/htaccess-files-disabled-setup-wizard-enable-disable-htaccess-files\/\" target=\"_blank\">Setup Wizard Enable|Disable htaccess Files Forum Topic<\/a><br \/>\n<\/strong>The BPS Apache Modules and Directives testing code checks if mod_access_compat and\/or mod_authz_core or mod_rewrite are loaded or can be processed (converted\/translated) by your server by using a testing htaccess file and then checking the responses from your server. If BPS detects that your website\/server cannot use htaccess files\/code based on the responses from your website\/server then BPS will automatically save\/set the Setup Wizard Option &gt; Enable|Disable htaccess Files setting to &gt; htaccess Files Disabled. Automation Compatibility: htaccess features and files are automatically disabled if the Apache server does not have the necessary\/required Modules loaded to use htaccess code\/files. If the server type is Windows, Nginx or LiteSpeed and the server does not have the necessary conversion\/translation configuration to use htaccess code\/files then htaccess features and files are automatically disabled. Manual Usage: The Enable|Disable htaccess Files Option can be used to manually override the automated BPS Apache Modules and Directives checking code to manually disable or enable all BPS htaccess features. See the Setup Wizard Enable|Disable htaccess Files Forum Topic link above for details.<\/td>\n<\/tr>\n<tr>\n<td>\n<h3><span style=\"color: #000080;\"><strong>New System Info Page Checks: Total Plugins Installed &amp; Total Plugins Activated:<\/strong><\/span><\/h3>\n<p>Displays Total Plugins Installed &amp; Total Plugins Activated. Usage: Troubleshooting issues\/problems where excessive plugins are installed and\/or are out of memory issues\/problems that appear to be plugin conflicts instead of out of memory problems.<\/td>\n<\/tr>\n<tr>\n<td>\n<h3><span style=\"color: #000080;\"><strong>New System Info Page Checks: GD Library Extension\/Version &#8211; ImageMagick Extension\/Version:<\/strong><\/span><\/h3>\n<p>Checks if the GD Library extension is loaded and displays the version. Checks if the ImageMagick extension is loaded and displays the version.<\/td>\n<\/tr>\n<tr>\n<td>\n<h3><span style=\"color: #000080;\"><strong>New S-Monitor Simple Email Tests Option:<\/strong><\/span><\/h3>\n<p>S-Monitor additional email test option added for the WordPress wp_mail() function\/PHPMailer under Simple Email Tests Form.<\/td>\n<\/tr>\n<tr>\n<td>\n<h3><span style=\"color: #000080;\"><strong>New Dismiss Notice: Wordfence WAF Firewall HUD Dismiss Notice:<\/strong><\/span><\/h3>\n<p>Detects Wordfence htaccess code problems and displays help info with a forum link for solutions.<\/td>\n<\/tr>\n<tr>\n<td>\n<h3><span style=\"color: #000080;\"><strong>Other|Misc:<\/strong><\/span><\/h3>\n<p><span style=\"color: #000080;\"><strong>\u2022 Compatibility|Enhancement|Improvement:<\/strong><\/span>\u00a0Apache Modules|Directives|Backward Compatibility(Yes|No)|IfModule(Yes|No): Additional checks for compatibility with server configurations that do not have the necessary standard modules or directives loaded\/configured to use htaccess files. Improved test\/checking results accuracy: expected: 99%|hopeful: 100%. Displays conclusive Modules and Directives status response results. Function called in: Pre-Installation Wizard, BPS Upgrade, System Info &amp; Core In-page check. Creates|Updates new DB option for Enable|Disable htaccess Files Setup Wizard Option. Displays: mod_access_compat, mod_authz_core, mod_authz_host and mod_rewrite checking\/testing status results.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Enhancement:<\/strong><\/span>\u00a0Delete and Run text added under individual DB Backup dynamic form checkboxes.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Enhancement:<\/strong><\/span>\u00a0View, Restore and Delete text added under individual Quarantine dynamic form checkboxes.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Enhancement:<\/strong><\/span>\u00a0Security Log sort Security Log Entry Types.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Enhancement:<\/strong><\/span>\u00a0Add list of Security Log Entry Types directly in the automated Security Log zip emails.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Enhancement:<\/strong><\/span>\u00a0XTF Form Dashboard Reminder Alert. If the XTF Form is not locked a Dashboard Reminder Alert will be displayed.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Improvement:<\/strong><\/span>\u00a0PHP Error Log in-page help text and link added to PHP Error Log troubleshooting forum topic.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Improvement:<\/strong><\/span>\u00a0Plugin Firewall Deactivation: Plugin Firewall AutoPilot Mode is now turned Off when the Plugin Firewall is deactivated. Plugin Firewall Activation: Additional checks and messaging when the Plugin Firewall is activated to check if AutoPilot Mode is turned On or Off.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Improvement:<\/strong><\/span>\u00a0System Info PHP Version Check displays PHP version.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Improvement:<\/strong>\u00a0<\/span>System Info table title change from: SQL Database|Permalink Structure|WP Installation Folder|Site Type to: SQL Database Info|WordPress Site Info|Misc Checks.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Improvement:<\/strong><\/span>\u00a0System Info WordPress Site Info checks order changed.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Improvement:<\/strong>\u00a0<\/span>Form option naming convention changes from Turn On|Turn Off to X On|X Off for: Login Security, JTC, ISL, ACE, UI|UX, DB Backup, Plugin Firewall AutoPilot Mode, AutoRestore, ini_set Options, DB Monitor, File Lock, Folder Lock and Setup Wizard Options form option names. Special thanks to Laughter On Water:\u00a0<a title=\"Laughter On Water\" href=\"http:\/\/low.li\/\" target=\"_blank\">http:\/\/low.li\/<\/a>\u00a0for this excellent idea.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Improvement:<\/strong><\/span>\u00a0Automated email alert: AutoRestore is turned Off help text improved. Additional help text info regarding WP Manual and Automatic updates.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Improvement:<\/strong><\/span>\u00a0Remove class update-nag for various Status Display error checking divs to output error messages inline\/newline.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 AutoFix:<\/strong>\u00a0<\/span>Plugin Firewall|AutoPilot Mode: Automatically remove duplicate or invalid ADDITIONAL ROLES IP code.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 AutoFix:<\/strong><\/span>\u00a0Plugin Firewall|AutoPilot Mode: Automatically remove duplicate BEGIN ADDITIONAL ALLOW FROM RULES blocks of code.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 AutoFix:<\/strong><\/span>\u00a0Plugin Firewall|AutoPilot Mode: Automatically fix blank plugins.htaccess file problem.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 BugFix:<\/strong><\/span>\u00a0Duplicate MIME-Version email headers sent in BPS automated emails. Using standard wp_mail headers array vs concatenation and duplicate MIME-Version header removed.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 BugFix|AutoFix:<\/strong><\/span>\u00a0XTF Form 403 BugFix. The XTF folder htaccess file is obsolete and is automatically removed during BPS Pro upgrade. The Plugin Firewall protects the XTF Form. Note: The Xternal Tools page has 2 layers of protection: Password Protection and the BPS Pro Plugin Firewall.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 BugFix|AutoFix:<\/strong><\/span>\u00a0DB Backup Zip Download 403 error. Overwrite\/replace older htaccess file versions on page load.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 BugFix|Form Sanitization:<\/strong><\/span>\u00a0Special thanks to Colette Chamberland:\u00a0<a title=\"Colette Chamberland\" href=\"http:\/\/cjchamberland.com\/\" target=\"_blank\">http:\/\/cjchamberland.com<\/a>\u00a0for finding and reporting a Form Sanitization bug in BPS DB Backup that needed to be corrected\/fixed. We appreciate the time and effort Colette Chamberland put into finding this Form Sanitization bug in BPS and reporting it to us.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 BugFix|Form Sanitization:<\/strong><\/span>\u00a0Special thanks to Kacper Szurek:\u00a0<a title=\"Kacper Szurek\" href=\"http:\/\/security.szurek.pl\/\" target=\"_blank\">http:\/\/security.szurek.pl\/<\/a>\u00a0for finding and reporting 2 Form Sanitization bugs in BPS DB Backup that needed to be corrected\/fixed. We appreciate the time and effort Kacper Szurek put into finding these Form Sanitization bugs in BPS and reporting them to us.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 BugFix:<\/strong><\/span>\u00a0Undefined variable: response in \/wp-content\/plugins\/bulletproof-security\/bulletproof-security.php<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 BugFix:<\/strong><\/span>\u00a0Security Log add backslashes to Regex match for Security Log Entry Type: Plugin Firewall AutoPilot Mode New Whitelist Rule\\(s\\) Created.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 BugFix:<\/strong><\/span>\u00a0Dashboard Status Display div broken when ISL and ACE are turned on in S-Monitor, but are not actually turned on in ISL or ACE. Error Check\/Message: ISL: Settings have not been saved yet. ISL is not turned On and\/or ACE: Settings have not been saved yet. ACE is not turned On.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Obsolete Removal:<\/strong><\/span>\u00a0Security Status: WordPress Meta Generator Tag Removed and WordPress Version Removed checks.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Change|Update:<\/strong><\/span>\u00a0Deprecated function get_currentuserinfo replaced with wp_get_current_user().<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Update|Correction:<\/strong><\/span>\u00a0S-Monitor Read Me help text updated with Idle Session Logout (ISL) and Auth Cookie Expiration (ACE) help info.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Update|Correction:<\/strong><\/span>\u00a0Maintenance Mode Read Me help text formatting corrections.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Dev Note:<\/strong><\/span>\u00a0Scheduled Crons Pro-Tool improved in-page help text.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Dev Note:<\/strong><\/span>\u00a0Add isset condition for settings-updated checks. Fixes Undefined index: settings-updated error.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Dev Note:<\/strong><\/span>\u00a0API server test connection up\/down checking code revised.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Dev Note:<\/strong><\/span>\u00a0Undefined variable: plugin_var variable name change and check: $plugin_var_w3tc and $plugin_var_wpsc.<br \/>\n<span style=\"color: #000080;\"><strong>\u2022 Dev Note:<\/strong><\/span>\u00a0ARQ OBDF current to WP 4.5.<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>New Setup Wizard Options Option: Enable|Disable htaccess Files: Setup Wizard Enable|Disable htaccess Files Forum Topic The BPS Apache Modules and Directives testing code checks if mod_access_compat and\/or mod_authz_core or mod_rewrite are loaded or can be processed (converted\/translated) by your server by using a testing htaccess file and then checking the responses from your server. If [&hellip;]<\/p>\n","protected":false},"author":167,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","_links_to":"","_links_to_target":""},"categories":[393],"tags":[628,627],"class_list":["post-5246","post","type-post","status-publish","format-standard","hentry","category-bulletproof-security-pro","tag-bps-pro-11-8","tag-bulletproof-security-pro-11-8"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/www.ait-pro.com\/aitpro-blog\/wp-json\/wp\/v2\/posts\/5246","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.ait-pro.com\/aitpro-blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.ait-pro.com\/aitpro-blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.ait-pro.com\/aitpro-blog\/wp-json\/wp\/v2\/users\/167"}],"replies":[{"embeddable":true,"href":"https:\/\/www.ait-pro.com\/aitpro-blog\/wp-json\/wp\/v2\/comments?post=5246"}],"version-history":[{"count":0,"href":"https:\/\/www.ait-pro.com\/aitpro-blog\/wp-json\/wp\/v2\/posts\/5246\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.ait-pro.com\/aitpro-blog\/wp-json\/wp\/v2\/media?parent=5246"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.ait-pro.com\/aitpro-blog\/wp-json\/wp\/v2\/categories?post=5246"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.ait-pro.com\/aitpro-blog\/wp-json\/wp\/v2\/tags?post=5246"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}