BBM
Verified User
Currently I've got BFM blocking ip's that still manage to hit a Wordpress-website with 20, 40 or even more failed brute force attempts.
I want to limit resources spent on these password-guessers and would like to block the IP of anyone who fails to do a correct login on any WP-site on my VPS, after say 3 failed attempts.
Is this at all possible with CSF/LFD or customscripts for instance?
I've already added .htaccess files in most wp-admin directories that I control to limit login-attemps, but I don't have control over all the wordpress-websites.
I don't really want to install additional plugins in all the Wordpress-sites, as the work involved when it comes to updating these sites and plugins only becomes more and more.
I want to limit resources spent on these password-guessers and would like to block the IP of anyone who fails to do a correct login on any WP-site on my VPS, after say 3 failed attempts.
Is this at all possible with CSF/LFD or customscripts for instance?
I've already added .htaccess files in most wp-admin directories that I control to limit login-attemps, but I don't have control over all the wordpress-websites.
I don't really want to install additional plugins in all the Wordpress-sites, as the work involved when it comes to updating these sites and plugins only becomes more and more.