• Resolved Diktio

    (@rwalle)


    Hi,

    I have the following issue and need some help:

    Getting the following message in WordPress:

    “To make your site as secure as possible, take a moment to optimize the Wordfence Web Application Firewall:”

    Click the “CLICK HERE TO CONFIGURE” button.

    This message is keep coming back.

    The correct server configuration optimization will be automatically selected for you. 

    Choosing the recommend doesn’t seem to work.

    I have tried manual but then I am not sure if I have to use .user.ini:

    ; Wordfence WAF
    auto_prepend_file = ‘/home/<url website>/public_html/wordfence-waf.php’
    ; END Wordfence WAF

    Or create a php.ini and where save it and with which rights.

    The Hosting provider uses plesk for configuration.

    Webscripting: FastCGI and CGI

    Webserver: Apache and NGINX

    Kind Regards

Viewing 8 replies - 1 through 8 (of 8 total)
  • Plugin Support wfphil

    (@wfphil)

    Hi @rwalle

    Please send your Wordfence diagnostics report.

    Update to the latest version of Wordfence if you haven’t already done so.

    Go to the top of the “Diagnostics” tab on the Wordfence “Tools” page. There will be a “SEND REPORT BY EMAIL” button to send the diagnostics report. Enter wftest [at] wordfence [dot] com as the email and rwalle as the forum username please.

    Once you have emailed me the diagnostics report can you reply here to let me know that it has been sent. This is important in the unlikely event that your installation of WordPress is having an issue with sending mail

    Thread Starter Diktio

    (@rwalle)

    Hi thanks,

    The report has been sent successfully.

    Kind Regards

    Plugin Support wfphil

    (@wfphil)

    Hi @rwalle

    Thank you for the update.

    Please ask your hosting provider to enable the user_ini.filename PHP directive and use the default string value of .user.ini

    Once that has been done then you will be able to optimize the firewall.

    Thread Starter Diktio

    (@rwalle)

    Hi,

    I have finally answer back from the hosting provider.

    They don’t support enabling the PHP directive. Is there an alternative method?

    Kind Regards,

    Plugin Support wfphil

    (@wfphil)

    Hi @rwalle

    Thank you for the update.

    You will need to ask your hosting provider if you can set the our code in a php.ini file instead.

    Thread Starter Diktio

    (@rwalle)

    Hi,

    I have asked but also php.ini is not supported.

    What are the consequences for Firewall Optimisation?

    Kind Regards

    Plugin Support wfphil

    (@wfphil)

    Hi @rwalle

    If your hosting provider doesn’t allow you to use a .user.ini file or a php.ini file then you won’t be able to optimize the firewall.

    We have a guide below between Basic Protection and Extended Protection:

    https://www.wordfence.com/help/firewall/optimizing-the-firewall/#basic-wordpress-protection-versus-extended-protection

    Thread Starter Diktio

    (@rwalle)

    Hi thanks,

    The ticket can be closed.

    Kind Regards,

Viewing 8 replies - 1 through 8 (of 8 total)

You must be logged in to reply to this topic.