{"id":1812,"date":"2024-12-26T12:36:53","date_gmt":"2024-12-26T11:36:53","guid":{"rendered":"https:\/\/wpmastertoolkit.com\/module\/interdire-lacces-aux-fichiers-sensibles-wp\/"},"modified":"2024-12-27T16:35:10","modified_gmt":"2024-12-27T15:35:10","slug":"interdire-lacces-aux-fichiers-sensibles-wp","status":"publish","type":"module","link":"https:\/\/wpmastertoolkit.com\/en\/module\/block-access-to-sensitive-wp-files\/","title":{"rendered":"Block access to sensitive WP files"},"content":{"rendered":"<h1 class=\"wp-block-heading\">Strengthen the security of your WordPress site with the Disallow Access WP Sensible Files Module<\/h1>\n\n\n\n<p>In the dynamic and constantly evolving environment of WordPress, the security of your website must always be a priority. In response to this need, we've developed the <strong>Disallow Access WP Sensible Files<\/strong> for our WPMasterToolKit plugin. This module is designed to block access to sensitive files in your WordPress installation, reducing the risk of exploitation by malicious users.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Which plugin can Disallow Access WP Sensible Files replace?<\/h2>\n\n\n\n<p>Traditionally, the protection of sensitive files such as <code data-no-auto-translation=\"\">readme.html<\/code> and <code data-no-auto-translation=\"\">license.txt<\/code> would be provided by security plugins such as <strong>SecuPress, Solid Security, All-In-One Security, Wordfence<\/strong> or by making manual changes to your <code data-no-auto-translation=\"\">.htaccess<\/code> or <code data-no-auto-translation=\"\">nginx.conf<\/code>. Thanks to our module, we've simplified this process by automating the addition of the necessary configurations for you.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">What is the purpose of the Disallow Access WP Sensible Files module?<\/h2>\n\n\n\n<p>This module is designed to automatically add security rules to your web server, whether it uses Apache or Nginx, to prevent access to certain default WordPress files that could reveal information about your installation, such as the <code data-no-auto-translation=\"\">readme.html<\/code> and <code data-no-auto-translation=\"\">license.txt<\/code>. It ensures that these files cannot be viewed by the public, thus strengthening the security of your website.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">How do I use the Disallow Access WP Sensible Files module?<\/h2>\n\n\n\n<p>Using this module is simple and straightforward. Once you've activated the module in WPMasterToolKit, it automatically starts working by checking the type of server used by your hosting. <\/p>\n\n\n\n<h3 class=\"wp-block-heading\">For Apache<\/h3>\n\n\n\n<p>If your site uses Apache, the plugin modifies the file <code data-no-auto-translation=\"\">.htaccess<\/code> to block access to sensitive files automatically, you don't need to do a thing.<\/p>\n\n\n\n<p>The following code will be injected directly into your .htaccess :<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code lang=\"apacheconf\" class=\"language-apacheconf\" data-no-auto-translation=\"\"># BEGIN WPMastertoolkit: Disallow Access WP Sensible Files\n&lt;FilesMatch readme.html|license.txt>\n\torder allow,deny\n\tdeny from all\n&lt;\/FilesMatch>\n# END WPMastertoolkit: Disallow Access WP Sensible Files<\/code><\/pre>\n\n\n\n<h3 class=\"wp-block-heading\">For Nginx <\/h3>\n\n\n\n<p>For Nginx servers, go to <strong>Nginx Code Snippets<\/strong> to retrieve the code snippet to copy and paste into your configuration file. <\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img alt=\"Screenshot of the Nginx Code Snippets extension\" fetchpriority=\"high\" decoding=\"async\" width=\"1024\" height=\"278\" src=\"https:\/\/wpmastertoolkit.com\/wp-content\/uploads\/2024\/12\/image-2-1024x278.png\" class=\"wp-image-2672\" srcset=\"https:\/\/wpmastertoolkit.com\/wp-content\/uploads\/2024\/12\/image-2-1024x278.png 1024w, https:\/\/wpmastertoolkit.com\/wp-content\/uploads\/2024\/12\/image-2-300x81.png 300w, https:\/\/wpmastertoolkit.com\/wp-content\/uploads\/2024\/12\/image-2-768x208.png 768w, https:\/\/wpmastertoolkit.com\/wp-content\/uploads\/2024\/12\/image-2-1536x417.png 1536w, https:\/\/wpmastertoolkit.com\/wp-content\/uploads\/2024\/12\/image-2.png 1895w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<h2 class=\"wp-block-heading\">Auto delete wp-config-sample<\/h2>\n\n\n\n<p>In addition, this module automatically deletes the <strong>wp-config-sample.php<\/strong>file, often left by default in WordPress installations. This file, while not critical, could provide useful information to attackers if publicly accessible. With <strong>Disallow Access WP Sensible Files<\/strong>You don't have to worry about it: we do it for you.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Deletion after each update<\/h3>\n\n\n\n<p>This file is added with every WordPress update, which can be time-consuming if you do it manually, but don't worry, <strong>Disallow Access WP Sensible Files<\/strong> does it for you after each WordPress core update.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Conclusion<\/h2>\n\n\n\n<p>The module <strong>Disallow Access WP Sensible Files<\/strong> is an effective, lightweight solution for those looking to strengthen the security of their WordPress site without the need for cumbersome plugins or tedious manual configuration. By integrating this module into WPMasterToolKit, we offer a unified, automated approach to security, enabling your site to remain protected against unwanted access to critical files. By keeping your site secure with simple adjustments, you can stay focused on improving your content without worrying about potential vulnerabilities.<\/p>","protected":false},"excerpt":{"rendered":"<p>The security of your WordPress site is crucial, and the Disallow Access WP Sensible Files module, integrated into the WPMasterToolKit plugin, is designed to block unauthorized access to essential files such as readme.html and license.txt. This module simplifies your site's protection by automating the necessary security additions for Apache and Nginx servers, without the need for cumbersome plugins or complex configurations. In this way, it reinforces your site's security while allowing you to concentrate on your content.<\/p>","protected":false},"featured_media":0,"parent":0,"template":"","meta":{"_acf_changed":true,"_seopress_robots_primary_cat":"","_seopress_titles_title":"S\u00e9curisez WordPress : Blocage Automatique des Fichiers Sensibles","_seopress_titles_desc":"Renforcez votre s\u00e9curit\u00e9 WordPress avec Disallow Access WP Sensible Files et prot\u00e9gez vos fichiers sensibles sans plugins lourds.","_seopress_robots_index":"","_surecart_dashboard_logo_width":"180px","_surecart_dashboard_show_logo":true,"_surecart_dashboard_navigation_orders":true,"_surecart_dashboard_navigation_invoices":true,"_surecart_dashboard_navigation_subscriptions":true,"_surecart_dashboard_navigation_downloads":true,"_surecart_dashboard_navigation_billing":true,"_surecart_dashboard_navigation_account":true},"class_list":["post-1812","module","type-module","status-publish","hentry"],"acf":[],"_links":{"self":[{"href":"https:\/\/wpmastertoolkit.com\/en\/wp-json\/wp\/v2\/module\/1812","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/wpmastertoolkit.com\/en\/wp-json\/wp\/v2\/module"}],"about":[{"href":"https:\/\/wpmastertoolkit.com\/en\/wp-json\/wp\/v2\/types\/module"}],"wp:attachment":[{"href":"https:\/\/wpmastertoolkit.com\/en\/wp-json\/wp\/v2\/media?parent=1812"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}