• Resolved hoochie

    (@hohori)


    Website recently has issues IPV6 logins to wp-admin. Showing 403. Even though white listed IPV6 address – it wasn’t until we turned off Brute Fore – IP Login Whitelist that user was able to see wp-admin login page.

    Is there an issue with IPV6 entries?

    Should I clear all settings and try building from scratch? (is this as simple as turning off everything or should I uninstall/delete and reinstall the plugin)

    Thanks

Viewing 6 replies - 1 through 6 (of 6 total)
  • Plugin Contributor mbrsolution

    (@mbrsolution)

    Hi,

    Website recently has issues IPV6 logins to wp-admin. Showing 403. Even though white listed IPV6 address – it wasn’t until we turned off Brute Fore – IP Login Whitelist that user was able to see wp-admin login page.

    Are you login in using an IPV6 number?

    Regards

    Thread Starter hoochie

    (@hohori)

    Yes – I have 2 Editors who login from IPV6. Everyone else is IPV4 (no issues). However both IPV6 users get at 403 page error and are not able to access the wp-admin login page. Immediately goes to 403 Forbidden.

    I disabled AIOWPS and they were able to login. When I re-enabled, AIOWPS asked to re-apply .htaccess changes > Yes. They were immediately bumped out.

    So then went through each setting. IPV6 addresses where entered in the Brute Force – IP Login Whitelist but still got 403. When I turned BF – IP Login WL then they were able to get to wp-admin and login.

    Plugin Contributor mbrsolution

    (@mbrsolution)

    Hi, can you share an example of an IPV6 number you are entering in the whitelist section?

    Thank you

    Thread Starter hoochie

    (@hohori)

    2607:f2c0:e990:e:55ea:3c09:8fce:ce51

    Thank you

    Plugin Contributor mbrsolution

    (@mbrsolution)

    Hi, that IP address looks okay to me. I am wondering if there is another plugin conflicting with this feature or your server has some sort of limitation? Have you tried not using Whitelisting feature?

    Regards

    Thread Starter hoochie

    (@hohori)

    Yes – disabled it per original post. Just thought I would check here to see if I may have done something incorrectly in setting it up. However, both users who have IPV6 were blocked from site ‘403 – Forbidden’ IPV4 users had no problems accessing admin.

Viewing 6 replies - 1 through 6 (of 6 total)
  • The topic ‘Brute Force – IP Login Whitelist’ is closed to new replies.