WordPrsss Block direct access to PHP files
-
Hi,
On Firewall Policies > Basic Policies, I see: “WordPress > Block direct access to any PHP file located in one of these directories”
The list of directories, though, includes several with wildcards * and one that has
/wp-includes/*.php
, suggesting that the policy may not apply only to PHP files.I’m not sure if that’s the case, but I have a bunch of .xml files that are invoked within an iframe element. The .xml files are all in a folder inside /wp-content/uploads/. When I check to include /wp-content/uploads/in this policy, the .xml files are blocked.
Is there a way to protect direct access to PHP files but not to .xml files?
Thank you
- The topic ‘WordPrsss Block direct access to PHP files’ is closed to new replies.