Show
Here, I’m going to tell you of a WordPress configuration setting that will prevent editing any files from within your WordPress admin area, by users with unauthorized access. This is a simple WordPress configuration setting and is easy to implement. By the end of this article you will know what this setting is, why you would use it, and how to set it. Dissallow File Editing setting within the WordPress admin dashboardWordPress, by default, allows you the ability edit theme and plugin files directly from within the WordPress control panel. Useful, but potentially high risk. Let’s say that someone has gained admin access to your WordPress site. If they want to add code to your WordPress site, all they need to do is open the file editors and add any code they want. This means they don’t need FTP access or anything like that – WordPress provides them all the access they need to modify files. If you never change files directly on your WordPress site, there’s no need to have this feature available to you or your administrators. How to disallow file editing within WordPress – the easy wayIn iControlWP, we’ve provided an interface to configuring many WordPress security settings across all your websites. Disallow File Edit in WordPress using iControlWP This is just one of them. To disallow file editing from within iControlWP, simply browse to the ‘Security’ tab for your site, and click the toggle switch to turn it on and off. Within a few moments, iControlWP will configure this setting for you on your website. It’s easy, and you don’t need to worry about editing your You will know that the setting has worked if you log into your WordPress site and you can no longer open the WordPress file editor. Disallow File Edit – No WordPress Editor Menu Item How to disallow file editing within WordPress – the hard wayWhen you use iControlWP to set this setting, you can turn it on and off quickly. This is useful if 99% of the time you don’t use the editor, but sometimes you want to just quickly make an edit. iControlWP can let you turn off the setting, and then re-enable it as soon as you’re done. But, if you want to do it manually, it’s easy. Here’s how: 1. Make a backup of your
|