As we all know, the majority of WordPress websites feature a public login page, usually found by typing this ‘example.com/wp-login.php’ into the given URL section, and with this, it is quite easy for outsiders to guess the password, and take access to your own site. So, if you want to make it harder, it is highly recommended to use the 2-factor authentication, and protect the WordPress admin folder with password.
How to secure it with single sign-on?
The single sign-on option offers you much security to protect your WordPress website from unauthorized users and other brute force attacks. Once it is enabled, the login screen will be disappeared from your site, and you’ll be asked to sign-in to your WordPress site to get access to the admin dashboard.
It has several benefits, such as:
· Since WordPress.com accounts come up with 2.factor authentication, the same will be applicable to your blog as well, without asking you to install/add another plug-in.
· Suppose you are managing multiple websites, and want to login to them at the same time, you can do it by simply entering your WordPress.com account information, and with this, you’ll need not to remember a couple of passwords.
· If someone attempts to log-in to your website, he/she will automatically be redirected to your WordPress.com account, thus the server and database load will be decreases.
How to implement it?
A comprehensive guide to implement this Single Sign On at your WordPress website is given here:
Step 1: Register yourself on WordPress.com. However if you’re already a registered member, simply avoid this step.
Step 2: Account created? Congratulations! Now, enable the 2-factor authentication by entering your phone number. WordPress will send a code on your number via SMS, and you just have to enter that code to verify your number.
Step 3: Get on the WordPress blog, install the Jetpack plug-in, activate it, and then, click on the button to make a connection between your blog and WordPress account.
Step 4: Link connection established? Follow the Jetpack setting, and enable the “Single Sign On” mode.
Step 5: After then, go to your WordPress installation folder, to visit the theme folder and make changes to functions.php file.
Step 6: Go to your profile, and click on the button “Login with WordPress.com”. This will automatically link your username with WordPress account, and you are done!
This will disappear the login screen, and allow the users to come directly to your WordPress account.
