Forum Topic: Getting around a Deny/Allow block?

Posted by Dario

I’ve a WordPress site with an htaccess file setup to deny access to wp-login.php to all but one IP address.

This has worked fine for years but just tonight I see that someone from another IP has tried and failed to login. Glad that they failed but how could a denied IP even get to the login screen in the first place?

I tested access via my phone (a different IP than the allowed one) and I could not access the page.

Posted by Jeff Starr

Hmm that is strange.. can you post the entry from your log file to check out? Please omit your IP address and any other sensitive infos. It would be interesting to take a look. Also, if you could post the .htaccess code that you are using that would help diagnose as well.