Disable xmlrpc.php | WordPress.org

[ad_1]

Hello,

our site was victim of a brute force attack (and I believe other attacks). I was told by our provider to disable xmlrpc.php, amongst other suggestions.

I see that WordFence, in “Logic security settings”, has this checkbox called “Disable XML-RPC authentication“.

I just wanted to ask if this does the same as disabling xmlrpc.php in .htaccess, e.g. through a piece of code like:

<Files "xmlrpc.php">
  Require all denied
</Files>

Thank you!

 

This site will teach you how to build a WordPress website for beginners. We will cover everything from installing WordPress to adding pages, posts, and images to your site. You will learn how to customize your site with themes and plugins, as well as how to market your site online.

Buy WordPress Transfer