Japanatron Logo

I propose blocking all access to Joomla's administrator login page and front-end user login (if you don't use it) because I constantly see a-hole bots in my logs trying to hack my site.  Add these lines to the Nginx site configuration.

# DENY ACCESS TO JOOMLA ADMIN
       location ~* /administrator.* {
       deny all;
       }

# DENY ACCESS TO JOOMLA USER LOGIN
       location ~* /component/user.* {
       deny all;
       }

Now how do you access the Joomla administrator login page??  Serve your site on another port using a simpler configuration, then setup your firewall to only allow your IP to access that port.

Related Articles

Ubuntu 22.04 Nginx Build Outli...

I re-built my LEMP web-server fresh on Ubuntu 22.04 and learned some things along the way. This is my base build outline mostly created for my own notes. INS...

JomSocial - How to Disable Cov...

I don't particularly like Facebook's cover photo feature, so I didn't particularly like it when JomSocial followed suit.  Here's how to disable JomSocial's cove...

Nginx - How to Block or Redire...

I've been figuring out how to block or redirect web traffic in Nginx based on the country geoIP. NOTES* You need the package nginx-extras for this because this...

Roku - Blocking Hard-Coded DNS

The Roku media player has Google's free public DNS (8.8.8.8) hard-coded into it.  This is great for DNS redundancy, but totally sucks if you use an unblock serv...