Japanatron Logo

I propose blocking all access to Joomla's administrator login page and front-end user login (if you don't use it) because I constantly see a-hole bots in my logs trying to hack my site.  Add these lines to the Nginx site configuration.

# DENY ACCESS TO JOOMLA ADMIN
       location ~* /administrator.* {
       deny all;
       }

# DENY ACCESS TO JOOMLA USER LOGIN
       location ~* /component/user.* {
       deny all;
       }

Now how do you access the Joomla administrator login page??  Serve your site on another port using a simpler configuration, then setup your firewall to only allow your IP to access that port.

Related Articles

Ubuntu 20.04 Nginx Build Outli...

I re-built my LEMP web-server fresh on Ubuntu 20.04, and learned some things along the way. This is my base build outline. INSTALL PACKAGESnginx-extrasmysql-...

How to Find and Replace Text U...

After changing website templates I found that all instances of the <ul> html tag (used for bullets) no longer worked because the new template requires a c...

Joomla - Checklist for Moving ...

* Remove web directory protection entries * Rsync files to the new location * Change Apache root folder settings * Redo web directory protection entries * U...

Joomla Running on Nginx and Ub...

What follows is an outline I compiled while building an Ubuntu server for running the Joomla CMS on the Nginx web server. NOTE: Ubuntu 14.04 LTS was used for th...