WEBVTT

00:00.270 --> 00:03.210
Site security is so important.

00:03.240 --> 00:07.750
It's crazy how many people will actually try to hack your Web site.

00:07.770 --> 00:14.460
Once you start to grow your traffic and if it wasn't for some security plug ins like word fence security

00:14.550 --> 00:18.720
I'm sure that my web site would be down and hacked all the time.

00:18.720 --> 00:24.840
So here are two free options that both have premium options as well but they're easy to get started

00:24.840 --> 00:25.890
with for free.

00:25.890 --> 00:27.120
One is security.

00:27.120 --> 00:30.560
This is a security web security web site.

00:30.570 --> 00:34.320
That's their specialty and they have a free plug in that you can get started with.

00:34.320 --> 00:39.480
The other is word fence security and this is the one that I'm going to walk you through right now the

00:39.480 --> 00:41.790
one that I use and the one that I recommend.

00:41.790 --> 00:47.340
Of course if you want to do your own due diligence and do some research yourself you can decide between

00:47.340 --> 00:47.810
the two.

00:47.820 --> 00:50.790
But to get started let's install word fence.

00:50.790 --> 00:56.520
You can see that it has over a million active installs and thousands of good reviews.

00:56.520 --> 00:59.980
Once word fence is installed it's pretty plug and play.

01:00.000 --> 01:03.660
There's a pop up where you can actually just go ahead and start the tour.

01:03.660 --> 01:08.180
And it kind of walks you through all the things that you need to know about or advance.

01:08.190 --> 01:12.540
So this is what I would recommend doing when you install this plug in for the first time.

01:12.570 --> 01:18.330
What it does is basically walk you through all of the different things that word fence does such as

01:18.330 --> 01:26.250
scanning your site for any malware files or any things that are an issue with your web site including

01:26.280 --> 01:27.920
plug ins that are out of date.

01:27.930 --> 01:34.310
Creating a firewall against hackers who try to maliciously add a file or do something to your Web site.

01:34.350 --> 01:41.730
It also automatically blocks IP addresses of people who have tried to log in to your Web site and have

01:41.730 --> 01:44.240
been permanently blocked for doing so.

01:44.250 --> 01:48.050
So you can go through with that tour I suggest doing it.

01:48.060 --> 01:54.330
But really quickly if you go to the dashboard you'll see how it basically works and you'll see what

01:54.360 --> 01:56.870
enables what's not enabled.

01:56.880 --> 02:02.500
You can see that the fire wall log and security different things are enabled other things are premium.

02:02.520 --> 02:09.840
You can see here the total number of attacks that word fence has blocked in the past day.

02:09.840 --> 02:14.220
Now this isn't on your site but this is just across all of the sites that it protects.

02:14.250 --> 02:20.010
And then once you start getting people attacking your Web site which I hope you don't you'll start seeing

02:20.010 --> 02:26.520
it here you'll see the IP addresses that are blocked you'll see if anyone is logging in or attempting

02:26.520 --> 02:27.810
to log into your web site.

02:27.810 --> 02:29.700
You'll see countries that are attacking here.

02:29.720 --> 02:33.720
But the main thing is that you have to configure this plug in furs.

02:33.750 --> 02:40.770
So at the top you'll see this banner that says that you have to configure word fence so click that configure

02:40.800 --> 02:41.800
button right there.

02:41.820 --> 02:48.360
It's going to run an entire scan of your web site to make sure that everything's up to speed everything's

02:48.360 --> 02:49.210
good to go.

02:49.230 --> 02:51.270
And then it's going to actually be active.

02:51.300 --> 02:52.860
You have different choices.

02:52.890 --> 02:57.140
And with this plug in I just recommend using what they recommend.

02:57.330 --> 03:02.160
So this Apache plus SU ph pee test.

03:02.370 --> 03:05.580
So just do that and click continue and it will run.

03:05.580 --> 03:11.880
It'll ask you to download a backup copy of a certain file is H.T. access file.

03:11.880 --> 03:14.410
Go ahead and click download and just save it.

03:14.520 --> 03:16.700
Click Continue once you've downloaded it.

03:16.950 --> 03:22.380
If successful it will give you the success message and let you know that your site is being protected

03:22.380 --> 03:24.000
to the fullest extent.

03:24.000 --> 03:29.640
The one thing I want you to check out is go down to your options and this is where you can change some

03:29.640 --> 03:30.180
of the things.

03:30.180 --> 03:33.750
Everything is set up pretty much automatically for you.

03:33.990 --> 03:37.770
But there are some options that I would just check out and look at.

03:37.830 --> 03:40.680
And one is under log in security options.

03:40.680 --> 03:45.810
So this is where if someone does get to your logon page and tries to log in but doesn't have the right

03:45.810 --> 03:49.290
password they'll be blocked after a certain number of attempts.

03:49.350 --> 03:55.230
So I suggest lowering this number because it's after 20 attempts that seems pretty high.

03:55.230 --> 03:57.510
So I'm going to limit it to five.

03:57.530 --> 03:59.330
And same with password.

03:59.370 --> 04:00.900
I'll limit it to five.

04:00.950 --> 04:04.000
It counts these failures over a period of five minutes.

04:04.050 --> 04:05.450
Seems pretty fine.

04:05.460 --> 04:10.950
So make sure though you do remember your passwords so you don't get automatically locked out because

04:10.950 --> 04:18.660
you could be blocked where defense will also send you a weekly summary of any sort of blocked attempts

04:18.660 --> 04:25.140
to log on or anything that is wrong with your web site it will automatically send you alerts if you

04:25.140 --> 04:31.140
have plug ins that are out of date or if there are files or any attempted attacks on your Web site as

04:31.140 --> 04:37.140
you can see there are a lot of options and a lot of things going on with word fence and there could

04:37.140 --> 04:41.400
be an entire course on how to use word fence for your Wordpress Web site.

04:41.400 --> 04:46.140
But like I said this is a pretty plug and play plug in so now that you haven't installed you can kind

04:46.140 --> 04:49.410
of rest assured that your web site is pretty darn safe.

04:49.410 --> 04:51.920
Thanks for watching and that's how you protect your wordpress site.
