Add an htaccess rule to the administrator directory that requires OTP auth.
https://www.cnysupport.com/index.php/free-stuff/using-google-authenticator-with-apache-mod_authn_otp Terry On 04/28/2015 11:19 AM, Lorenzo Milesi wrote: >> does anybody have a ruleset ready to use for protecting >> joomla/administrator directories ? > check out this: > http://extensions.joomla.org/extensions/extension/access-a-security/site-security/fail2ban > > and let us know if it works fine for you. > I'm also looking for a good solution for protecting joomla. so far I failed > in monitoring POSTs to /administrator/index.php, because all admin actions do > POST to that file... ------------------------------------------------------------------------------ One dashboard for servers and applications across Physical-Virtual-Cloud Widest out-of-the-box monitoring support with 50+ applications Performance metrics, stats and reports that give you Actionable Insights Deep dive visibility with transaction tracing using APM Insight. http://ad.doubleclick.net/ddm/clk/290420510;117567292;y _______________________________________________ Fail2ban-users mailing list Fail2ban-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/fail2ban-users