User Tools

Site Tools


wordpress_xmlrpc

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
wordpress_xmlrpc [2016/03/22 07:49] luke7858wordpress_xmlrpc [2024/05/23 07:26] (current) – external edit 127.0.0.1
Line 29: Line 29:
 **__NOTE__**: //WordPress, Drupal and most content management systems support XML-RPC.// **__NOTE__**: //WordPress, Drupal and most content management systems support XML-RPC.//
 \\ \\
-It can be used with Perl, Java, Python, C, C++, PHP and many other programming languages+It can be used with Perl, Java, Python, C, C++, PHP and many other programming languages.
 \\ \\
 \\ \\
-=== Checking apache nginx logs for xmlrpc ===+Checking apache and nginx logs for xmlrpc
 \\ \\
-== httpd == 
 <sxh bash> <sxh bash>
-awk '/xmlrpc.php/ {REQ[$1" "$6" "$7]++}END{for (i in REQ) print REQ[i],i}' /var/log/httpd/*access*log | sort -n | tail -25 + awk '/xmlrpc.php/ {REQ[$1" "$6" "$7]++}END{for (i in REQ) print REQ[i],i}' /var/log/httpd/*access*log | sort -n | tail -25
-</sxh> +
-\\ +
-== nginx == +
-<sxh bash> +
-awk '/xmlrpc.php/ {REQ[$1" "$6" "$7]++}END{for (i in REQ) print REQ[i],i}' /var/log/nginx/*access*log | sort -n | tail -25 +
 </sxh> </sxh>
 \\ \\
Line 48: Line 41:
 <sxh bash> <sxh bash>
 To prevent xmlrpc attacks add the following to a .htaccess To prevent xmlrpc attacks add the following to a .htaccess
-<sxh bash> 
 <Files "xmlrpc.php"> <Files "xmlrpc.php">
 Order Allow,Deny Order Allow,Deny
Line 58: Line 50:
 **__Apache .htaccess:__** **__Apache .htaccess:__**
 <sxh bash> <sxh bash>
-<files xmlrpc.php="">+<Files "xmlrpc.php">
 Order Deny,Allow Order Deny,Allow
 Deny from all Deny from all
wordpress_xmlrpc.1458632978.txt.gz · Last modified: 2024/05/23 07:26 (external edit)

Except where otherwise noted, content on this wiki is licensed under the following license: Public Domain
Public Domain Donate Powered by PHP Valid HTML5 Valid CSS Driven by DokuWiki