My b2evolution Version: Not Entered
How can I rename admin.php and still have it function? At the moment for security purposes I remove admin.php from the b2evo root folder and store it elsewhere on the server when I am not using it, but I may be going away for a while and wish to update my blog remotely. I realise that it might be thought that I am being somewhat obsessive about security but I really do think that being able to use something other than the default name for this vital file would add a valuable extra layer of protection against script-kiddies/hackers etc. I note that when I simply rename the file I can access the initial dashboard screen but cannot access any of the other tabs. What do I need to alter in order to be able to achieve this?
Best Regards CS
I might agree with that! ;)
We've been running b2evo for nearly 3 years, without an incident of hacking into the back-office.
We concentrate on choosing a good login-name and password combination, then hiding the login form from "view" (not view source). Mind you, it wouldn't stop kiddie-scripters from hitting the file directly, but the built-in security measures have been enough to stop anyone from getting in.
We do backup our database, nightly, so that IF there was a break-in, we could always restore to the day/night before.
I say, "relax ... the developers provide excellent security, which is built-into the program".
(Didn't want to leave you without a response, but I personally don't know what all would need to be changed to affect an admin.php file move. I do know that it would involve hacking the core files, most likely, which would then be something you'd have to investigate and re-do, at each upgrade, which isn't fun).
Good luck. Maybe someone else knows more?