digitalocean/nginxconfig.io
GitHub で見るwordpress.conf disable xmlrpc service by default
Open
#316 opened on 2021年12月29日
enhancementgood first issuehacktoberfesthelp wanted
説明
Sorry for not following the template. It's a straightforward question.
By enabling "WordPress-specific rules", the following codes will be added to the wordpress.conf:
# WordPress: deny general stuff
location ~* ^/(?:xmlrpc\.php|wp-links-opml\.php|wp-config\.php|wp-config-sample\.php|readme\.html|license\.txt)$ {
deny all;
}
However, this disables xmlrpc feature, which disables WordPress mobile and desktop applications to access the site.
Should we consider adding a notice or make it optional?