
Janric Simple MFA
A lightweight plugin to enable MFA through emails.
In simple terms this is what happens and why:
First of all you shut down any other ways of logging in with our simple hardening plugin and then with this plugin you make sure you control all other logins.
The problem with usernames and passwords is that they can be guessed, leaked, observed, phished.... So with MFA you add another step - once the user & password is correct send a code to an email address. If the hacker can't also access the email, they can't get on.
For this to work you need to install the plugin and then, within settings, enter your mail servers. If you don't know these, which most people don't, simply ask whoever hosts your email or use your favourite search engine and enter a search such as "SMTP Settings Gmail".
Once that's sorted open a Private / Incognito window, navigate to your wordpress admin and logon, tick the trust box if you are happy just you use the machine, then login. You'll be sent a numeric code in a minute and just enter that on the next page.
Got the email settings wrong? Simply go to your file structure, delete the plugin files and then try again.
We don't create one plugin fixes everything - we produce compact, efficient plugis that aren't full of bloat and do what's needed. Have a look at the rest of our wordpress security plugins to see how else we can help.