WordPress.org

Hong Kong 香港中文

  • 佈景主題
  • 外掛
  • News
  • Support
  • About
  • 重要通知
  • WordPress 常見問題
  • 團隊
  • 取得 WordPress
取得 WordPress
WordPress.org

Plugin Directory

WP-OTP

  • Submit a plugin
  • My favorites
  • Log in
  • Submit a plugin
  • My favorites
  • Log in

這個外掛並未在最新的 3 個 WordPress 主要版本上進行測試。開發者可能不再對這個外掛進行維護或提供技術支援,並可能會與更新版本的 WordPress 產生使用上的相容性問題。

WP-OTP

由noplanman
下載
  • 詳情
  • 評價
  • 安裝
  • 開發
支援

描述

With WP-OTP you can easily set up 2 Factor Authentication with One Time Passwords for your WordPress login.
This extra layer makes your WordPress site a lot more secure.

The new stealth mode allows for invisible OTP code entry, making your login screen look like any other, no extra OTP code input field.

Getting started

After installing and activating the plugin, every user can enable WP-OTP on their profile page.

It’s as easy as scanning the provided QR Code or entering the OTP secret to any OTP generator app.
Then just activate it by entering the generated OTP and voilà, all set up.
Now, the login requires an OTP code to succeed.

Each user gets their own secret key to authenticate with, giving them control over their login security.

Development

This plugin is completely open source and a work of passion.
If you would like to be part of it and join in, make your way over to the project page now.
Also, if you have an idea you would like to see in this plugin or if you’ve found a bug, please let me know.

Configuration

  • WP_OTP_STEALTH: Set this to true to enable stealth OTP mode.

Filters

There are a multitude of filters to be adjusted.

  • wp_otp_qr_code_provisioning_uri: URI for online QR Code rendering (must contain {PROVISIONING_URI} placeholder for QR Code data).
  • wp_otp_login_form_text: Text for input field on the login screen.
  • wp_otp_login_form_text_sub: Subtext for the input field on the login screen.
  • wp_otp_login_form_invalid_code_text: Error text for an invalid code input on the login screen.
  • wp_otp_code_expiration_window: Set the window of code verification expiration.
  • wp_otp_recovery_codes_count: Number of recovery codes to generate.
  • wp_otp_recovery_codes_length: Length of the recovery codes.
  • wp_otp_secret_length: Length of the secret key.

Minimum requirements

WordPress 4.6, PHP 7.4.

Donate / Support

All donations are much appreciated, thank you 🙏

Get professional support for this plugin with a Tidelift subscription
Tidelift helps make open source sustainable for maintainers while giving companies assurances about security, maintenance, and licensing for their dependencies.

Security

To report a security vulnerability, please use the Tidelift security contact. Tidelift will coordinate the fix and disclosure.

安裝

You can either use the built in WordPress installer or install the plugin manually.

For an automated installation:

  1. Go to ‘Plugins -> Add New’ on your WordPress Admin page.
  2. Search for the ‘WP OTP’ plugin.
  3. Install by clicking the ‘Install Now’ button.
  4. Activate the plugin on the ‘Plugins’ page in your WordPress Admin.

For a manual installation:

  1. Upload the ‘wp-otp’ folder to the plugins directory of your WordPress installation.
  2. Activate the plugin on the ‘Plugins’ page in your WordPress Admin.

常見問題

What if I lose my OTP authenticator?

No problem! When activating WP-OTP, you will also get a list of recovery codes that you can use instead of entering the OTP from your authenticator app.
Be sure to regenerate them when you run out though, or better yet, reconfigure your WP-OTP to get a new secret and a new set of recovery codes.

Can I reset my OTP secret key?

Yes, just click the Reconfigure button on the profile page.

Why is there no OTP input field on the login form?

Your site admin has either disabled the plugin or enabled stealth mode.
This means that you will need to add your OTP (or recovery) code at the end of your password.

評價

Great tool to enable OTP for WordPress

pggdt 2023年12月13日
It’s working great with WordPress 6. Thank you.

Works like a breeze

slippingjimmy 2022年5月24日
Light and efficient!

Does not do anything

info2 2021年7月23日
I installed and activated the plugin, but it had no effect at all

Very good plugin and nice support

datnv9 2020年12月4日
Thank you for this nice plugin. Stealth mode is perfect!

The link you followed has expired.Please try again.

ramineros 2020年8月1日 2 replies
The link you followed has expired.Please try again. i did everything to fix this problem but could not do.. when i want to activate this plugin it gives this error.. i use dedicated server.. and i can install any other plugins easely

Nice Work good plugin

mydeenferozkhan 2019年11月20日 1 reply
In this Update 0.4.0 there is an error while trying to login. it shows critical error. IT works for the user which i logged in and update the plugins. It throws error other users while logging. please fix it and update the plugin. When seeking help with this issue, you may be asked for some of the following information: WordPress version 5.3 Current theme: Nex Child (version ) Current plugin: WP-OTP (version 0.4.0) PHP version 7.2.15 Error Details ============= An error of type E_ERROR was caused in line 180 of the file /var/www/wp-content/plugins/wp-otp/public/class-wp-otp-public.php. Error message: Uncaught TypeError: Return value of Wp_Otp\Wp_Otp_Public::get_otp_if_enabled() must be an instance of OTPHP\TOTP, null returned in /var/www/wp-content/plugins/wp-otp/public/class-wp-otp-public.php:180 Stack trace: If you need more details i will share the error mail igot.
閱讀全部8個評價

貢獻者及開發者

“WP-OTP” 是一個開源的軟體。以下的人對這個外掛作出了貢獻。

貢獻者
  • noplanman

WP-OTP 外掛目前已有 5 個本地化語言版本。 感謝所有譯者為這個外掛做出的貢獻。

將 WP-OTP 外掛本地化為台灣繁體中文版。

對開發相關資訊感興趣?

任何人均可瀏覽程式碼、查看 SVN 存放庫,或透過 RSS 訂閱開發記錄。

修改日誌

0.6.1

  • Fix nonce issue when saving profile.

0.6.0

  • Require at least PHP 7.4 and update all code.
  • Allow for PHP 8.0.
  • Bump dependencies.

0.5.1

  • Fix activation and deactivation hooks.

0.5.0

  • Require at least PHP 7.2.
  • Update OTPHP to 10.0.
  • Add native QR code rendering.
  • Harden security by adhering to WordPress Code Sniffer.

0.4.1

  • Fix nullable return type when checking if OTP is enabled.

0.4.0

  • Drop all custom i18n and rely on translate.wordpress.org.
  • Minimum requirements are now WP 4.6 and PHP 7.1.
  • Update OTPHP to 9.1.
  • Tested for WP 5.3.

0.3.0

  • Update list of OTP mobile apps.
  • Add stealth mode (via WP_OTP_STEALTH), passing OTP code concatenated to password.
  • Add donation, support and security sections to readme.

0.2.1

  • Add GitLab CI for PHP Code Sniffer.
  • Fix changed Base32 namespace.

0.2.0

  • Tested for WP 5.0.
  • Update OTPHP to 8.3.3.
  • Moved project to Feneas GitLab (git.feneas.org)

0.1.4

  • Tested for WP 4.8.
  • Update OTPHP to 8.3.0.

0.1.3

  • Make OTP code input a normal text field, to allow input verification.

0.1.2

  • Add proper localisation.

0.1.1

  • Longer secret by default.
  • Replace/override packages not compatible with WordPress.

0.1.0

  • First version!

其它

  • Version 0.6.1
  • Last updated 4 年之前
  • Active installations 100+
  • WordPress version 4.6 or higher
  • Tested up to 5.6.14
  • PHP version 7.4 or higher
  • Languages

    Basque、English (US)、German、Japanese、Spanish (Argentina)、及 Swedish.

    翻譯成你的語言

  • Tags
    2FAloginotptotptwo factor
  • 進階顯示

評分

4 out of 5 stars.
  • 6 5-star reviews 5 stars 6
  • 1 4-star review 4 stars 1
  • 0 3-star reviews 3 stars 0
  • 0 2-star reviews 2 stars 0
  • 2 1-star reviews 1 star 2

Add my review

See all reviews

貢獻者

  • noplanman

支援

有話想說?需要協助?

檢視支援論壇

捐贈

想要支援這個外掛的發展嗎?

贊助這個外掛

  • 關於我們
  • 最新消息
  • 寄存
  • 隱私權
  • 展示網站
  • 佈景主題
  • 外掛
  • 區塊版面配置
  • Learn
  • 技術支援
  • 開發者資源
  • WordPress.tv ↗
  • 共同參與
  • Events
  • Donate ↗
  • Five for the Future
  • WordPress.com ↗
  • Matt ↗
  • bbPress ↗
  • BuddyPress ↗
WordPress.org
WordPress.org

Hong Kong 香港中文

  • Visit our X (formerly Twitter) account
  • Visit our Bluesky account
  • Visit our Mastodon account
  • Visit our Threads account
  • 訪問我們的 Facebook 專頁
  • Visit our Instagram account
  • Visit our LinkedIn account
  • Visit our TikTok account
  • Visit our YouTube channel
  • Visit our Tumblr account
代碼就是詩歌。