Skip to content

Flarum - WordPress Journey

WordPress

Related Topics
  • configure ghost and wordpress combo

    Moved Solved WordPress
    9
    7 Votes
    9 Posts
    131 Views

    @Madchatthew Iā€™d always post for the reasons I stated above. Itā€™s useful information and could save someone else the headache.

  • How to deploy WordPress.org Developer theme

    Solved Configure
    4
    1 Votes
    4 Posts
    413 Views

    @Hari the real issue here is that I donā€™t think it can be used as a theme for WordPress because of the dependencies it clearly has, including its own Web server.

    My view here is that this is designed to be a complete development environment outside of the WordPress core.

  • How to fix no img attribute from this code

    Solved WordPress
    7
    1 Votes
    7 Posts
    343 Views

    Yes, I am aware that if users are given the option to enter alt text, some may do so in an abusive manner. For the time being, weā€™ve adjusted the php script to generate the alt automatically, thus there are no longer any SEO problem with alt images.

  • how to change flarum configuration from apache to nginx?

    Solved Configure
    3
    0 Votes
    3 Posts
    371 Views

    See https://sudonix.com/topic/226/issues-getting-flarum-to-work-on-new-host/28?_=1645013723672

  • move out from flarum to wordpress

    WordPress
    87
    52 Votes
    87 Posts
    9k Views

    @Hari Glad to see this went so well, and that youā€™ve finally departed the Flarum ecosystem šŸ™‚

  • 1 Votes
    13 Posts
    1k Views

    @phenomlab said in Hardening WordPress - Reducing the attack vector:

    @jac Microsoftā€™s and Googleā€™s Authenticator both support TOTP - essentially, a time based system that changes every 30 seconds. The main principle here is that the device itself carrying the One Time Passcode only needs to be in sync with the source server in terms of time, and can be completely offline with no internet access.

    Provided the time matches on both devices, the One Time Passcode will be accepted. Applications such as Microsoft Authenticator and Authy also support push notification meaning you just choose either yes or no on your device when prompted, and then that response is sent back to the origin which then determines if access is granted or not.

    One of the best looking password less authentication models was CLEF - sadly, this product died out due to a lack of funding (if I recall correctly) although some open source implementations of this have appeared quite recently.

    Essentially, both products will achieve the same goal. TOTP is an industry standard, and widely accepted across the board. Not all services offer push confirmation.

    Many thanks for the detailed reply mate.

    Thereā€™s some great advice in there that will help me secure my accounts.

  • Why is the phenomlab/fancybox-wrapper repo removed?

    Solved General
    6
    4 Votes
    6 Posts
    511 Views

    @katos Thanks

  • WordPress & NodeBB

    Solved WordPress
    6
    0 Votes
    6 Posts
    655 Views

    @jac That wonā€™t matter. You just redirect at nginx or apache level and itā€™ll work. The generally accepted standard though is to use a subdomain.