• Resolved kisabelle

    (@kisabelle)


    Hello, we’re having issues with Wordfence blocking users without cause. Seems to be triggered by visiting the WordPress login screen. The block is triggered immediately upon visiting the login page. As soon as the block expires the person is blocked again immediately if they try to visit the login screen.

    The title on the error screen reads “Your access to this site has been temporarily limited by the site owner”. The message below the title reads “Your access to this service has been temporarily limited. Please try again in a few minutes (HTTP response code 503)

    The Block Reason reads “You have been temporarily locked out of this system. This means that you will not be able to log in for a while”

    Is this caused by the Rate Limiting settings? We currently have it turned on but all of the limits are set to Unlimited.

    We will disable Rate Limiting until we hear back.

    Thanks!

Viewing 1 replies (of 1 total)
  • Plugin Support wfpeter

    (@wfpeter)

    Hi @kisabelle, thanks for getting in touch.

    This does sound odd if no attempted usernames or other activity has been tried before the block kicks into action. I generally set my Rate Limiting Rules to these values to start with:
    Rate Limiting Screenshot

    • If anyone’s requests exceed – 240 per minute
    • If a crawler’s page views exceed – 120 per minute
    • If a crawler’s pages not found (404s) exceed – 60 per minute
    • If a human’s page views exceed – 120 per minute
    • If a human’s pages not found (404s) exceed – 60 per minute
    • How long is an IP address blocked when it breaks a rule – 30 minutes

    I also always set the rule to Throttle instead of Block. Throttling is generally better than blocking because any good search engine understands what happened if it is mistakenly blocked and your site isn’t penalized because of it.

    Give those settings a try and let me know if the problem persists.

    Thanks,

    Peter.

Viewing 1 replies (of 1 total)

The topic ‘Mysterious Blocking’ is closed to new replies.