Skip to Content

WordPress File Security

Purpose

This article is designed to guide WordPress users through a couple specific methods to ensure greater security for files stored within WordPress sites (like those with sites using UO Blogs).

The way that UO Department sites are set up, they are published publicly to allow for being found by various web search engines. Files and media are stored using distinct URLs and as long as someone has the address, the files and media can be accessible.

There are, however, methods to mitigate some potential security issues. Follow one of the methods below for greater security. Follow the steps below to proceed.

Setting up a PDF with a password

When a PDF file is created, the author can set viewing permissions for the file. To set those permissions, click on Tools > Protection. From here, click on Encrypt.

PDFSecurity1

Then select Encrypt with Password from the drop-down menu.

PDFSecurity1a

NOTE: You may be asked whether or not you want to proceed, click Yes to proceed.

Now, be sure to click the checkbox to Require a password to open the document then put in a password to open the document.

 

PDFSecurity2

Click OK to proceed.

NOTE: The password protection will not take place until the document is saved.

Privately Published Pages and Posts

When creating a new page or post within WordPress, users can set the visibility as to restrict access. Prior to publishing the new content, the user will select Private or Password Protected from the Visibility menu from within the Publishing menu. Then click OK.

NOTE: If a page or post has already been published and if the site is public (as all department pages are), then it will be indexed by Google (and other web crawlers) and will therefore be publicly searchable whether or not if the page is made private after the publication date.

In short, if the user would like to have the page or post made private or protected by a password without being found by a search engine, copy and paste the content into a new page or post and set to private before publishing.

Leave a Reply

You may authenticate with your DuckID to leave a comment

Leave a Reply

You're logged in as (). Log Out
Posts will be attributed to , but your email is private.

Your email address will not be published.