Deny All Firewall
by Oliver Campion 1 (0 reviews)

Deny All Firewall

Stop unwanted requests before WordPress loads. Deny All Firewall uses .htaccess to allow genuine content and refuse everything else.

Deny All Firewall ranks #20,397 among WordPress.org plugins with 50+ active installations, is #1,138 of 4,566 in the Security category, a 1/5 rating from 0 reviews, and was last updated Sep 8, 2026. Data from WordPress.org, refreshed twice daily — see methodology.

Compatible with WP 7.1
v2.0.2 Current Version v2.0.2
Updated 2 weeks ago Last Update on 08 Sep, 2026
Refreshed 10 hours ago Last Refreshed on
#1,138 of 4,566 in Security Top 50% by installs Downloads -66% this week Actively maintained
View on WordPress.org
Rank
#20,397
+243 this week
Active Installs
50+
+8.7%
KW Avg Position
88
0.7 worse
Downloads
9.6K
+9 today
Support Resolved
0%
No change
Rating
20%
Review 1 out of 5
1 (0 reviews)

Next Milestone 60

Total Progress 20%
50+ 60+
4,432
Ranks to Climb
-
Growth Needed
8,000,000
Active Installs
Pro

Unlock Exact Install Count

See the precise estimated active installs for this plugin, calculated from real-time ranking data.

  • Exact install estimates within tiers
  • Track install growth over time
  • Milestone progress predictions
Upgrade to Pro
Need 8 more installs to reach 60+

Rank Changes

20,348 20,455 20,562 20,668 20,775 15-09-2026 16-09-2026 17-09-2026 18-09-2026 19-09-2026 20-09-2026 21-09-2026 22-09-2026
20,309 20,427 20,545 20,662 20,780 07-09-2026 08-09-2026 09-09-2026 10-09-2026 11-09-2026 12-09-2026 13-09-2026 14-09-2026 15-09-2026 16-09-2026 17-09-2026 18-09-2026 19-09-2026 20-09-2026 21-09-2026 22-09-2026
Current #20,397
Change
Best #

Upgrade to Pro

Unlock 30-day and 90-day rank history charts with a Pro subscription.

Upgrade Now

Active Installs Growth

Active Installs 0,000,000+
Growth +0.0%
Peak 0,000,000

Downloads Growth

0 10 20 15-09-2026 16-09-2026 17-09-2026 18-09-2026 19-09-2026 20-09-2026 21-09-2026 22-09-2026
0 10 20 30 40 50 60 70 07-09-2026 08-09-2026 09-09-2026 10-09-2026 11-09-2026 12-09-2026 13-09-2026 14-09-2026 15-09-2026 16-09-2026 17-09-2026 18-09-2026 19-09-2026 20-09-2026 21-09-2026 22-09-2026
Downloads
Growth
Peak

Upgrade to Pro

Unlock 30-day, 90-day, and yearly download history charts with a Pro subscription.

Upgrade Now

Reviews & Ratings

1.0
0 reviews
Overall 20%
5
0 (0%)
4
0 (0%)
3
0 (0%)
2
0 (0%)
1
0 (0%)

Frequently Asked Questions

Common questions about Deny All Firewall

No. Deny All Firewall reduces the public attack surface and unnecessary processing. Continue to update WordPress, themes and plugins, use strong authentication, maintain backups and follow normal server-security practices.
Attack signatures can identify known bad input, but they must continually account for new variations. Deny All Firewall begins with the smaller question: which public requests does this particular website genuinely need? Requests outside that answer can be refused before WordPress processes them. This complements other security layers rather than making them unnecessary.
Yes. Strict rules can expose unusual requirements in forms, ecommerce extensions, webhooks, membership systems and third-party integrations. The plugin preserves normal WordPress functionality and known public content, but it cannot predict every custom implementation. Test the site after enabling the firewall and use Blocked Request Troubleshooting to investigate genuine requests before allowing them.
No. The configured WordPress REST API path and rest_route requests remain available. Write methods such as PUT, PATCH and DELETE are refused elsewhere because ordinary public WordPress pages do not normally need them.
No. The plugin generates a static robots.txt file from WordPress's filtered output so crawlers do not need to load WordPress repeatedly. The standard WordPress sitemap remains allowed. If the website already has a physical robots.txt file that Deny All Firewall did not create, it is left unchanged.
The temporary log records information needed to identify a refused request, including the requested address, time and originating IP address. Logs may therefore contain personal data under some privacy laws. Logging is disabled automatically when the firewall is disabled. The log is limited to approximately 10 MB and is deleted when troubleshooting is turned off.
Exact Content Protection may need a refreshed rule for newly published content. The plugin monitors relevant content changes and displays an administrator notice when its rules should be refreshed. Larger sites use broader automatic matching and do not require an individual rule for every public item.
Use your hosting control panel, FTP or file manager to edit the site's .htaccess file. Remove only the section between: # BEGIN Deny All Firewall and: # END Deny All Firewall
Not currently. The generated rules require Apache with mod_rewrite and .htaccess support.
Disabling the firewall through its settings removes the generated .htaccess section. Properly deactivating the plugin also removes its generated rules, its own generated robots.txt, blocked-page data and troubleshooting logs, and its firewall-rule lock file. An existing robots.txt file that was not created by the plugin is preserved.

Sign In / Register

You need to sign in or register to use this feature.