MB Challenge response authentication


The “MB Challenge response authentication” plugin extends the
default WordPress authentication with a challenge response authentication.
This ensures that passwords during login are no longer stored in the
clear text during the login process.

Via a menu item in the administration you can also set whether the challenge response authentication should be enforced or not. If challenge response authentication is not enforced
the default WordPress authentication is allowed as fallback.
This is the case if a user cannot hash on the client side.

Furthermore, the default WordPress hasher is overridden and PHP native functions like password_hash and password_verify are used.


Special thanks to the developers of the
bcrypt.js library https://github.com/dcodeIO/bcrypt.js.
The library is used for client-side hashing.


  • Challenge Response Authentication
  • Backend Menu


Upload the plugin to your Website, Activate it.
If you like, you can disable the challenge response authentication enforcement
under the settings to not exclude users without JavaScript.
That’s it. You’re done!


No hay reseñas para este plugin.

Colaboradores y desarrolladores

“MB Challenge response authentication” es un software de código abierto. Las siguientes personas han colaborado con este plugin.


Traduce “MB Challenge response authentication” a tu idioma.

¿Interesado en el desarrollo?

Revisa el código , echa un vistazo al repositorio SVN , o suscríbete al log de desarrollo por RSS .

Registro de cambios


  • Init Version