[WordPress] 外掛分享: ProbeGuard 404 Firewall for Cloudflare

首頁外掛目錄 › ProbeGuard 404 Firewall for Cloudflare
WordPress 外掛 ProbeGuard 404 Firewall for Cloudflare 的封面圖片
全新外掛
安裝啟用
尚無評分
剛更新
最後更新
問題解決
WordPress 5.3+ PHP 7.2+ v2.0.0 上架:2026-09-14

內容簡介

ProbeGuard 404 Firewall for Cloudflare 是一款專為 WordPress 設計的外掛,能夠記錄 404 請求並自動為過度請求的 IP 地址設置 Cloudflare IP 存取規則,有效阻擋惡意流量,提升網站安全性。

【主要功能】
• 可配置的閾值、時間窗口和封鎖持續時間
• 重複違規者將在下一次 404 請求時重新封鎖
• 支援封鎖、管理挑戰或互動挑戰模式
• 定期任務放置封鎖,避免影響訪客請求
• 錯誤 IP 的狀態螢幕顯示及通知功能
• 自動清理 404、封鎖及診斷記錄

外掛標籤

開發者團隊

⬇ 下載最新版 (v2.0.0) 或搜尋安裝

① 下載 ZIP → 後台「外掛 › 安裝外掛 › 上傳外掛」
② 後台搜尋「ProbeGuard 404 Firewall for Cloudflare」→ 直接安裝(推薦)
📦 歷史版本下載

原文外掛簡介

ProbeGuard records 404 requests and, when a single IP exceeds a configurable threshold within a time window, adds a Cloudflare IP Access Rule for that address. The rule is removed automatically when the block duration expires. Access Rules are available on every Cloudflare plan, including Free.
Because the block happens at Cloudflare, abusive traffic stops before it reaches PHP.
Features

Configurable threshold, time window and block duration
Repeat offenders are re-blocked on their next 404 and each block lasts twice as long, up to a configurable ceiling
Choose Block, Managed Challenge or Interactive Challenge for abusive IPs
Blocks are placed by a scheduled task, never during the visitor’s request
Anchored whitelist with wildcard support, matched against path, query string and host
Status screen with top offenders, recent 404s, active blocks and recent warnings
Optional email notification when an IP is blocked
Automatic pruning of 404, block and diagnostic records
Cloudflare credentials are entered in the plugin settings, with the token masked once saved, or defined in wp-config.php instead

Visitor IP detection
CF-Connecting-IP is trusted only when the request reaches the site from a Cloudflare edge address; the range list is refreshed daily from Cloudflare's public endpoint. If the site sits behind an additional proxy or load balancer, list its addresses in this optional constant so forwarded headers are honoured:

define( 'EDGE404_TRUSTED_PROXIES', '10.0.0.0/8, 203.0.113.7' );

Otherwise a request is attributed to the address it actually connected from, which cannot be forged. Private and reserved addresses are never sent to Cloudflare as block targets.
External services
This plugin communicates with the Cloudflare API at api.cloudflare.com:

Creating, listing and deleting IP Access Rules sends the offending IP address, the rule mode, an expiry note, and the configured zone ID. This happens when an IP crosses the block threshold, when a block expires or is removed manually, and when the Cloudflare block count is displayed in the admin.
A daily request to https://api.cloudflare.com/client/v4/ips refreshes the list of Cloudflare edge ranges. It sends no site or visitor data and requires no credentials.

Cloudflare’s terms of service (https://www.cloudflare.com/terms/) and privacy policy (https://www.cloudflare.com/privacypolicy/) apply.

延伸相關外掛

文章
Filter
Mastodon