Overview

Install WP Ghost Premium Plugin

This tutorial will teach you how to install the premium version of the WP Ghost plugin, activate the license token on the website, and activate Ghost Mode with predefined paths.

Download WP Ghost Premium

Connect to your WP Ghost dashboard account and download WP Ghost premium plugin

Install WP Ghost

  1. Log In as an Administrator on your WordPress dashboard.
  2. In the WordPress menu, go to Plugins > Add New Plugin tab.
  3. Click on the Upload Plugin button from the top of the page.
  4. Click to browse and upload the hide-my-wp.zip file.
  5. After the upload, click the Activate Plugin button to activate the plugin.
  6. From the plugins list, click on the Settings link to go to plugin’s settings.
  7. Now enter the Activation Token from your account into the activation field.
  8. Click to activate and start the plugin setup.

Once you’ve activated the plugin, click on the Settings link to go to WP Ghost Settings page.

Activate WP Ghost Token License

It’s time to activate the premium plugin with the activation token from your WP Ghost dashboard account.

  1. Copy the activation token from your account.
  2. Paste the token into the activation field of the WP Ghost plugin.
  3. Click Activate button to register the license for your website.

Activate Ghost Mode Settings

Once you activate the plugin, you will be redirected to the WP Ghost > Overview page, where you will see all the features you can activate with just one click.

Before activating any feature, let’s activate the Ghost mode with the predefined paths.

  1. Go to WP Ghost > Change Paths > Level of Security.
  2. Select the Ghost Mode and check the popup information.
  3. Click the Continue button on the popup window to load the predefined paths.

Customize Paths

After you confirm the Ghost Mode, the paths will be automatically changed with the predefined ones.

Now you can customize the paths as you desire.

  • Admin Security – customize and hide the wp-admin path (optional). more details
  • Login Security – customize and hide the wp-login.php path. more details
  • Ajax Security – customize the admin-ajax.php path in frontend. more details
  • User Security – customize the author path in frontend. more details
  • WP Core Security – customize and hide the WordPress common paths and files. mode details
  • Plugins Security – customize the plugins path and names in frontend. more details
  • Theme Security – customize the themes path and names in frontend. more details
  • API Security – customize and hide the REST API path and XML-RPC. more details
  • Firewall & Headers Security – add Headers Security and Firewall protection. more details

Note! You have to remember the new login path because you will have to access it directly every time you connect to your website.

After customizing the paths, click the Save button to apply the changes.

Server Configuration

If WP Ghost can’t write the rewrite codes on your config files (.htaccess for Apache, nginx.conf for Nginx, web.config for IIS), you will be asked to do this manually.

Follow the instructions and click the Okay, I set it up button

If you installed the plugin on Nginx Server you need to have access to nginx.conf file or to have a managed hosting plan.

You need to add the config line in Nginx and restart the server only for the first time. All the rewrite rules are present in the hidemywp.conf file.

Learn how to include the config line in Nginx File

Note! For Nginx Servers, you need to restart Nginx after each customization with the command:
sudo nginx -s reload

Set AllowOverride all on Apache Servers

Note! For Apache Servers, you need to make sure you set the AllowOverride All option for your current directory in httpd.conf or apache2.conf.

Security Check

Go to Security Check section and run a test to make sure all the settings and tweaks are set correctly.

You can automatically fix them by clicking the Fix it button.

Remember to copy the Safe URL from WP Ghost > Change Paths to avoid the lockout if there is any compatibility issue with other plugins or theme. The Safe URL will pass the custom login path and allow you to login with the default WordPress login path.

In case you can’t login please follow these steps: WP Ghost – Disable it in case of error

John Darrel

Change Database Prefix in WordPress

Because hackers often use bots to search for security flaws in your website, it is…

12 months

Customize WordPress Uploads Directory

The easiest way to change the default media uploads path is to use the WP…

12 months

WP Ghost and WP Rocket Cache

To hide all CSS and JS you need to follow the steps to Combine the…

12 months

Why is website security important?

https://youtu.be/6ylhojSi-_E In this video, we’ll explore why website security matters and what can happen if…

12 months

Is WordPress Website Easily Hacked?

The security of your WordPress site depends on multiple factors, such as the strength of…

12 months

Setting up Two-Factor Authentication (2FA) for WordPress Using Mobile Apps

When you enable two-factor authentication (2FA) for your WordPress website, it adds an extra layer…

12 months