{"id":4945,"date":"2018-10-10T18:43:41","date_gmt":"2018-10-10T17:43:41","guid":{"rendered":"https:\/\/blog.fabianpiau.com\/?p=4945"},"modified":"2021-01-14T16:35:19","modified_gmt":"2021-01-14T16:35:19","slug":"tips-to-make-your-wordpress-website-secure","status":"publish","type":"post","link":"https:\/\/blog.fabianpiau.com\/fr\/2018\/10\/10\/tips-to-make-your-wordpress-website-secure\/","title":{"rendered":"Conseils pour s\u00e9curiser votre site WordPress"},"content":{"rendered":"<p><a class=\"lang\" href=\"https:\/\/blog.fabianpiau.com\/en\/2018\/10\/10\/tips-to-make-your-wordpress-website-secure\/\" title=\"Read in english\"><strong class=\"labellang\"><span class=\"en\">&nbsp;<\/span>English version available<\/strong><\/a><\/p>\n<div class=\"info\"><strong class=\"label\">Mise \u00e0 jour<\/strong><br \/>\n<strong>14 Janvier 2021 : <\/strong> Mise \u00e0 jour des security headers, remplacement de \u00ab\u00a0Feature-policy\u00a0\u00bb par \u00ab\u00a0Permissions-policy\u00a0\u00bb.\n<\/div>\n<p>WordPress est l&rsquo;un des syst\u00e8mes de gestion de contenu (CMS) les plus populaires. Cette popularit\u00e9 signifie \u00e9galement que c&rsquo;est une cible de choix pour les pirates.<br \/>\nDans cet article, je vais vous donner quelques conseils pour prot\u00e9ger votre site web et \u00e9viter les attaques.<\/p>\n<p><br clear=\"none\" \/><\/p>\n<h4>1. Utiliser les derni\u00e8res versions<\/h4>\n<p>Cela est vrai pour WordPress, mais \u00e9galement pour toutes vos extensions. De nouvelles versions sont disponibles r\u00e9guli\u00e8rement. Si un plugin n&rsquo;a pas \u00e9t\u00e9 mis \u00e0 jour depuis un moment, il n&rsquo;est probablement plus maintenu et vous devriez s\u00e9rieusement songer \u00e0 le supprimer ou le remplacer. Dans une moindre mesure, ceci est \u00e9galement applicable pour votre th\u00e8me.<br \/>\nLa version de PHP utilis\u00e9e est \u00e9galement importante. V\u00e9rifiez aupr\u00e8s de votre fournisseur d&rsquo;h\u00e9bergement que vous utilisez la derni\u00e8re version de PHP (7.X), en particulier, <a href=\"https:\/\/www.php.net\/supported-versions.php\" target=\"_blank\" title=\"Versions de PHP support\u00e9es\" rel=\"noopener noreferrer\">les versions 5.X ne seront plus support\u00e9es d&rsquo;ici la fin de l&rsquo;ann\u00e9e<\/a>.<br \/>\nNotez \u00e9galement que plus vous installez d&rsquo;extensions, plus vous prenez des risques, car votre configuration WordPress reposera sur davantage de code tiers. Vous ne devriez garder que les plugins dont vous avez vraiment besoin. Si un plugin est d\u00e9sactiv\u00e9, ne conservez pas son code source et supprimez tous les fichiers associ\u00e9s.<\/p>\n<p><br clear=\"none\" \/><\/p>\n<h4>2. Utiliser des identifiants de connexion s\u00e9curis\u00e9s<\/h4>\n<p>Ne jamais utiliser l&rsquo;utilisateur admin par d\u00e9faut. Si c&rsquo;est votre cas, d\u00e9sactivez ce compte et cr\u00e9ez votre propre compte avec un nom d&rsquo;utilisateur personnalis\u00e9.<br \/>\nChoisissez un <a href=\"https:\/\/blog.fabianpiau.com\/fr\/2013\/11\/01\/some-basic-rules-to-prevent-your-accounts-from-getting-hacked\/\" target=\"_blank\" title=\"Quelques r\u00e8gles essentielles pour \u00e9viter de se faire pirater ses comptes\" rel=\"noopener noreferrer\">mot de passe complexe<\/a>. Si plusieurs utilisateurs g\u00e8rent votre site Web, assurez-vous que les autorisations sont valides et \u00e9vitez de donner le droit d\u2019administration \u00e0 tout le monde.<\/p>\n<p><br clear=\"none\" \/><\/p>\n<h4>3. Scanner votre site web<\/h4>\n<p>C&rsquo;est un moyen facile et rapide de trouver des vuln\u00e9rabilit\u00e9s et de voir si l&rsquo;un de vos plugins est vuln\u00e9rable ou non. Vous pouvez utiliser ces 2 outils en ligne:<\/p>\n<ul>\n<li><a href=\"https:\/\/hackertarget.com\/wordpress-security-scan\/\" target=\"_blank\" title=\"WordPress Security Scan\" rel=\"noopener noreferrer\">WordPress Security Scan<\/a> (mon pr\u00e9f\u00e9r\u00e9 avec un rapport d\u00e9taill\u00e9)<\/li>\n<li><a href=\"https:\/\/wpsec.com\/\" target=\"_blank\" title=\"WPScans\" rel=\"noopener noreferrer\">WPSec<\/a><\/li>\n<\/ul>\n<p><br clear=\"none\" \/><\/p>\n<h4>4. Utiliser des fichiers .htaccess pour prot\u00e9ger vos r\u00e9pertoires<\/h4>\n<p>Le fichier <code>.htaccess<\/code> est un fichier de configuration pour le serveur. Il vous permet de d\u00e9finir des r\u00e8gles \u00e0 suivre par celui-ci.<\/p>\n<p>Par exemple, dans <code>\/wp-content\/uploads<\/code>, j&rsquo;ai cr\u00e9\u00e9 le fichier <code>.htaccess<\/code> suivant:<\/p>\n<pre class=\"brush: xml; title: ; notranslate\" title=\"\">\r\n# Refuser l'acc\u00e8s \u00e0 tout par d\u00e9faut\r\nOrder deny,allow\r\nDeny from all\r\n\r\n# Autoriser l'acc\u00e8s aux fichiers multim\u00e9dia\r\n&lt;FilesMatch '\\.(jpg|jpeg|png|gif|bmp|zip|rar|pdf)$'&gt;\r\n    Allow from all\r\n&lt;\/FilesMatch&gt;\r\n<\/pre>\n<p>Cette configuration garantit que seuls les fichiers multim\u00e9dias sont accessibles \u00e0 partir du navigateur. Tous les fichiers JavaScript et PHP seront non accessibles. Ce n&rsquo;est pas sans faille, car seule l&rsquo;extension est v\u00e9rifi\u00e9e, mais c&rsquo;est mieux que rien.<\/p>\n<p>Pour \u00e9viter l&rsquo;ex\u00e9cution de code PHP malveillants dans certains dossiers (par exemple, dans <code>\/wp-includes<\/code>), vous pouvez cr\u00e9er un autre fichier <code>.htaccess<\/code> avec le contenu suivant:<\/p>\n<pre class=\"brush: xml; title: ; notranslate\" title=\"\">\r\n&lt;Files *.php&gt;\r\nOrder allow,deny\r\nDeny from all\r\n&lt;\/Files&gt;\r\n<\/pre>\n<p><br clear=\"none\" \/><\/p>\n<h4>5. V\u00e9rifier les autorisations sur les fichiers et r\u00e9pertoires<\/h4>\n<p>Assurez-vous que les fichiers critiques (<code>wp-config.php<\/code>, <code>php.ini<\/code>&#8230;) ne sont pas accessibles en \u00e9criture publiquement, mais en lecture seule. Seul le propri\u00e9taire devrait pouvoir \u00e9crire.<\/p>\n<p><br clear=\"none\" \/><\/p>\n<h4>6. Utiliser les \u00ab\u00a0security headers\u00a0\u00bb<\/h4>\n<p>Vous pouvez consulter <a href=\"https:\/\/securityheaders.com\/\" target=\"_blank\" title=\"Outil en ligne Security Headers\" rel=\"noopener noreferrer\">cet outil en ligne pour conna\u00eetre quels headers vous supportez actuellement<\/a>.<\/p>\n<p>Dans le dossier racine, mettez \u00e0 jour le fichier <code>.htaccess<\/code> et ajoutez:<\/p>\n<pre class=\"brush: xml; title: ; notranslate\" title=\"\">\r\n# Extra Security Headers\r\n&lt;IfModule mod_headers.c&gt;\r\n\tHeader set Strict-Transport-Security 'max-age=31536000; includeSubDomains'\r\n\tHeader set X-XSS-Protection '1; mode=block'\r\n\tHeader set X-Frame-Options 'sameorigin'\r\n\tHeader set X-Content-Type-Options 'nosniff'\r\n\tHeader unset Server\r\n\tHeader always unset X-Powered-By\r\n\tHeader unset X-Powered-By\r\n\tHeader unset X-CF-Powered-By\r\n\tHeader unset X-Mod-Pagespeed\r\n\tHeader unset X-Pingback\r\n&lt;\/IfModule&gt;\r\n<\/pre>\n<p>Dans le fichier <code>wp-config.php<\/code>, ajoutez:<\/p>\n<pre class=\"brush: xml; title: ; notranslate\" title=\"\">\r\n\/** Extra Security *\/\r\nheader('X-Frame-Options: SAMEORIGIN');\r\nheader('X-XSS-Protection: 1; mode=block');\r\nheader('X-Content-Type-Options: nosniff');\r\nheader('Strict-Transport-Security:max-age=31536000; includeSubdomains; preload');\r\nheader('Referrer-Policy: no-referrer-when-downgrade');\r\nheader('Content-Security-Policy: upgrade-insecure-requests');\r\nheader('Permissions-Policy: autoplay=(), camera=(), encrypted-media=(), fullscreen=(), geolocation=(), microphone=(), midi=(), payment=()');\r\nheader_remove('X-Powered-By');\r\nheader_remove('Server');\r\nheader_remove('X-CF-Powered-By');\r\nheader_remove('X-Mod-Pagespeed');\r\nheader_remove('X-Pingback');\r\n@ini_set('session.cookie_httponly', true);\r\n@ini_set('session.cookie_secure', true);\r\n@ini_set('session.use_only_cookies', true);\r\n<\/pre>\n<p><br clear=\"none\" \/><\/p>\n<h4>7. Ne pas exposer trop d&rsquo;informations<\/h4>\n<p>Dans le dossier racine de votre site Web, dans <code>php.ini<\/code>, ajoutez la ligne suivante:<\/p>\n<pre class=\"brush: xml; light: true; title: ; notranslate\" title=\"\">\r\nexpose_php = Off\r\n<\/pre>\n<p>Votre version actuelle de PHP ne sera pas expos\u00e9e.<\/p>\n<p><br clear=\"none\" \/><\/p>\n<h4>8. Sauvegarder votre site r\u00e9guli\u00e8rement<\/h4>\n<p>Dernier conseil, mais non le moindre! Vous n&rsquo;avez pas besoin d&rsquo;un logiciel particulier ou d&rsquo;un plugin suppl\u00e9mentaire pour y parvenir.<\/p>\n<ul>\n<li>Avec votre outil FTP pr\u00e9f\u00e9r\u00e9 (par exemple, <a href=\"https:\/\/filezilla-project.org\/\" target=\"_blank\" title=\"Filezilla\" rel=\"noopener noreferrer\">Filezilla<\/a>), enregistrez tous les fichiers disponibles sur votre serveur.<\/li>\n<li>Pour la base de donn\u00e9es, utilisez la fonctionnalit\u00e9 de sauvegarde MySQL disponible. De nombreux h\u00e9bergeurs fournissent un acc\u00e8s \u00e0 phpMyAdmin, un outil en ligne.<\/li>\n<\/ul>\n<p>Je recommande de faire une sauvegarde tous les mois et de conserver l&rsquo;historique des 6 derni\u00e8res sauvegardes dans un endroit s\u00fbr. Bien \u00e9videmment, cela d\u00e9pend du volume d&rsquo;articles que vous \u00e9crivez et de l&rsquo;importance de vos donn\u00e9es.<\/p>\n<p><br clear=\"none\" \/><\/p>\n<p>C&rsquo;est tout! Si vous avez fait tout ce qui pr\u00e9c\u00e8de, votre site Web devrait \u00eatre plus r\u00e9sistant aux attaques. Dans le pire des cas, vous devriez pouvoir restaurer votre site facilement.<\/p>\n<p>Bon blogage s\u00e9curis\u00e9!<\/p>","protected":false},"excerpt":{"rendered":"<p>&nbsp;English version available Mise \u00e0 jour 14 Janvier 2021 : Mise \u00e0 jour des security headers, remplacement de \u00ab\u00a0Feature-policy\u00a0\u00bb par \u00ab\u00a0Permissions-policy\u00a0\u00bb. WordPress est l&rsquo;un des syst\u00e8mes de gestion de contenu (CMS) les plus populaires. Cette popularit\u00e9 signifie \u00e9galement que c&rsquo;est une cible de choix pour les pirates. Dans cet article, je vais vous donner quelques [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":4953,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_post_was_ever_published":false},"categories":[4],"tags":[231,228,230,109],"class_list":["post-4945","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-technology","tag-hacking","tag-hacker","tag-security","tag-wordpress"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.6 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Conseils pour s\u00e9curiser votre site WordPress | CarmaBlog<\/title>\n<meta name=\"description\" content=\"&nbsp;English version available Mise \u00e0 jour 14 Janvier 2021 : Mise \u00e0 jour des security headers, remplacement de &quot;Feature-policy&quot; par &quot;Permissions-policy&quot;.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/blog.fabianpiau.com\/fr\/2018\/10\/10\/tips-to-make-your-wordpress-website-secure\/\" \/>\n<meta property=\"og:locale\" content=\"fr_FR\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Conseils pour s\u00e9curiser votre site WordPress | CarmaBlog\" \/>\n<meta property=\"og:description\" content=\"&nbsp;English version available Mise \u00e0 jour 14 Janvier 2021 : Mise \u00e0 jour des security headers, remplacement de &quot;Feature-policy&quot; par &quot;Permissions-policy&quot;.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/blog.fabianpiau.com\/fr\/2018\/10\/10\/tips-to-make-your-wordpress-website-secure\/\" \/>\n<meta property=\"og:site_name\" content=\"CarmaBlog\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/fabian.piau\" \/>\n<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/fabian.piau\" \/>\n<meta property=\"article:published_time\" content=\"2018-10-10T17:43:41+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2021-01-14T16:35:19+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/i1.wp.com\/blog.fabianpiau.com\/wp-content\/uploads\/2018\/10\/wordpress-hacker.png?fit=300%2C300&ssl=1\" \/>\n\t<meta property=\"og:image:width\" content=\"300\" \/>\n\t<meta property=\"og:image:height\" content=\"300\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Fabian Piau\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@fabianpiau\" \/>\n<meta name=\"twitter:site\" content=\"@fabianpiau\" \/>\n<meta name=\"twitter:label1\" content=\"\u00c9crit par\" \/>\n\t<meta name=\"twitter:data1\" content=\"Fabian Piau\" \/>\n\t<meta name=\"twitter:label2\" content=\"Dur\u00e9e de lecture estim\u00e9e\" \/>\n\t<meta name=\"twitter:data2\" content=\"8 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/2018\\\/10\\\/10\\\/tips-to-make-your-wordpress-website-secure\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/2018\\\/10\\\/10\\\/tips-to-make-your-wordpress-website-secure\\\/\"},\"author\":{\"name\":\"Fabian Piau\",\"@id\":\"https:\\\/\\\/blog.fabianpiau.com\\\/#\\\/schema\\\/person\\\/c5cbffd7cf0b10117877f5dfd1b35f14\"},\"headline\":\"Conseils pour s\u00e9curiser votre site WordPress\",\"datePublished\":\"2018-10-10T17:43:41+00:00\",\"dateModified\":\"2021-01-14T16:35:19+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/2018\\\/10\\\/10\\\/tips-to-make-your-wordpress-website-secure\\\/\"},\"wordCount\":1667,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/blog.fabianpiau.com\\\/#\\\/schema\\\/person\\\/c5cbffd7cf0b10117877f5dfd1b35f14\"},\"image\":{\"@id\":\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/2018\\\/10\\\/10\\\/tips-to-make-your-wordpress-website-secure\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/i0.wp.com\\\/blog.fabianpiau.com\\\/wp-content\\\/uploads\\\/2018\\\/10\\\/wordpress-hacker.png?fit=300%2C300&ssl=1\",\"keywords\":[\"piratage\",\"pirate\",\"s\u00e9curit\u00e9\",\"wordpress\"],\"articleSection\":[\"Technologie\"],\"inLanguage\":\"fr-FR\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/2018\\\/10\\\/10\\\/tips-to-make-your-wordpress-website-secure\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/2018\\\/10\\\/10\\\/tips-to-make-your-wordpress-website-secure\\\/\",\"url\":\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/2018\\\/10\\\/10\\\/tips-to-make-your-wordpress-website-secure\\\/\",\"name\":\"Conseils pour s\u00e9curiser votre site WordPress | CarmaBlog\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/2018\\\/10\\\/10\\\/tips-to-make-your-wordpress-website-secure\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/2018\\\/10\\\/10\\\/tips-to-make-your-wordpress-website-secure\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/i0.wp.com\\\/blog.fabianpiau.com\\\/wp-content\\\/uploads\\\/2018\\\/10\\\/wordpress-hacker.png?fit=300%2C300&ssl=1\",\"datePublished\":\"2018-10-10T17:43:41+00:00\",\"dateModified\":\"2021-01-14T16:35:19+00:00\",\"description\":\"&nbsp;English version available Mise \u00e0 jour 14 Janvier 2021 : Mise \u00e0 jour des security headers, remplacement de \\\"Feature-policy\\\" par \\\"Permissions-policy\\\".\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/2018\\\/10\\\/10\\\/tips-to-make-your-wordpress-website-secure\\\/#breadcrumb\"},\"inLanguage\":\"fr-FR\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[[\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/2018\\\/10\\\/10\\\/tips-to-make-your-wordpress-website-secure\\\/\"]]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/2018\\\/10\\\/10\\\/tips-to-make-your-wordpress-website-secure\\\/#primaryimage\",\"url\":\"https:\\\/\\\/i0.wp.com\\\/blog.fabianpiau.com\\\/wp-content\\\/uploads\\\/2018\\\/10\\\/wordpress-hacker.png?fit=300%2C300&ssl=1\",\"contentUrl\":\"https:\\\/\\\/i0.wp.com\\\/blog.fabianpiau.com\\\/wp-content\\\/uploads\\\/2018\\\/10\\\/wordpress-hacker.png?fit=300%2C300&ssl=1\",\"width\":300,\"height\":300,\"caption\":\"wordpress-hacker\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/2018\\\/10\\\/10\\\/tips-to-make-your-wordpress-website-secure\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Homepage\",\"item\":\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Technologie\",\"item\":\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/category\\\/technology\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Conseils pour s\u00e9curiser votre site WordPress\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/#website\",\"url\":\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/\",\"name\":\"CarmaBlog\",\"description\":\"Agilit\u00e9, D\u00e9veloppement Java, Nouvelles technologies et plus...\",\"publisher\":{\"@id\":\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/#\\\/schema\\\/person\\\/c5cbffd7cf0b10117877f5dfd1b35f14\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"fr-FR\"},{\"@type\":[\"Person\",\"Organization\"],\"@id\":\"https:\\\/\\\/blog.fabianpiau.com\\\/fr\\\/#\\\/schema\\\/person\\\/c5cbffd7cf0b10117877f5dfd1b35f14\",\"name\":\"Fabian Piau\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\\\/\\\/i0.wp.com\\\/blog.fabianpiau.com\\\/wp-content\\\/uploads\\\/2022\\\/08\\\/fabian-pro-small.jpg?fit=567%2C667&ssl=1\",\"url\":\"https:\\\/\\\/i0.wp.com\\\/blog.fabianpiau.com\\\/wp-content\\\/uploads\\\/2022\\\/08\\\/fabian-pro-small.jpg?fit=567%2C667&ssl=1\",\"contentUrl\":\"https:\\\/\\\/i0.wp.com\\\/blog.fabianpiau.com\\\/wp-content\\\/uploads\\\/2022\\\/08\\\/fabian-pro-small.jpg?fit=567%2C667&ssl=1\",\"width\":567,\"height\":667,\"caption\":\"Fabian Piau\"},\"logo\":{\"@id\":\"https:\\\/\\\/i0.wp.com\\\/blog.fabianpiau.com\\\/wp-content\\\/uploads\\\/2022\\\/08\\\/fabian-pro-small.jpg?fit=567%2C667&ssl=1\"},\"description\":\"D\u00e9veloppeur Java, Fabian s'int\u00e9resse aux nouvelles technologies et plus particuli\u00e8rement \u00e0 leur utilisation dans un contexte agile.\",\"sameAs\":[\"https:\\\/\\\/blog.fabianpiau.com\",\"https:\\\/\\\/www.facebook.com\\\/fabian.piau\",\"https:\\\/\\\/www.instagram.com\\\/fabianpiau\\\/\",\"https:\\\/\\\/www.linkedin.com\\\/in\\\/fabianpiau\\\/\",\"https:\\\/\\\/x.com\\\/fabianpiau\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Conseils pour s\u00e9curiser votre site WordPress | CarmaBlog","description":"&nbsp;English version available Mise \u00e0 jour 14 Janvier 2021 : Mise \u00e0 jour des security headers, remplacement de \"Feature-policy\" par \"Permissions-policy\".","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/blog.fabianpiau.com\/fr\/2018\/10\/10\/tips-to-make-your-wordpress-website-secure\/","og_locale":"fr_FR","og_type":"article","og_title":"Conseils pour s\u00e9curiser votre site WordPress | CarmaBlog","og_description":"&nbsp;English version available Mise \u00e0 jour 14 Janvier 2021 : Mise \u00e0 jour des security headers, remplacement de \"Feature-policy\" par \"Permissions-policy\".","og_url":"https:\/\/blog.fabianpiau.com\/fr\/2018\/10\/10\/tips-to-make-your-wordpress-website-secure\/","og_site_name":"CarmaBlog","article_publisher":"https:\/\/www.facebook.com\/fabian.piau","article_author":"https:\/\/www.facebook.com\/fabian.piau","article_published_time":"2018-10-10T17:43:41+00:00","article_modified_time":"2021-01-14T16:35:19+00:00","og_image":[{"width":300,"height":300,"url":"https:\/\/i1.wp.com\/blog.fabianpiau.com\/wp-content\/uploads\/2018\/10\/wordpress-hacker.png?fit=300%2C300&ssl=1","type":"image\/png"}],"author":"Fabian Piau","twitter_card":"summary_large_image","twitter_creator":"@fabianpiau","twitter_site":"@fabianpiau","twitter_misc":{"\u00c9crit par":"Fabian Piau","Dur\u00e9e de lecture estim\u00e9e":"8 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/blog.fabianpiau.com\/fr\/2018\/10\/10\/tips-to-make-your-wordpress-website-secure\/#article","isPartOf":{"@id":"https:\/\/blog.fabianpiau.com\/fr\/2018\/10\/10\/tips-to-make-your-wordpress-website-secure\/"},"author":{"name":"Fabian Piau","@id":"https:\/\/blog.fabianpiau.com\/#\/schema\/person\/c5cbffd7cf0b10117877f5dfd1b35f14"},"headline":"Conseils pour s\u00e9curiser votre site WordPress","datePublished":"2018-10-10T17:43:41+00:00","dateModified":"2021-01-14T16:35:19+00:00","mainEntityOfPage":{"@id":"https:\/\/blog.fabianpiau.com\/fr\/2018\/10\/10\/tips-to-make-your-wordpress-website-secure\/"},"wordCount":1667,"commentCount":0,"publisher":{"@id":"https:\/\/blog.fabianpiau.com\/#\/schema\/person\/c5cbffd7cf0b10117877f5dfd1b35f14"},"image":{"@id":"https:\/\/blog.fabianpiau.com\/fr\/2018\/10\/10\/tips-to-make-your-wordpress-website-secure\/#primaryimage"},"thumbnailUrl":"https:\/\/i0.wp.com\/blog.fabianpiau.com\/wp-content\/uploads\/2018\/10\/wordpress-hacker.png?fit=300%2C300&ssl=1","keywords":["piratage","pirate","s\u00e9curit\u00e9","wordpress"],"articleSection":["Technologie"],"inLanguage":"fr-FR","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/blog.fabianpiau.com\/fr\/2018\/10\/10\/tips-to-make-your-wordpress-website-secure\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/blog.fabianpiau.com\/fr\/2018\/10\/10\/tips-to-make-your-wordpress-website-secure\/","url":"https:\/\/blog.fabianpiau.com\/fr\/2018\/10\/10\/tips-to-make-your-wordpress-website-secure\/","name":"Conseils pour s\u00e9curiser votre site WordPress | CarmaBlog","isPartOf":{"@id":"https:\/\/blog.fabianpiau.com\/fr\/#website"},"primaryImageOfPage":{"@id":"https:\/\/blog.fabianpiau.com\/fr\/2018\/10\/10\/tips-to-make-your-wordpress-website-secure\/#primaryimage"},"image":{"@id":"https:\/\/blog.fabianpiau.com\/fr\/2018\/10\/10\/tips-to-make-your-wordpress-website-secure\/#primaryimage"},"thumbnailUrl":"https:\/\/i0.wp.com\/blog.fabianpiau.com\/wp-content\/uploads\/2018\/10\/wordpress-hacker.png?fit=300%2C300&ssl=1","datePublished":"2018-10-10T17:43:41+00:00","dateModified":"2021-01-14T16:35:19+00:00","description":"&nbsp;English version available Mise \u00e0 jour 14 Janvier 2021 : Mise \u00e0 jour des security headers, remplacement de \"Feature-policy\" par \"Permissions-policy\".","breadcrumb":{"@id":"https:\/\/blog.fabianpiau.com\/fr\/2018\/10\/10\/tips-to-make-your-wordpress-website-secure\/#breadcrumb"},"inLanguage":"fr-FR","potentialAction":[{"@type":"ReadAction","target":[["https:\/\/blog.fabianpiau.com\/fr\/2018\/10\/10\/tips-to-make-your-wordpress-website-secure\/"]]}]},{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/blog.fabianpiau.com\/fr\/2018\/10\/10\/tips-to-make-your-wordpress-website-secure\/#primaryimage","url":"https:\/\/i0.wp.com\/blog.fabianpiau.com\/wp-content\/uploads\/2018\/10\/wordpress-hacker.png?fit=300%2C300&ssl=1","contentUrl":"https:\/\/i0.wp.com\/blog.fabianpiau.com\/wp-content\/uploads\/2018\/10\/wordpress-hacker.png?fit=300%2C300&ssl=1","width":300,"height":300,"caption":"wordpress-hacker"},{"@type":"BreadcrumbList","@id":"https:\/\/blog.fabianpiau.com\/fr\/2018\/10\/10\/tips-to-make-your-wordpress-website-secure\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Homepage","item":"https:\/\/blog.fabianpiau.com\/fr\/"},{"@type":"ListItem","position":2,"name":"Technologie","item":"https:\/\/blog.fabianpiau.com\/fr\/category\/technology\/"},{"@type":"ListItem","position":3,"name":"Conseils pour s\u00e9curiser votre site WordPress"}]},{"@type":"WebSite","@id":"https:\/\/blog.fabianpiau.com\/fr\/#website","url":"https:\/\/blog.fabianpiau.com\/fr\/","name":"CarmaBlog","description":"Agilit\u00e9, D\u00e9veloppement Java, Nouvelles technologies et plus...","publisher":{"@id":"https:\/\/blog.fabianpiau.com\/fr\/#\/schema\/person\/c5cbffd7cf0b10117877f5dfd1b35f14"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/blog.fabianpiau.com\/fr\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"fr-FR"},{"@type":["Person","Organization"],"@id":"https:\/\/blog.fabianpiau.com\/fr\/#\/schema\/person\/c5cbffd7cf0b10117877f5dfd1b35f14","name":"Fabian Piau","image":{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/i0.wp.com\/blog.fabianpiau.com\/wp-content\/uploads\/2022\/08\/fabian-pro-small.jpg?fit=567%2C667&ssl=1","url":"https:\/\/i0.wp.com\/blog.fabianpiau.com\/wp-content\/uploads\/2022\/08\/fabian-pro-small.jpg?fit=567%2C667&ssl=1","contentUrl":"https:\/\/i0.wp.com\/blog.fabianpiau.com\/wp-content\/uploads\/2022\/08\/fabian-pro-small.jpg?fit=567%2C667&ssl=1","width":567,"height":667,"caption":"Fabian Piau"},"logo":{"@id":"https:\/\/i0.wp.com\/blog.fabianpiau.com\/wp-content\/uploads\/2022\/08\/fabian-pro-small.jpg?fit=567%2C667&ssl=1"},"description":"D\u00e9veloppeur Java, Fabian s'int\u00e9resse aux nouvelles technologies et plus particuli\u00e8rement \u00e0 leur utilisation dans un contexte agile.","sameAs":["https:\/\/blog.fabianpiau.com","https:\/\/www.facebook.com\/fabian.piau","https:\/\/www.instagram.com\/fabianpiau\/","https:\/\/www.linkedin.com\/in\/fabianpiau\/","https:\/\/x.com\/fabianpiau"]}]}},"views":2053,"jetpack_featured_media_url":"https:\/\/i0.wp.com\/blog.fabianpiau.com\/wp-content\/uploads\/2018\/10\/wordpress-hacker.png?fit=300%2C300&ssl=1","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/pbSHyl-1hL","_links":{"self":[{"href":"https:\/\/blog.fabianpiau.com\/fr\/wp-json\/wp\/v2\/posts\/4945","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blog.fabianpiau.com\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.fabianpiau.com\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.fabianpiau.com\/fr\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.fabianpiau.com\/fr\/wp-json\/wp\/v2\/comments?post=4945"}],"version-history":[{"count":0,"href":"https:\/\/blog.fabianpiau.com\/fr\/wp-json\/wp\/v2\/posts\/4945\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/blog.fabianpiau.com\/fr\/wp-json\/wp\/v2\/media\/4953"}],"wp:attachment":[{"href":"https:\/\/blog.fabianpiau.com\/fr\/wp-json\/wp\/v2\/media?parent=4945"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.fabianpiau.com\/fr\/wp-json\/wp\/v2\/categories?post=4945"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.fabianpiau.com\/fr\/wp-json\/wp\/v2\/tags?post=4945"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}