SWOT Analysis: The Ultimate Tool for Business Growth - Mageplaza
Learn how to use SWOT analysis to identify strengths, weaknesses, opportunities, and threats. Build smarter strategies and drive business growth effectively.
Cookies help us enhance your experience on our site by storing information about your preferences and interactions. You can customize your cookie settings by choosing which cookies to allow. Please note that disabling certain cookies might impact the functionality and features of our services, such as personalized content and suggestions. Cookie Policy
Cookie PolicyThese cookies are strictly necessary for the site to work and may not be disabled.
InformationThese cookies are strictly necessary for the site to work and may not be disabled.
Cookie name | Description | Lifetime | Provider |
---|---|---|---|
_ce.clock_data | Store the difference in time from the server's time and the current browser. | 1 day | Crazy Egg |
_ce.clock_event | Prevent repeated requests to the Clock API. | 1 day | Crazy Egg |
_ce.irv | Store isReturning value during the session | Session | Crazy Egg |
_ce.s | Track a recording visitor session unique ID, tracking host and start time | 1 year | Crazy Egg |
_hjSessionUser_2909345 | Store a unique user identifier to track user sessions and interactions for analytics purposes. | 1 year | HotJar |
_hjSession_2909345 | Store session data to identify and analyze individual user sessions. | 1 day | HotJar |
apt.uid | Store a unique user identifier for tracking and personalization. | 1 year | Mageplaza |
cebs | Store user preferences and settings. | Session | Mageplaza |
cf_clearance | Store a token that indicates a user has passed a Cloudflare security challenge. | 1 year | Cloudflare |
crisp-client | The crisp-client/session cookie is used to identify and maintain a user session within the Crisp platform. It allows the live chat system to recognize returning users, maintain chat history, and ensure continuity in customer service interactions. | Session | Crisp |
_ga | Store a unique client identifier (Client ID) for tracking user interactions on the | 2 years | |
_ga_7B0PZZW26Z | Store session state information for Google Analytics 4. | 2 years | |
_ga_JTRV42NV3L | Store session state information for Google Analytics 4. | 2 years | |
_ga_R3HWQ50MM4 | Store a unique client identifier (Client ID) for tracking user interactions on the website. | 2 years | |
_gid | Store a unique client identifier (Client ID) for tracking user interactions on the website. | 1 day | |
_gat_UA-76130628-1 | Throttle the request rate to Google Analytics servers. | 1 day |
Advertising cookies deliver ads relevant to your interests, limit ad frequency, and measure ad effectiveness.
InformationAdvertising cookies deliver ads relevant to your interests, limit ad frequency, and measure ad effectiveness.
Cookie name | Description | Lifetime | Provider |
---|---|---|---|
_gcl_au | The cookie is used by Google to track and store conversions. | 1 day | |
__Secure-3PAPISID | This cookie is used for targeting purposes to build a profile of the website visitor's interests in order to show relevant and personalized Google advertising. | 2 years | |
HSID | This security cookie is used by Google to confirm visitor authenticity, prevent fraudulent use of login data and protect visitor data from unauthorized access. | 2 years | |
__Secure-1PSID | This cookie is used for targeting purposes to build a profile of the website visitor's interests in order to show relevant and personalized Google advertising. | 2 years | |
SID | This security cookie is used by Google to confirm visitor authenticity, prevent fraudulent use of login data and protect visitor data from unauthorized access. | 2 years | |
APISID | This cookie is used by Google to display personalized advertisements on Google sites, based on recent searches and previous interactions. | 2 years | |
__Secure-1PAPISID | This cookie is used for targeting purposes to build a profile of the website visitor's interests in order to show relevant and personalized Google advertising. | 2 years | |
__Secure-3PSID | This cookie is used for targeting purposes to build a profile of the website visitor's interests in order to show relevant and personalized Google advertising. | 2 years | |
SSID | This cookie is used by Google to display personalized advertisements on Google sites, based on recent searches and previous interactions. | 2 years | |
SAPISID | This cookie is used by Google to display personalized advertisements on Google sites, based on recent searches and previous interactions. | 2 years | |
__Secure-3PSIDTS | This cookie collects information about visitor's interactions with Google services and ads. It is used to measure advertising effectiveness and deliver personalised content based on interests. The cookie contains a unique identifier. | 2 years | |
__Secure-1PSIDTS | This cookie collects information about visitor's interactions with Google services and ads. It is used to measure advertising effectiveness and deliver personalised content based on interests. The cookie contains a unique identifier. | 2 years | |
SIDCC | This security cookie is used by Google to confirm visitor authenticity, prevent fraudulent use of login data, and protect visitor data from unauthorized access. | 3 months | |
__Secure-1PSIDCC | This cookie is used for targeting purposes to build a profile of the website visitor's interests in order to show relevant and personalized Google advertising. | 1 year | |
__Secure-3PSIDCC | This cookie is used for targeting purposes to build a profile of the website visitor's interests in order to show relevant and personalized Google advertising. | 1 year | |
1P_JAR | This cookie is a Google Analytics Cookie created by Google DoubleClick and used to show personalized advertisements (ads) based on previous visits to the website. | 1 month | |
NID | Show Google ads in Google services for signed-out users. | 6 months |
Analytics cookies collect information and report website usage statistics without personally identifying individual visitors to Google.
InformationAnalytics cookies collect information and report website usage statistics without personally identifying individual visitors to Google.
Cookie name | Description | Lifetime | Provider |
---|---|---|---|
_dc_gtm | Manage and deploy marketing tags through Google Tag Manager. | 1 year | |
1P_JAR | Gather website statistics and track conversion rates for Google AdWords campaigns. | 1 month | |
AEC | 1 month | ||
ar_debug | Debugging purposes related to augmented reality (AR) functionalities. | 1 month | Doubleclick |
IDE | The IDE cookie is used by Google DoubleClick to register and report the user's actions after viewing or clicking on one of the advertiser's ads with the purpose of measuring the effectiveness of an ad and to present targeted ads to the user. | 1 year | Doubleclick |
ad_storage | Enables storage, such as cookies (web) or device identifiers (apps), related to advertising. | 1 year | |
ad_user_data | Sets consent for sending user data to Google for online advertising purposes. | 1 year | |
ad_personalization | Sets consent for personalized advertising. | 1 year | |
analytics_storage | Enables storage, such as cookies (web) or device identifiers (apps), related to analytics, for example, visit duration. | 1 year |
The introduction of Magento 2 Security extension has opened a new door for business doers, especially Magento online merchants to a safer place in the battle with hackers. With numerous useful features offered by this extension, users are ensured to protect their stores better from being hacked. Among these outstanding features, Blacklist and Whitelist IPs seems to receive much attention from business doers.
Blacklist is a list of IPs which will be blocked when someone trying to log in the store’s admin page. The appearance of Blacklist IPs can remarkably reduce the risk of being signed in by strangers mor malicious hackers.
Whitelist, on the other hand, is a list of IPs which is acceptable to login admin page. Only IPs belonging to the Whitelist IPs have the right to access to the admin page.
In other words, the configuration of Blacklist and Whitelist IPs clearly determines valid or invalid IPs to sign in; consequently reduce dangerous logins from hackers.
Beside restriction from Blacklist IPs, store owners can also set restriction on the number of login attempts for anyone who want to sign in admin page via Brute Force Attack Protection.
First, from Admin Panel, store owners have to navigate Stories > Security > Configuration
. Then on the display page, they can easily see General section. Here they need to turn on this extension by selecting Yes in this field.
After that, admins have to navigate Blacklist/ Whitelist IPs section to start configuring.
In this field, all IPs entered here will be forbidden whenever there is someone use them to login. There are several options can be chosen here regarding the number of IPs that will be forbidden. Admins are enabled to enter one IP, multiple IPs, or a range of IPs. In case there is more than one IP is chosen, each IP will be separated with each other by a comma.
Besides, store owners are allowed to enter forbidden IPs which are in form of wildcard as follows: 10.0.0., 10.0.., 10.0.0. - 123.0.0.*, and so on. The symbol * is a variant which its value ranges from 1 to 255.
On the contrary, every IP which exists in Whitelist box has the right to login admin page. Concerning the number of valid IPs can be entered, admins can choose to fill in one IP, several IPs, or various ranges of IPs. If shop admins want to add more values in this field box, they need to use a comma to separate two IPs with each other.
In addition, there are some forms which admins can empower them to login their management page such as 10.0.0., 10.0.., 10.0.0. - 123.0.0.*, and so on. The symbol * is a variant which its value also ranges from 1 to 255.
Store owners need to be careful when they decide to fill in Blacklist and Whitelist as only IPs presented in Whitelist IPs have the right to log in the admin page. Whereas, IP addresses in Blacklist are blocked. However, Blacklist is given the higher priority. It means that a value which is entered in both list, will be blocked.
In case, shop admins mistyping their IP address into Blacklist field will result in their failure in attempt to sign in admin page. In this situation, they need to use command line and to reset their blacklist with the command: “bin/magento security:reset blacklist”. After that, they need to run another command: “bin/magento cache:flush”. Then, shop admins can sign in their admin page freely as all IPs filled in Blacklist IPs are already deleted when reset. It means that, Blacklist IPs filed has no restricted IPs.
Similar to Blacklist, once store owners want to reset their Whitelist IPs, they have to take two commanding actions as follows: “bin/magento security:reset whitelist” and then “bin/magento cache:flush”.
In case, both Blacklist and Whitelist IPs need to be reset, store owners can use the command: “bin/magento security:reset”. After that, both Blacklist and Whitelist field will be left empty.
In conclusion, Blacklist and Whitelist IPs enable users to make a restriction on IPs which are allowed to sign in their admin page. With this function, shop owners can themselves consider and configure carefully to make a strong protection wall for their stores. That is the reason why apprehensive scenario of being hacked is no longer a nightmare for online merchants. Moreover, with Magento 2 Security by Mageplaza, more highlighted features are also provided to significantly contribute to the store protection. Among these features, it will be a mistake if Login Log is not mentioned. If you want to get more detailed information about this great function, refer here:
Jacker is the Chief Technology Officer (CTO) at Mageplaza, bringing over 10 years of experience in Magento, Shopify, and other eCommerce platforms. With deep technical expertise, he has led numerous successful projects, optimizing and scaling online stores for global brands. Beyond his work in eCommerce development, he is passionate about running and swimming.
Related Post
SWOT Analysis: The Ultimate Tool for Business Growth - Mageplaza
Learn how to use SWOT analysis to identify strengths, weaknesses, opportunities, and threats. Build smarter strategies and drive business growth effectively.
Adobe Commerce SaaS or Magento 3? The Future of Magento - Mageplaza
Discover how Adobe Commerce SaaS is reshaping the future of Magento. Learn the key differences, what Magento 3 really means, and what merchants should expect next.
Review 74 Mageplaza extension updates from April 2025, highlighting Magento 2.4.8 compatibility, Hyvä theme support, and enhanced functionalities.
Social Media Marketing: Your Ultimate Guide to Skyrocketing Engagement - Mageplaza
Discover a step-by-step framework for effective social media marketing. Learn how to optimize content, run ads, track KPIs, and future-proof your strategy across all major platforms.
The Ultimate Guide to Managing Your E-Commerce Website for Maximum Sales - Mageplaza
Discover simple tips to manage your eCommerce website, boost sales, and grow your online business effortlessly. Learn now!
SWOT Analysis: The Ultimate Tool for Business Growth - Mageplaza
Learn how to use SWOT analysis to identify strengths, weaknesses, opportunities, and threats. Build smarter strategies and drive business growth effectively.
Adobe Commerce SaaS or Magento 3? The Future of Magento - Mageplaza
Discover how Adobe Commerce SaaS is reshaping the future of Magento. Learn the key differences, what Magento 3 really means, and what merchants should expect next.
Review 74 Mageplaza extension updates from April 2025, highlighting Magento 2.4.8 compatibility, Hyvä theme support, and enhanced functionalities.
Social Media Marketing: Your Ultimate Guide to Skyrocketing Engagement - Mageplaza
Discover a step-by-step framework for effective social media marketing. Learn how to optimize content, run ads, track KPIs, and future-proof your strategy across all major platforms.
The Ultimate Guide to Managing Your E-Commerce Website for Maximum Sales - Mageplaza
Discover simple tips to manage your eCommerce website, boost sales, and grow your online business effortlessly. Learn now!
SWOT Analysis: The Ultimate Tool for Business Growth - Mageplaza
Learn how to use SWOT analysis to identify strengths, weaknesses, opportunities, and threats. Build smarter strategies and drive business growth effectively.
Adobe Commerce SaaS or Magento 3? The Future of Magento - Mageplaza
Discover how Adobe Commerce SaaS is reshaping the future of Magento. Learn the key differences, what Magento 3 really means, and what merchants should expect next.
Review 74 Mageplaza extension updates from April 2025, highlighting Magento 2.4.8 compatibility, Hyvä theme support, and enhanced functionalities.
Social Media Marketing: Your Ultimate Guide to Skyrocketing Engagement - Mageplaza
Discover a step-by-step framework for effective social media marketing. Learn how to optimize content, run ads, track KPIs, and future-proof your strategy across all major platforms.
The Ultimate Guide to Managing Your E-Commerce Website for Maximum Sales - Mageplaza
Discover simple tips to manage your eCommerce website, boost sales, and grow your online business effortlessly. Learn now!
SWOT Analysis: The Ultimate Tool for Business Growth - Mageplaza
Learn how to use SWOT analysis to identify strengths, weaknesses, opportunities, and threats. Build smarter strategies and drive business growth effectively.
Adobe Commerce SaaS or Magento 3? The Future of Magento - Mageplaza
Discover how Adobe Commerce SaaS is reshaping the future of Magento. Learn the key differences, what Magento 3 really means, and what merchants should expect next.
Make sure your store is not only in good shape but also thriving with a professional team yet at an affordable price.
Get Started