How to Change the WordPress Login URL
The default WordPress login page at /wp-login.php or /wp-admin is well-known and frequently targeted by bots. Moving your login URL to a custom path is a simple way to reduce automated attack attempts. dotCanada recommends combining this with other security measures for best results.
Using WPS Hide Login
WPS Hide Login is a lightweight plugin that changes your login URL without modifying core files.
- Go to Plugins > Add New and search for WPS Hide Login.
- Click Install Now, then Activate.
- Go to Settings > WPS Hide Login.
- Enter a new login URL slug in the Login URL field. Choose something unpredictable — avoid obvious names like
/loginor/admin. - Set a Redirect URL for anyone who visits the old
/wp-login.phppath. A 404 page or your homepage is a good choice. - Click Save Changes.
Important Notes
- Write down your new login URL immediately and save it somewhere safe. If you forget it, you can recover access by deactivating the plugin via FTP or cPanel File Manager.
- This method is sometimes called security through obscurity — it is helpful but should not replace strong passwords, 2FA, and a firewall.
- dotCanada’s cPanel gives you FTP access if you ever need to deactivate plugins manually.
Questions about login security? Contact our support team and we are happy to help.
100% Satisfaction Guarantee
We're so confident you'll love dotCanada that we offer a 30-day money-back guarantee. Not satisfied? Get a full refund, no questions asked.
Ready to Get Started?
Join thousands of Canadian website owners who trust dotCanada for reliable, fast web hosting.
Get Started Today
