- Add Show Inline Help support in component options for Joomla 4.1
- Added .xsl to the allowed file types in front- and backend directories in the .htaccess Maker, NginX Conf Maker and web.config Maker
- [LOW] Fixed displaying Rescue URL info inside message shown to blocked users
- [LOW] Rare concurrency issue saving critical files into the database could cause an exception during a page load
- Automatically allow TinyMCE plugins when “Disable client-side risky behavior in frontend static content” is enabled.
- Better message when Allowed Domains kicks in to help you figure out what went wrong and how to fix it
- [MEDIUM] Defining redirections with query parameters could result in the wrong redirection taking place
- [MEDIUM] Nginx Maker: Fixed fatal error under PHP 8 and "Reverse Proxy / Load Balancer IPs" are used
- [MEDIUM] Upgrading from Admin Tools 6 with non-empty Allowed Domains would break the migrated site
- Improved handling of empty multi-selection fields in the Configure WAF page
- Removed “Convert all links to HTTPS” feature; it has stopped making sense since circa 2015.
- [HIGH] Cannot edit component Options on PHP 8 if the site had Admin Tools 5.1.0 to 5.7.2 installed in the past
- [HIGH] Emails not being sent on security exception (gh-260)
- [LOW] PHP File Change Scanner: Marked As Safe filter not applied viewing scan results (ak-36399)
- [MEDIUM] 404Shield: PHP 8 error when legacy data is stored in the configuration
From the makers of Akeeba Backup Core/Professional and Admin Tools Core, this is the enhanced release of Admin Tools, available on a subscription basis. On top of what Admin Tools Core already offers, Admin Tools Professional has these exclusive features:
- Security tightening .htaccess (Apache), nginx.conf (NginX) and web.config (IIS) file generator with a simple yet powerful user interface
- Restrict administrator with a secret URL parameter
- Web Application Firewall to block common exploits (SQL injection, XSS, DFI, RFI, malicious user agent, CSRF/spam-bot protection, uploads scanner etc)
- Bad word filtering
- IP Whitelisting for the administrator section
- IP Blacklisting
- Geographic block (deny access to specific countries/continents)
- Modification of Generator meta tag and other sensitive HTTP headers
- Email on administrator login
- Block front-end Super Administrator log-in
- Block Super Administrator user modification
- Block extensions installation
- Block visual fingerprinting (tmpl, template and tp URL parameters)
- Integration of the Bad Behavior anti-spam library
- Project Honeypot IP blacklist integration
- Automatic IP blocking of repeat offenders
- Email notifications of all detected security issues
- URL redirections (exclusive support for query parameters!)
- Scheduled site maintenance operations