WPThumbs
Themes Plugins By purpose By industry Best-of lists Fix it guides
Free Plugin by Maikuolan v4.2.1

CIDRAM

CIDRAM: A PHP-level CIDR/IP-based firewall solution.

CIDRAM

The facts

Rating
5★ from 12
Active installs
20+
Price
Free
Last updated
20 Aug 2026
Added
Aug 2016
Requires WP
4.8
Tested up to
WP 7.1
Requires PHP
7.2
Downloads
8,197

Our analysis

AI-assisted

CIDRAM is a WordPress plugin designed to enhance website security by blocking requests from undesirable IP addresses. It identifies non-human traffic, such as bots and scrapers, by calculating possible CIDRs of incoming requests and matching them against predefined signature files. This helps to protect your site from unwanted access and potential threats.

The plugin is suitable for users looking to improve their website's security without needing to interact with the database, as it stores settings and customisations as flatfiles. It is particularly useful for site administrators who want to manage and mitigate unwanted traffic effectively.

Best for: Website administrators looking for a straightforward security solution against unwanted traffic.

What it does well

  • Blocks requests from undesirable IP addresses
  • Calculates CIDRs to identify non-human traffic
  • Stores settings as flatfiles, avoiding database interaction
  • Easy to update without affecting default settings
  • Free to use from the WordPress.org directory

Where it falls short

  • Limited information on specific features and capabilities
  • Requires PHP version 7.2 or higher

Verdict

CIDRAM offers a focused approach to website security by blocking undesirable traffic. It may be a good option for those prioritising ease of use and effective protection.

From the developer

Maikuolan's own description of CIDRAM, lightly tidied.

CIDRAM (Classless Inter-Domain Routing Access Manager) is a PHP script designed to protect websites by blocking requests originating from IP addresses regarded as being sources of undesirable traffic, including (but not limited to) traffic from non-human access endpoints, cloud services, spambots, scrapers, etc. It does this by calculating the possible CIDRs of the IP addresses supplied from inbound requests and then attempting to match these possible CIDRs against its signature files (these signature files contain lists of CIDRs of IP addresses regarded as being sources of undesirable traffic); If matches are found, the requests are blocked.

Requirements

  • PHP >= 7.2.0
  • PCRE

Updating

Note: CIDRAM does not interact in any way with your database, and stores its own configuration settings, customisations, and related materials as flatfiles within its own directory. If you’ve not changed any of the default configuration settings and if you’re not using any customisations for this plugin, updating normally via the plugins dashboard, without need for any additional steps, should be sufficient and shouldn’t cause any problems. However, if you’ve modified the configuration settings for CIDRAM, or if you’ve made any customisations, I would recommend making backups of all of these prior to updating, due to that updating will overwrite all settings and customisations (after updating, you can then restore your customisations from your backups). Alternatively, if you update via the CIDRAM front-end updates page, all settings and customisations should be preserved.

Read the full description on the official page →

Tagged as

Alternatives

Other plugins for securing a site.

Really Simple Security

Easily improve site security with WordPress Hardening, Two-Factor Authentication (2FA), Login Protection, Vuln...

Free 3M+ installs 4.9★ (8,862)
Wordfence Security

Firewall, Malware Scanner, Two Factor Auth, and Comprehensive Security Features, powered by our 24-hour team....

Free 5M+ installs 4.7★ (4,983)
Akismet Anti-spam: Spam Protection

The best anti-spam protection to block spam comments and spam in a contact form. The most trusted antispam sol...

Free 5M+ installs 4.7★ (1,186)
Loginizer

Loginizer is a WordPress security plugin which helps you fight against bruteforce attacks.

Free 1M+ installs 4.8★ (1,030)
Safe SVG

Enable SVG uploads and sanitize them to stop XML/SVG vulnerabilities in your WordPress website.

Free 1M+ installs 4.9★ (79)
All-In-One Security

Protect your website investment with All-In-One Security (AIOS) – a comprehensive and easy to use security plu...

Free 1M+ installs 4.7★ (1,715)