Feature Suggestions
Please provide here your suggestion for new functionality for Plesk. We encourage you to review and vote for suggestions of others. The top-ranked suggestions are likely to be included in the next versions of Plesk.
Please write in English so that voters from all over the world can read and support your request.
Off-topic posts will be removed from here
- or
2099 results found
-
Upload backups to Dropbox with timestamps
It would be nice to have backups uploaded to dropbox with a timestamp in the name, for example: dropboxbackup201911234
8 votesThank you for your input! We will consider this functionality for the upcoming releases if it becomes popular enough.
Everyone, please continue voting for this feature if you consider it important.
—
IG -
Implement backup/recovery option for Google Authenticator
There's no backup/recovery option implemented. Users can lose/change mobile phones. Google Authenticator don't
have any standard procedure to recover.If it is not possible,
add a big fat note warning that users should take a screenshot and print out the page (and store it at a safe place)8 votes -
Server load balancing / multi-host
Hi,
We'd love to see the possibility of horizontal scaling on Plesk for WordPress websites. Meaning, we'd like to host 1 WP website, on different instances (servers), in different geographical areas.
This setup would need to share 1 DB (i.e. Amazon RDS), but pull the assets from geographically different servers. Many times a CDN is not enough.
Note: this is not a failover request (https://plesk.uservoice.com/forums/184549-feature-suggestions/suggestions/5284370)
Thanks
8 votesThank you for your input! We will consider this functionality in upcoming releases if it will be popular.
Everyone, please continue voting for this feature if you consider it important.
—
IG -
Add Amazon Linux AMI support
Add ability to install Plesk on Amazon Linux AMI.
For a discussion to gather feedback: why would prefer to choose Amazon Linux for Plesk prior to other Linux distributions?
8 votesThank you for your input! We will consider this functionality in upcoming releases if it will be popular.
I would very much appreciate if you add some explanation comments why you prefer Amazon Linux instead of already supported OSes (like CentOS/Debian/RedHat/Ubuntu). Why it is important for you?
Everyone, please continue voting for this feature if you consider it important.
— AY
-
check passwords against Pwned Passwords API
Plesk should check user typed passwords against Pwned Passwords API
https://haveibeenpwned.com/API/v2
that way you could further improve systems running Plesk against Brute-Force attacks - and Dictionary attacks
WordFence plugin for WordPress is already offering this, checking WordPress administrator passwords against https://haveibeenpwned.com/API/v2
it shouldn't be too much work to compare Plesk password hash between Plesk and https://haveibeenpwned.com/API/
I would like to use this feature for all services (FTP, E-Mail, Plesk, WordPress, etc.)
It makes a lot of sense to do this, there are no drawbacks
it should be option that users can enable/disable
if you don't need it, you can disable it
leave it enabled, your server will be more securePlesk should check user typed passwords against Pwned Passwords API
https://haveibeenpwned.com/API/v2
that way you could further improve systems running Plesk against Brute-Force attacks - and Dictionary attacks
WordFence plugin for WordPress is already offering this, checking WordPress administrator passwords against https://haveibeenpwned.com/API/v2
it shouldn't be too much work to compare Plesk password hash between Plesk and https://haveibeenpwned.com/API/
I would like to use this feature for all services (FTP, E-Mail, Plesk, WordPress, etc.)
It makes a lot of sense to do this, there are no drawbacks
it should be option that users can enable/disable
if you don't need it, you can disable…8 votesThank you for your input. We will consider this functionality in upcoming releases, if it will be popular.
Everyone, please continue voting for this feature if you consider it important.—
IG -
Deny access to all dot files by default
A lot of web applications that are either built or simply installed on a website use dot files and folders, whether those be .htaccess, .git, .env, etc.
Generally speaking dot files and folders are used to store either sensitive files or backend configuration which you would never want users to be able to access.
By default Apache has some protection built-in to restrict accessing dot files, but Nginx does not. This creates a potential security risk, for example I might install a web application or build one which has dot files in the public root, these most likely would be .htaccess and .git folders. Now if the site was running using Apache I probably wouldn't need to worry, but if I disable Apache and use only Nginx, these dot files and folders become accessible, and there is no guarantee that I would remember or even know I needed to deny access to dot files, I might simply assuming Plesk or the web server would do it for me. Just today I went through all of our websites and added additional Nginx configuration to restrict access to dot files and folders, but this means for months someone may have been able to read .htaccess files and .git folders, giving them insight into potentially sensitive information. I imagine I'm not the only one who didn't consider that Nginx doesn't deny access to dot files, so imagine how many similar cases are out there.
To address this issue I am proposing that Plesk add new default configuration to each website in the Nginx config which denies access to dot files, and then provide an option in the "Apache & nginx Settings" screen to enable access to dot files, this in the rare case where the administrator might want dot files to be accessible (maybe Plesk is running on an internal dev environment or something similar).
A lot of web applications that are either built or simply installed on a website use dot files and folders, whether those be .htaccess, .git, .env, etc.
Generally speaking dot files and folders are used to store either sensitive files or backend configuration which you would never want users to be able to access.
By default Apache has some protection built-in to restrict accessing dot files, but Nginx does not. This creates a potential security risk, for example I might install a web application or build one which has dot files in the public root, these most likely would…
8 votesThank you for your input! We will consider this functionality in upcoming releases if it will be popular.
Everyone, please continue voting for this feature if you consider it important.
—
IG -
Possibility to choose version for upgrade in WordPress toolkit.
Currenly in WordPress Toolkit it is possible upgrade to the last version only.
It will be good if user can choose to what version perform the upgrade.8 votesThank you for your input! We will consider this functionality in upcoming releases if it will be popular.
Everyone, please continue voting for this feature if you consider it important.
—
IG -
Add let's encrypt for webmail.alias
Currently, it is impossible to secure the webmail for the alias.
Please allow the possibility to issue Let's Encrypt SSL for the wbmail of the domain alias.8 votes -
Plesk for Windows: support for custom disable_functions on per domain basis
At the moment, disablefunctions do not work per domain in Plesk for Windows because disablefunctions can be specified only in php.ini, not in .user.ini.
Plesk utilizes .user.ini for custom PHP directives only.Please, implement support for custom disable_functions (and other functions that cannot be specified in.user.ini) on per domain basis in Plesk for Windows.
Thank you.
8 votesThank you for your input! We will consider this functionality in upcoming releases if it will be popular.
Everyone, please continue voting for this feature if you consider it important.—
IG -
8 votes
-
Allow disabling SPF checks for a specific domains
Right now spf hook checks incoming mail for all domains if it is enabled in Tools & Settings > Mail Server Settings.
There is no simple way to disable it for some domains/subscriptions that may not need it present.8 votesThank you for your input! We will consider this functionality in upcoming releases if it will be popular.
Everyone, please continue voting for this feature if you consider it important.—
IG -
create, edit, and delete scheduled tasks through the XML API.
the ability to create, edit, and delete scheduled tasks through the XML API seems essential.
8 votesThank you for your input! We will consider this functionality in upcoming releases if it will be popular.
Everyone, please continue voting for this feature if you consider it important.
—
IG -
suggest you to add possibility to use multiple email addresses in watchdog email notifications settings ("send email to" field )
suggest you add the possibility to use multiple email addresses in watchdog email notifications settings ("send email to" field )
8 votesThank you for your input! We will consider this functionality in upcoming releases, if it will be popular.
Everyone, please continue voting for this feature if you consider it important.
—
IG -
Compile nginx with ngx_http_auth_request_module
or provide a way to use nginx-full.
8 votesThank you for your input! We will consider this functionality in upcoming releases, if it will be popular.
Everyone, please continue voting for this feature if you consider it important.
And you can use your own compiled nginx with method described in https://talk.plesk.com/threads/how-to-compile-nginx-with-additional-modules-pagespeed-cache_purge-headers-more-and-others.340640/
—
IG -
ability to change IP for particular domain
Currently, in Plesk it possible to change IP only on subscription level. As a result, the IP is changed for all domains under subscription. The ability to change IP on domain level would be very useful
8 votesThank you for your input. We will consider this functionality in upcoming releases, if it will be popular.
Everyone, please continue voting for this feature if you consider it important.
—
IG -
upload local backups to the remote FTP storage
Upload local (old) backups to the remote FTP storage.
8 votes-- PD
-
dmark. dkim and spf in record TXT
DMARC. DKIM and SPF propose txt recod in template
8 votes -
add a pagination on file manager
if there are thousands of files in a folder it takes too long to load the list..
8 votesThank you for your input! We will consider this functionality in upcoming releases if it will be popular.
Everyone, please continue voting for this feature if you consider it important.
— AY
-
FTP storage setting for backups for multiple subscriptions.
When added the FTP server storage parameter in the settings of the Plesk panel (tools&settings - Backup Manager - FTP Storage Settings) for the backup.
Automatically distribute this FTP repository to all subscriptions as a place for backup by default.8 votes -
Configuring the Default Remote Access Policy for MS SQL and PostgreSQL via UI
Right now, it is possible to manage Access Policy only for MySQL Database Servers only: https://docs.plesk.com/en-US/onyx/administrator-guide/database-servers/database-hosting-preferences.72875/
It would be good to manage Remote Access Policy for MS SQL and PostgreSQL via Plesk UI too.
8 votes
- Don't see your idea?