In offline-mode servers, users can connect using an administrator's exact username. If that administrator disconnects without removing OP privileges, an impersonator could gain control. AdminLock adds an independent security layer on top of Minecraft player identities:
- Normal players can join without registration or login screens.
- Operator accounts can be forced to authenticate via a password.
- Specific custom usernames can be protected manually.
- Protected accounts can be restricted to specific IP addresses.
- Passwords use PBKDF2-HMAC-SHA256 with unique salts and configurable iterations.
- Optimized to consume virtually zero performance overhead during normal gameplay.
✨ Features & Configuration
- Operator Protection: Automatically secures OP accounts when
protectAllOps = true. - Selective Protection: Manually secure specific names via
/adminlock add <player>. - Flexible Registration: Optional or mandatory registration modes for normal players using
allowPlayerRegistrationandrequirePlayerRegistration. - Independent Admin Security: Keeps admin password creation restricted to the console via
/adminlock setpass <player> <password>whenallowAdminSelfRegistration = false. - Security Measures: Includes login timeouts (
loginTimeoutSeconds) and failed attempt lockouts (maxFailedAttempts).
🕹️ Quick Command Reference
/register <password> <confirmPassword>— Register a new account (Permission: Player)/login <password>— Authenticate a protected account (Permission: Player)/changepassword <old> <new>— Change current password (Permission: Player)/adminlock list— List all protected accounts (Permission: Admin)/adminlock info <player>— View status and IP configuration (Permission: Admin)/adminlock add <player>— Manually protect a username (Permission: Admin)/adminlock remove <player>— Remove manual protection (Permission: Admin)/adminlock setpass <player> <password>— Create or replace a password (Permission: Admin)/adminlock resetpass <player>— Delete stored password (Permission: Admin)/adminlock reload— Reload configuration files (Permission: Admin)
📦 Installation & Compatibility
- Install Minecraft Forge 1.20.1 (Forge 47.x build) on your dedicated server.
- Place the
AdminLock.jarfile into the server'smodsfolder. - Start the server once to generate configuration files in
config/adminlock.toml. - Configure settings and set initial operator passwords via console commands.
- Compatibility: Minecraft 1.20.1 | Forge | Dedicated Server (Offline-Mode compatible) | No client-side installation required.
Support the Project
AdminLock is provided free of charge for the community. If you would like to support its continued development and maintenance, voluntary contributions are welcome:
👉 Donate via PayPal

