promotional bannermobile promotional banner

AdminLock - Secure Operator Authentication

AdminLock is a server-side authentication mod for Forge 1.20.1 on non-premium servers. It protects OP accounts with a password using a hybrid approach and requires no client-side installation.

In offline-mode servers, users can connect using an administrator's exact username. If that administrator disconnects without removing OP privileges, an impersonator could gain control. AdminLock adds an independent security layer on top of Minecraft player identities:

  • Normal players can join without registration or login screens.
  • Operator accounts can be forced to authenticate via a password.
  • Specific custom usernames can be protected manually.
  • Protected accounts can be restricted to specific IP addresses.
  • Passwords use PBKDF2-HMAC-SHA256 with unique salts and configurable iterations.
  • Optimized to consume virtually zero performance overhead during normal gameplay.

✨ Features & Configuration

  • Operator Protection: Automatically secures OP accounts when protectAllOps = true.
  • Selective Protection: Manually secure specific names via /adminlock add <player>.
  • Flexible Registration: Optional or mandatory registration modes for normal players using allowPlayerRegistration and requirePlayerRegistration.
  • Independent Admin Security: Keeps admin password creation restricted to the console via /adminlock setpass <player> <password> when allowAdminSelfRegistration = false.
  • Security Measures: Includes login timeouts (loginTimeoutSeconds) and failed attempt lockouts (maxFailedAttempts).

🕹️ Quick Command Reference

  • /register <password> <confirmPassword> — Register a new account (Permission: Player)
  • /login <password> — Authenticate a protected account (Permission: Player)
  • /changepassword <old> <new> — Change current password (Permission: Player)
  • /adminlock list — List all protected accounts (Permission: Admin)
  • /adminlock info <player> — View status and IP configuration (Permission: Admin)
  • /adminlock add <player> — Manually protect a username (Permission: Admin)
  • /adminlock remove <player> — Remove manual protection (Permission: Admin)
  • /adminlock setpass <player> <password> — Create or replace a password (Permission: Admin)
  • /adminlock resetpass <player> — Delete stored password (Permission: Admin)
  • /adminlock reload — Reload configuration files (Permission: Admin)

📦 Installation & Compatibility

  1. Install Minecraft Forge 1.20.1 (Forge 47.x build) on your dedicated server.
  2. Place the AdminLock .jar file into the server's mods folder.
  3. Start the server once to generate configuration files in config/adminlock.toml.
  4. Configure settings and set initial operator passwords via console commands.
  5. Compatibility: Minecraft 1.20.1 | Forge | Dedicated Server (Offline-Mode compatible) | No client-side installation required.

Support the Project
AdminLock is provided free of charge for the community. If you would like to support its continued development and maintenance, voluntary contributions are welcome:
👉 Donate via PayPal

The AdminLock - Secure Operator Authentication Team

profile avatar
  • 3
    Projects
  • 36
    Downloads

Independent Minecraft server-side mod developer focused on crafting lightweight, high-performance tools to make server management easier for everyone. I build mods out of a passion for clean code and

Donate

More from SamuZone