Changing your PrestaShop admin panel address is a vital security step that prevents bots and unauthorized users from guessing your login page location. Unlike other platforms where you might use a plugin, PrestaShop handles this at the server-file level.
In April 2026, PrestaShop 8 and 9 continue to use this robust method to ensure that even if a hacker knows your password, they can’t easily find where to enter it.
Table of Contents
Why Change the Admin Folder Name?
- Brute Force Protection: Most automated attacks target
/adminor/backoffice. By changing the folder name, you effectively “hide” the door. - Security Through Obscurity: While not a complete security solution, it significantly reduces the noise in your server logs from malicious bots.
- PrestaShop Requirement: During the initial installation, PrestaShop will actually block access to the admin panel until you rename the folder for your own protection.
How to Set a Custom Admin URL (Step-by-Step)
There is no “Save” button inside the admin panel to change its own address. You must do this via an FTP client like FileZilla.
1. Access Your Server Files
Connect via FTP. Navigate to the root directory where your PrestaShop is installed (usually /public_html/).
2. Locate the Current Admin Folder
Look for a folder that starts with “admin” followed by random numbers or letters (e.g., admin123xyz). This is your current back-office path.
3. Rename the Folder
Right-click the folder and select Rename. Choose a name that is unique and hard to guess, but easy for you to remember.
- Good examples:
management_77,office_secure_2026,staff_portal_x. - Avoid:
admin1,login,backoffice.
4. Access the New URL
Once renamed, your old login link will return a 404 Not Found error. To log in, simply type your new address into your browser:
What Happens Behind the Scenes?
PrestaShop is designed to be “folder-aware.” You do not need to edit any configuration files (like parameters.php) or database tables to make this change.
- When you access the new folder, PrestaShop automatically detects the path change and updates its internal routing.
- If you have a caching layer (like LiteSpeed or Cloudflare) on your mybox server, you may need to Clear Cache if the new URL doesn’t load immediately.
2026 Security Tips for Your Admin Panel
| Security Layer | Recommended Action |
| Two-Factor Authentication (2FA) | Enable 2FA in Advanced Parameters ➜ Administration to require a mobile code for entry. |
| IP Whitelisting | If you have a static IP, you can use an .htaccess file inside your new admin folder to only allow your specific IP address. |
| Browser Bookmarks | Don’t rely on memory; bookmark your new admin URL immediately. If you forget it, you’ll have to check your FTP files to find the name again. |
| SSL/HTTPS | Ensure your admin panel is always accessed via HTTPS to protect your credentials from “man-in-the-middle” attacks. |
Summary
Changing your PrestaShop admin address is as simple as renaming a folder. It is a “set it and forget it” task that provides an immediate boost to your store’s security profile.