WoW Signup
One SolarFren account works on both private realms: Burning Crusade 2.4.3 and Wrath of the Lich King 3.3.5a. Signup is HTTPS-only. Each core receives its native SRP6 verifier; passwords are never stored in plaintext.
Create account
3-16 letters or numbers. Password 8-16 characters (client limit). The same uppercase account name is created on both realms. New accounts are normal player accounts; staff access is assigned manually. 5 signup or recovery attempts per hour per address.
Realm details
- WotLK 3.3.5a (12340) — main realm: auth :3724, world :8087, realm SolarFren WotLK PvP.
- TBC 2.4.3 (8606) — legacy side realm: auth :3725, world :8085, realm SolarFren TBC.
- Use the matching client. Retail and clients from another expansion will not connect.
How to connect
- Create the account on the left. It is provisioned on both realms with the same uppercase username and password.
- In your chosen client, open realmlist.wtf and use the matching line:
WotLK: set realmlist solarfren.com
TBC: set realmlist solarfren.com:3725
- Run Wow.exe. Log in with the username and password you just set.
- Pick SolarFren TBC or SolarFren WotLK PvP on the matching client.
How signup is locked down
- HTTPS only, with HSTS. Cookies are Secure, HttpOnly, SameSite=Strict.
- CSRF token on every submit. Hidden honeypot field for bots.
- 5 account attempts per hour per address. Prepared statements only; database users are restricted to the account tables they need.
- Passwords never stored in plaintext. CMaNGOS and AzerothCore each receive their own random SRP6 salt and verifier.
- Email verification and password reset links are sent through the forum SMTP mailer. Staff names are reserved and GM access is assigned manually, never by this public form.
