/index.php
/login.php
/xml_rpc/server.php
/system/contact/view_all/
/system/home/index/
/system/home/*.php
/system/controllers/contact_controller.php
define('SOMEVARIABLE', 'VALUEOFSOMEVARIABLE');
<?php defined('SOMEVARIABLE') or die('No direct script access.');
<Files ~ "\.(tpl|php)$">
deny from all
</Files>
<Files ~ "(login|index)\.(php)$">
allow from all
</Files>
<Files ~ "\/xml_rpc\/server\.php">
allow from all
</Files>