Better to secure the whole directory. For example, if your index.php includes some other PHP files, then some hacker might be able to access those PHP files without authentication. But if you secure the whole directory, all the files will be secure.
Diego