Advertisement:

Author Topic: Forum Firewall  (Read 165402 times)

Offline butchs

  • SMF Hero
  • ******
  • Posts: 1,584
  • The Jarred of spam bots, lost 7GB bandwidth!
    • EastCoastRollingThunder
Re: Forum Firewall
« Reply #20 on: January 15, 2011, 09:45:56 PM »
Installed it on RC3 and getting a blank page for Forum Firewall settings on all themes.

It is made for the default theme so if you have a custom theme that may be the issue.  Otherwise I need more info...   :-[

OK, installed on a small test forum and all is well. I do have a question about one feature.
If I install it on my main site, we have more than one admin. If I enable Admin IP Confirmation, will it block out the other admins if I input mine, or can I input multiple comma separated IPs ?

It will block them if they have different internet providers.  Something to look at for future versions...   :'(

FYI - I recommend that this mod is run in logging mode for a few days and make adjustments before turning on blocking mode.  I recommend this just to make sure you do not block your members.  8)

* K@ is confused...

"By downloading and/or using this MOD you agree to adhere to the following conditions for all versions of the Bad Behavior mod:"

Is that a typo?
:P
If I'm not mistaken, it includes the Bad Behavior mod, thus the reason for having to agree to its terms as well.

It was a typo...  BB is a separate mod.   :o

How many resources does this mod consume... let's say monthly?

Not sure what you mean by that question.   :-X

But the mod is coded with speed and memory conservation in mind.  :laugh:

Those who wish they could criticize those who do.

Offline busterone

  • SMF Hero
  • ******
  • Posts: 2,092
  • Gender: Male
  • Devil Dog
    • The Demon's Den
Re: Forum Firewall
« Reply #21 on: January 15, 2011, 09:57:59 PM »
It will block them if they have different internet providers.  Something to look at for future versions...   :'(

FYI - I recommend that this mod is run in logging mode for a few days and make adjustments before turning on blocking mode.  I recommend this just to make sure you do not block your members.  8)
Ok, yep, that is an idea for future development. For now, once I install it on the live site and do eventually set it for blocking mode, I will leave the Admin IP Confirmation turned off. 
Thanks.  :)

Online Kindred

  • The Mean One
  • Project Manager
  • SMF Master
  • *
  • Posts: 39,693
  • Gender: Male
  • Red Sox WIN!
    • wagner999 on Facebook
    • Kindred-999 on GitHub
    • www.linkedin.com/in/wdwagner/ on LinkedIn
    • @Kindred_999 on Twitter
Re: Forum Firewall
« Reply #22 on: January 15, 2011, 10:02:16 PM »
Yup... Just before approval, I bumped into a problem backed on a forum that ha been upgraded since yabb and thus has some odd artifacts in database data.  Looking forward to th update to fix it. :)
Please do not PM, IM or Email me with support questions.  You will get better and faster responses in the support forums.  Thank you.

Online Bigguy

  • Support Specialist
  • SMF Super Hero
  • *
  • Posts: 11,603
  • Gender: Male
  • Be nice, or else....
    • SMF Helper
Re: Forum Firewall
« Reply #23 on: January 16, 2011, 02:47:03 AM »
Congrats Butchs, glad to see it approved. Works great on my forum and has for awhile now. :)

Offline henrik1782

  • Jr. Member
  • **
  • Posts: 252
  • SMF 2.0 RC5/Curve
Re: Forum Firewall
« Reply #24 on: January 16, 2011, 07:36:32 AM »
Hi Butch....

Thanks for a nice mod. Mods that extend security is always appreciated.

I have the Enotify mod installed and get a lot of error messages regarding this mod.

Bypass attempt!
 for /index.php?PHPSESSID=7d31a4b254d2f144b620a4bacdb65264&action=enotify

Bypass attempt!
 for /index.php?topic=287.msg590


Is this something in the configuration of your mod or something else....?
My favorite mods: Forum Firewall, httBL, MessagePreviewOnHover, BoardHover Mod, VB Style Board Index, Separate Replies and Views Column, Realtime clock by Joker, ENotify, Topic Solved.

Offline butchs

  • SMF Hero
  • ******
  • Posts: 1,584
  • The Jarred of spam bots, lost 7GB bandwidth!
    • EastCoastRollingThunder
Re: Forum Firewall
« Reply #25 on: January 16, 2011, 08:39:48 AM »
Thanks Bigguy.

Yup... Just before approval, I bumped into a problem backed on a forum that ha been upgraded since yabb and thus has some odd artifacts in database data.  Looking forward to th update to fix it. :)

I wrote something I think will work yesterday but I still have to test it...  I usually run it a week live before publishing.  If you like, I can email you a copy and you can see if it works?
Those who wish they could criticize those who do.

Offline butchs

  • SMF Hero
  • ******
  • Posts: 1,584
  • The Jarred of spam bots, lost 7GB bandwidth!
    • EastCoastRollingThunder
Re: Forum Firewall
« Reply #26 on: January 16, 2011, 08:52:37 AM »
Hi Butch....

Thanks for a nice mod. Mods that extend security is always appreciated.

I have the Enotify mod installed and get a lot of error messages regarding this mod.

Bypass attempt!
 for /index.php?PHPSESSID=7d31a4b254d2f144b620a4bacdb65264&action=enotify

Bypass attempt!
 for /index.php?topic=287.msg590


Is this something in the configuration of your mod or something else....?

If you are not behind a proxy then uncheck "Enable Bypass Protection".  If you are you need to fix the information.  ie read "Admin Domain Name" for details.
Those who wish they could criticize those who do.

Offline henrik1782

  • Jr. Member
  • **
  • Posts: 252
  • SMF 2.0 RC5/Curve
Re: Forum Firewall
« Reply #27 on: January 16, 2011, 09:10:31 AM »
Thanks...

Henrik
My favorite mods: Forum Firewall, httBL, MessagePreviewOnHover, BoardHover Mod, VB Style Board Index, Separate Replies and Views Column, Realtime clock by Joker, ENotify, Topic Solved.

Offline DoctorMalboro

  • Language Moderator
  • SMF Hero
  • *
  • Posts: 9,089
  • Gender: Male
  • うまいいいいいい!!!!!
    • @DoctorMalboro on Twitter
    • Personal website
Re: Forum Firewall
« Reply #28 on: January 16, 2011, 09:19:22 AM »
How many resources does this mod consume... let's say monthly?
Not sure what you mean by that question.   :-X

But the mod is coded with speed and memory conservation in mind.  :laugh:

I mean if it does too many queries to the database... you know, some mods can be heavy and eat a lot of resources... that's what i'm asking.

Online Kindred

  • The Mean One
  • Project Manager
  • SMF Master
  • *
  • Posts: 39,693
  • Gender: Male
  • Red Sox WIN!
    • wagner999 on Facebook
    • Kindred-999 on GitHub
    • www.linkedin.com/in/wdwagner/ on LinkedIn
    • @Kindred_999 on Twitter
Re: Forum Firewall
« Reply #29 on: January 16, 2011, 10:08:08 AM »
hey butchs,

Give it a day or two to confirm on your test site and then send it to me. I'll validate for you before you update the whole package (hopefully it's just a file overwrite instead of a mod re-install?) :)
Please do not PM, IM or Email me with support questions.  You will get better and faster responses in the support forums.  Thank you.

Offline henrik1782

  • Jr. Member
  • **
  • Posts: 252
  • SMF 2.0 RC5/Curve
Re: Forum Firewall
« Reply #30 on: January 16, 2011, 11:15:39 AM »
Hi Butch...

When mailing warrents like

 Invalid ip!
 for /index.php?action=login2

i would be much appreciated if the IP address was mentioned to.

This mod works great and captures some of the intruders that are not covered by Honeypot and Spammer mod.

Best regards.
My favorite mods: Forum Firewall, httBL, MessagePreviewOnHover, BoardHover Mod, VB Style Board Index, Separate Replies and Views Column, Realtime clock by Joker, ENotify, Topic Solved.

Offline henrik1782

  • Jr. Member
  • **
  • Posts: 252
  • SMF 2.0 RC5/Curve
Re: Forum Firewall
« Reply #31 on: January 16, 2011, 11:24:33 AM »
Hi Butch...

I have to ask and hopefully more will learn from it  ;)

What does this warning mean:

 Hack:  Redirect!
 for /index.php?wwwRedirect

 Hack:  Repeated!
 for /index.php?action=enotify


Best regards
Henrik Poulsen
My favorite mods: Forum Firewall, httBL, MessagePreviewOnHover, BoardHover Mod, VB Style Board Index, Separate Replies and Views Column, Realtime clock by Joker, ENotify, Topic Solved.

Online NanoSector

  • Support Specialist
  • SMF Hero
  • *
  • Posts: 9,758
  • Gender: Male
    • rick2288 on Facebook
    • Yoshi2889 on GitHub
    • Test Server
Re: Forum Firewall
« Reply #32 on: January 16, 2011, 11:50:22 AM »
Hi Butch...

I have to ask and hopefully more will learn from it  ;)

What does this warning mean:

 Hack:  Redirect!
 for /index.php?wwwRedirect

 Hack:  Repeated!
 for /index.php?action=enotify


Best regards
Henrik Poulsen
That's normal.

The ?wwwRedirect is because the forum needed to get www. before the actual address.

The ?action=enotify is also nothing to worry about since eNotify needs to load from it.
My Mods / Mod Builder - A tool to easily create mods / Support team member

Offline henrik1782

  • Jr. Member
  • **
  • Posts: 252
  • SMF 2.0 RC5/Curve
Re: Forum Firewall
« Reply #33 on: January 16, 2011, 12:29:06 PM »
Thanks butch...
My favorite mods: Forum Firewall, httBL, MessagePreviewOnHover, BoardHover Mod, VB Style Board Index, Separate Replies and Views Column, Realtime clock by Joker, ENotify, Topic Solved.

Online NanoSector

  • Support Specialist
  • SMF Hero
  • *
  • Posts: 9,758
  • Gender: Male
    • rick2288 on Facebook
    • Yoshi2889 on GitHub
    • Test Server
Re: Forum Firewall
« Reply #34 on: January 16, 2011, 12:35:01 PM »
Thanks butch...
Wut...?

No problem, I guess?
My Mods / Mod Builder - A tool to easily create mods / Support team member

Offline butchs

  • SMF Hero
  • ******
  • Posts: 1,584
  • The Jarred of spam bots, lost 7GB bandwidth!
    • EastCoastRollingThunder
Re: Forum Firewall
« Reply #35 on: January 16, 2011, 12:35:18 PM »
Impostor.   ;D Some want it some do not but if you remove "Redirect|" from the xss and injection list it will go away.  Remember to leave one "|" between each phrase.
Those who wish they could criticize those who do.

Offline henrik1782

  • Jr. Member
  • **
  • Posts: 252
  • SMF 2.0 RC5/Curve
Re: Forum Firewall
« Reply #36 on: January 16, 2011, 01:03:36 PM »
Sorry...  ;)

Thanks goes to Simple Series team

Best regards

My favorite mods: Forum Firewall, httBL, MessagePreviewOnHover, BoardHover Mod, VB Style Board Index, Separate Replies and Views Column, Realtime clock by Joker, ENotify, Topic Solved.

Offline butchs

  • SMF Hero
  • ******
  • Posts: 1,584
  • The Jarred of spam bots, lost 7GB bandwidth!
    • EastCoastRollingThunder
Re: Forum Firewall
« Reply #37 on: January 16, 2011, 03:44:06 PM »
hey butchs,

Give it a day or two to confirm on your test site and then send it to me. I'll validate for you before you update the whole package (hopefully it's just a file overwrite instead of a mod re-install?) :)

Sorry but you will need to uninstall and reinstall the new mod version.  But not a DB uninstall.

Please PM me your email.
Those who wish they could criticize those who do.

Offline Bancherd

  • Jr. Member
  • **
  • Posts: 283
    • Thai Koi Keepers' Home Page
Re: Forum Firewall
« Reply #38 on: January 16, 2011, 05:46:36 PM »
Interesting mod  :), I will give it a spin.

Offline THE BRA1N

  • Jr. Member
  • **
  • Posts: 129
  • Gender: Male
    • The Third Rail Forum
Re: Forum Firewall
« Reply #39 on: January 17, 2011, 07:47:24 AM »
Installed it on RC3 and getting a blank page for Forum Firewall settings on all themes.

It is made for the default theme so if you have a custom theme that may be the issue.  Otherwise I need more info...   :-[


Well, I get a blank white page with the default theme instead of a firewall settings page. There were no conflicts when installing with package installer. No error in the error log about it so I don't know where to start looking. What sort of info do you need?