Search found 239 matches

by Ciao121
Tue Jul 30, 2013 4:51 pm
Forum: [3.0.x] Support Forum
Topic: how to solve [sec] jussues whithout full uppgrade
Replies: 3
Views: 816

how to solve [sec] jussues whithout full uppgrade

Hi, one of my forums (is old version and I cannot upgrade it now) is affected by a [sec] problem. I'm just writing here a [sec] example (in this way I don't reveal the real [sec] affecting my forum, and so I don't need the solution to the specific problem). If i.e. the sec is: [Sec] Stricter validat...
by Ciao121
Fri Jan 13, 2012 1:04 pm
Forum: [3.0.x] MOD Writers Discussion
Topic: Max parameters sent
Replies: 2
Views: 181

Max parameters sent

I'm here again to ask about a Web application firewall blocking some pages. It's blocking some administration pages (like the one to edit a forum properties) or moderation pages (like when I try to merge two "long" - say 4 pages each - topics). Firewall block those pages with a "Too many parameters"...
by Ciao121
Fri Jan 13, 2012 12:56 pm
Forum: [3.0.x] MOD Writers Discussion
Topic: Web Application Firewall
Replies: 4
Views: 719

Re: Web Application Firewall

A_Jelly_Doughnut wrote:I'm not sure what you gain by doing this kind of sniffing, really. I'd turn it off.
Check was done to avoid this: http://en.wikipedia.org/wiki/HTTP_response_splitting
I disabled check because I think phpbb never uses GET or POST variables in HTTP Header response
by Ciao121
Sat Jan 07, 2012 3:35 pm
Forum: [3.0.x] MOD Writers Discussion
Topic: Web Application Firewall
Replies: 4
Views: 719

Re: Web Application Firewall

Security team (paranoid people) does it; I'll ask them :lol:
by Ciao121
Fri Jan 06, 2012 8:49 pm
Forum: [3.0.x] MOD Writers Discussion
Topic: Web Application Firewall
Replies: 4
Views: 719

Web Application Firewall

Hi, I'm testing a web application firewall and it's blocking many of my pages. Those pages are blocked by a rules that check metacharacters in variables. In the specifical case it's blocking "%0D" (the urlencoded of newline I think). I noticed that phpBB uses two different ways to post forms: 1) app...
by Ciao121
Sat Sep 03, 2011 2:09 pm
Forum: phpBB Discussion
Topic: Spiders and print links
Replies: 13
Views: 1222

Re: Spiders and print links

It's not a group permission, it's a group forum permission. The simplest way to do it is probably to go to Forum roles, edit the Bot Access role (look on the Actions tab), then make sure that all forums have the Bots group set to the Bot Access role. Yeah! That's a great solution!!! It works. Thank...
by Ciao121
Sat Sep 03, 2011 11:18 am
Forum: phpBB Discussion
Topic: Spiders and print links
Replies: 13
Views: 1222

Re: Spiders and print links

That's not true If robots.txt is used then it won't crawl those URLs at all. It's a complete solution. You're right, My mistake :oops:. I'm looking at this "problem" from the point of view of both actors (forum owner and bot owner). robots.txt solve the problem completely for the forum owner, parti...
by Ciao121
Sat Sep 03, 2011 8:51 am
Forum: phpBB Discussion
Topic: Spiders and print links
Replies: 13
Views: 1222

Re: Spiders and print links

Are you sure ? Have you spoofed being a spider/bot? I tried User Agent Switcher , switched to googlebot and yes, the link is still there. Tried on phpbb.com to be sure... just make sure that bots have the Can print topics permission set to No. I thought it, but under permission I can only find a pe...
by Ciao121
Fri Sep 02, 2011 5:02 pm
Forum: phpBB Discussion
Topic: Spiders and print links
Replies: 13
Views: 1222

Re: Spiders and print links

Ok, but the problem is not (or not only) about being penalized by Google. It's about involved resources. On a medium/big site as phpbb.com i.e. with 3.650.662 posts, the web server will serve about 250.000 not useful pages; each time each spider complete a spidering cicle. For a web server maybe thi...
by Ciao121
Fri Sep 02, 2011 4:24 pm
Forum: phpBB Discussion
Topic: Spiders and print links
Replies: 13
Views: 1222

Re: Spiders and print links

IMHO it's like a content duplicate, so it's not useful that a spider grab it.
by Ciao121
Fri Sep 02, 2011 4:06 pm
Forum: phpBB Discussion
Topic: Spiders and print links
Replies: 13
Views: 1222

Spiders and print links

Hi everyone,
when a spider crawl a phpbb site he get links to teh "print view" version of a topic.
I.e.:
http://www.phpbb.com/community/viewtopi ... view=print

Shouldn't this link be removed from a bot?
by Ciao121
Sat Aug 13, 2011 7:54 pm
Forum: [3.0.x] MOD Writers Discussion
Topic: More thane strip_bbcode
Replies: 3
Views: 348

Re: More thane strip_bbcode

Thank for your reply. It doesn't work for me. I found a solution. Maybe not the best but it's ok for my use: $clean_message=preg_replace('#('.preg_quote("[").')(.*)('.preg_quote("]").')#si', '', $data['message']); //This remove bbtags $clean_message=preg_replace('#('.preg_quote("<").')(.*)('.preg_qu...
by Ciao121
Sat Aug 13, 2011 3:32 pm
Forum: [3.0.x] MOD Writers Discussion
Topic: More thane strip_bbcode
Replies: 3
Views: 348

More thane strip_bbcode

Hi all, I'm looking a way to strip bbcodes and text contained inside it from $data['message']. i.e: "[b]hello[/b] This is a test to "This is a test" strip_bbcode allow to only strip out bbcodes like "[b]hello[/b] This is a test to hello This is a test and that's right. But I want to strip out text a...
by Ciao121
Wed Aug 03, 2011 12:37 pm
Forum: [3.0.x] MOD Writers Discussion
Topic: Adding a post from url
Replies: 1
Views: 233

Re: Adding a post from url

I solved changing $my_subject = utf8_normalize_nfc(request_var('subject', '', true)); $my_text = utf8_normalize_nfc(request_var('my_text', '', true)); to $my_subject = utf8_normalize_nfc(utf8_encode($_GET['subject'])); $my_text = utf8_normalize_nfc(utf8_encode($_GET['my_text'])); But maybe it's not ...
by Ciao121
Wed Aug 03, 2011 11:47 am
Forum: [3.0.x] MOD Writers Discussion
Topic: Adding a post from url
Replies: 1
Views: 233

Adding a post from url

Hi, I'm trying to open a new topic from an url. To be clear: http://www.myforum.com/makepost.php?subject=Test&my_text=This is a test correctly creates a new topic. But if I use an accented character in the url, i.e. http://www.myforum.com/makepost.php?subject=Test&my_text=This is à test topic is cre...

Go to advanced search