Ravens PHP Scripts: Forums
 

 

View next topic
View previous topic
Post new topic   Reply to topic    Ravens PHP Scripts And Web Hosting Forum Index -> v2.30.01 RN Security Issues
Author Message
pureliving
Worker
Worker



Joined: Dec 01, 2008
Posts: 180

PostPosted: Fri Mar 06, 2009 6:23 am Reply with quote

Recently updated my website; went perfect(i think), updated database tables, updated nuke sentinal db tables, went through the confns instructions for configuration of nuke sentinal, setup the CGIAuth and bam problems started.

I tried accessing my admin; added the CGIAuth login details, accepted, but then i got redirect to my homepage; no admin.
I have been battling this issue a few days now.

Within sentinal i remember only changing 1 other setting and that was the blocker config for blocker 10 - admin, and placed a forward url as my homepage, but since i did this i have not been able to access my admin, or even my homepage; i have been restricted altogether.

I then removed my ip address's from both my .htaccess file, and from within the nsnst_blocked_ips table; clicked to browse through the nsnst_blockers, blocker ten, admin, and noticed the settings had been activated with my homepage as forward url.
As these settings were changed for the blocker, they are making the whole blocking my ip issue to arise over and over again, but battling my brains i just can not figure out what the default settings were for the admin blocker.

Would anyone be able to help me as to what the settings are so i may change the table settings; hopefully to prevent this happening again?

Also so i do not have any admin blocking issues for myself, and possibly for other admins in the future, how can i secure myself within sentinal?

It would really be appreciated to hear your advice, as time is really tight, and sentinal is just holding me back.

Thankyou sincerely.
xx Bless xx
 
View user's profile Send private message
fkelly
Former Moderator in Good Standing



Joined: Aug 30, 2005
Posts: 3312
Location: near Albany NY

PostPosted: Fri Mar 06, 2009 10:09 am Reply with quote

On my admin blocker settings I just use "email admin" under the activate drop down. I leave forward to blank. Try that.

I am having a hard time interpreting the rest of your note ... it sounds like something may have gone wrong in the cgiauth setup but I can't tell. The confns instructions were significantly improved for RN2.30 but they still can be tricky to follow and need to be followed exactly in the sequence written.
 
View user's profile Send private message Visit poster's website
pureliving







PostPosted: Fri Mar 06, 2009 12:20 pm Reply with quote

I understand what you are saying, but i can't actually access my admin.php area, to do any manual changes through sentinal admin, so i am left altering the table.

Ok say for instance i click upon nsnst_blockers, then browse, then press on edit for the blocker 10, admin, this is what i see presently:

Quote:

REMOVED ON CONFUSION OF SECURITY



what would i actually change this to, as however above is configured, is causing me to not be able to access admin, and my admin page redirects to my homepage; like would i need to alter the numbers within the activate and htaccess fields.

My ip address changes every time i establish a connection, but always remains (REMOVED ON CONFUSION OF SECURITY) at the beginning, is there a secure way to protect myself with sentinal for me to be able to access admin all the time without problems.

xx Bless xx
 
Display posts from previous:       
Post new topic   Reply to topic    Ravens PHP Scripts And Web Hosting Forum Index -> v2.30.01 RN Security Issues

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You can attach files in this forum
You can download files in this forum


Powered by phpBB © 2001-2007 phpBB Group
All times are GMT - 6 Hours
 
Forums ©