PHP Web Host - Quality Web Hosting For All PHP Applications $35/month $250/year (Unlimited) - $25/month - 200,000 impressions - Your Ad Could be Here - Click For Details
  Login or Register
 • Home • Downloads • Your Account • Forums • 

View next topic
View previous topic


Google
 
Web RavenPHPScripts (This Site)
This forum is locked: you cannot post, reply to, or edit topics.   This topic is locked: you cannot edit posts or make replies.
Author Message
ozbutcher
Worker
Worker


Joined: Jan 17, 2007
Posts: 170

PostPosted: Sat Jan 20, 2007 9:44 pm Reply with quote Back to top

I am the god admin of my site... and just before when I loaded my browser up (mozilla) and wanted to sign out as god admin to test somthing I got banned:

Date & Time: 2007-01-21 04:40:33 UTC GMT +0000
Blocked IP: 203.59.155.*
User ID: OzButcher (2)
Reason: Abuse-Admin
--------------------
User Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.8.1.1) Gecko/20061204 Firefox/2.0.0.1
Query String: burntclan.swisshut.com/admin.php?op=logout
Get String: burntclan.swisshut.com/admin.php?op=logout
Post String: burntclan.swisshut.com/admin.php
Forwarded For: none
Client IP: none
Remote Address: 203.59.155.116
Remote Port: 1471
Request Method: GET
--------------------
Who-Is for IP
203.59.155.116


also... I created another admin superuser for one of my members and when he tried to edit the Admin Edits in the admin center he also gets banned?

please reply if you can help, thanks.
View user's profile Send private message
kguske
Site Admin


Joined: Jun 04, 2004
Posts: 6044

PostPosted: Sat Jan 20, 2007 10:00 pm Reply with quote Back to top

Did you protect those admins and scan for new admins in NukeSentinel?
View user's profile Send private message
FireATST
RavenNuke(tm) Development Team


Joined: Jun 12, 2004
Posts: 633
Location: Ohio

PostPosted: Sat Jan 20, 2007 10:01 pm Reply with quote Back to top

You can protect your ip by placing it in the protected range in NukeSentinel. If your ip stays the same just put it in both sets of boxes. If it changes you can try to add the range it travels from in the sets of boxes, just realize that anyone coming in your site in that range is also protected. Only the God Admin can make edits I believe to the admins of the site.
View user's profile Send private message Visit poster's website MSN Messenger ICQ Number
ozbutcher
Worker
Worker


Joined: Jan 17, 2007
Posts: 170

PostPosted: Sat Jan 20, 2007 10:05 pm Reply with quote Back to top

I had a look... I was protected... I had to erase the .htaccess file on my webserver so I could get back in and delete the ipban in myphpadmin. strange.

I have now protected my other admins...

what ip range should I keep free for myself? I'm not very good with ip addresses.
View user's profile Send private message
ozbutcher
Worker
Worker


Joined: Jan 17, 2007
Posts: 170

PostPosted: Sat Jan 20, 2007 10:17 pm Reply with quote Back to top

btw... have you guys gotten "CGIAuth Setup" to work? I followed all the steps in the readme... up to the point where

"Save this in c:\program files\xampp\htdocs\burntclan\.htaccess"

when I paste in this code:

# -------------------------------------------
# Start of NukeSentinel(tm) admin.php Auth
Code:
# -------------------------------------------
<Files .staccess>
deny from all
</Files>

<Files admin.php>
<Limit GET POST PUT>
require valid-user
</Limit>
AuthName "Restricted by NukeSentinel(tm)"
AuthType Basic
AuthUserFile c:\program files\xampp\htdocs\burntclan\.staccess
</Files>
# -------------------------------------------
# End of NukeSentinel(tm) admin.php Auth
# -------------------------------------------


when I try to sign in... I get some kind of Error 500. I am not using this option atm because I couldnt get it working.
View user's profile Send private message
FireATST
RavenNuke(tm) Development Team


Joined: Jun 12, 2004
Posts: 633
Location: Ohio

PostPosted: Sat Jan 20, 2007 11:18 pm Reply with quote Back to top

here is how you can find out what ip you are using on the net:
Only registered users can see links on this board!
Get registered or login to the forums!


How did you check if you were protected without knowing your ip? Maybe I misunderstood you? Does your ip stay the same each time you get on the net or does it randomly change? Yes, I have gotten the CGIAuth to work, but at the moment I am not using it till I figure out how to have it not affect my sub-domains. Did you do a search here for CGIAuth and the error you were getting?
View user's profile Send private message Visit poster's website MSN Messenger ICQ Number
ozbutcher
Worker
Worker


Joined: Jan 17, 2007
Posts: 170

PostPosted: Sun Jan 21, 2007 2:51 am Reply with quote Back to top

well after I edited the ip ban list in phpmyadmin and removed the .htaccess file I was able to get back into the admin center. I checked the admin rights... I was listed as protected but not my 2 other admins. I also remember that I was protected... (just didnt know what the protection meant until I posted here) Smile

I'll have to try the admin auth problem again because I can't remember the exact error.
View user's profile Send private message
jakec
Site Admin


Joined: Feb 06, 2006
Posts: 3038
Location: United Kingdom

PostPosted: Sun Jan 21, 2007 5:00 am Reply with quote Back to top

You shouldn't need to remove the .htaccess file, just remove your IP address from the file.
View user's profile Send private message
ozbutcher
Worker
Worker


Joined: Jan 17, 2007
Posts: 170

PostPosted: Sun Jan 21, 2007 6:24 am Reply with quote Back to top

ah right Smile

do I need to create another blank .htaccess now or will sentinel create another if someone tried to hack in?
View user's profile Send private message
FireATST
RavenNuke(tm) Development Team


Joined: Jun 12, 2004
Posts: 633
Location: Ohio

PostPosted: Sun Jan 21, 2007 7:42 am Reply with quote Back to top

There is actually a section in Nuke Sentinel called Protected Range Menu. If you click on that you will see a list of choices then on the right hand side of the page such as Add Protected Range. There is where you can protect your ip.
View user's profile Send private message Visit poster's website MSN Messenger ICQ Number
Display posts from previous:       
This forum is locked: you cannot post, reply to, or edit topics.   This topic is locked: you cannot edit posts or make replies.

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
Forums ©
 

All logos and trademarks in this site are property of their respective owner.
The comments are property of their posters, all the rest © 2002-2011 by Raven

You can syndicate our news using the file xml

CSE HTML Validator Helped Clean up This Page! [Valid RSS] valid RSS 2.0 Valid robots.txt Stop Spam Harvesters, Join Project Honey Pot

Website engines core code is © copyright by PHP-Nuke but has been heavily patched and modified by myself and others.
PHP-Nuke is a free software released under the GNU/GPL.


:: fisubice phpbb2 style by Daz :: PHP-Nuke theme by www.nukemods.com ::
:: fisubice Theme Modified by the RavenNuke™ Team ::

:: W3C CSS Compliance Validation :: W3C HTML 4.01 Transitional Compliance Validation ::

zerosum