NaturalHistoryMuseum / scratchpads2

Scratchpads 2.0
http://scratchpads.org
GNU General Public License v2.0
199 stars 83 forks source link

More WAF issues? #6616

Closed edwbaker closed 1 year ago

edwbaker commented 1 year ago

Screenshot 2022-12-08 at 15 50 11

Getting this while trying to do some typical stuff on BioAcoustica - caused by the web application firewall?

edwbaker commented 1 year ago

Incidentally, this happened when I was submitting a form which had Chinese characters - not sure that should be suspicious though.

therobyouknow commented 1 year ago

Yes sorry about that!

Can you advise me on the particular steps you were doing just before it happened.

I was able to trace another problem to the firewall, using the steps they gave me: https://github.com/NaturalHistoryMuseum/scratchpads2/issues/6595#issuecomment-1320094594 and as a result I've advised our firewall folks to make adjustments.

If I can get some further information about your steps then I am thinking I could ask them to adjust the firewall for those also.

therobyouknow commented 1 year ago

P.S. were you still able to do what you needed to do: Granted, a firewall notice came up though it asked for some input a bit like a captcha form to check user authenticity. Did you enter the captcha and were you able to proceed? How often does it happen? If it's more than a one-off then I think that would push the case to adjust the firewall.

edwbaker commented 1 year ago

I was approving some user accounts, and had a few tabs open.

Entering the captcha did nothing - just gave me the same captcha page back with a new one to complete (tried about 10 times).

The site is currently completely down so I can't check anything...

therobyouknow commented 1 year ago

With https://bio.acousti.ca/ site back online can resume looking into this issue.

therobyouknow commented 1 year ago

@edwbaker following your steps: I've created 2 accounts robtest and robtest2 via the usual registration process. I've logged in as admin to check them. So far no firewall issue.

Can you check now please?

edwbaker commented 1 year ago

It seems to be working now, but I cannot replicate it exactly as I deleted some user accounts including the one that I assume caused the issue (we have had similar issues with the WAF being unhelpful with unusual characters on audioblast).

I'll close for now and reopen if it happens again.