[info] $DeniedReferers not present in 9.1.x.x?
Post new topic   Reply to topic   Printer Friendly Page     Forum IndexSecurity
Author Message
RedGerry
Silver Supporter


Joined: Jun 29, 2004
Posts: 448
Location: Alloa, Scotland

PostPost subject: [info] $DeniedReferers not present in 9.1.x.x?
Posted: Mon Sep 11, 2006 5:18 pm
Reply with quote

I've loaded up the fabulous DF_MSAnalysis module onto my home site at RedGerry.com. That's within the past week and already the filth has started appearing on my referrers list.

Earlier today I want into the config.php and added the offending domain into the $DeniedReferers array. On checking back this afternoon he had reappeared. Only at this point, and due to the fact I've just created a brand new site, did I realise that the config.php has now moved to the include directory. Also in this latest version there is no array for $DeniedReferers. So two bits to this question:

1/ Is $DeniedReferers now scrapped?
2/ Is there an alternative way to exclude offensive domains solely after a google boost?

As some will already know I run a couple of sites with young girls football teams, latest being under 13 years of age. I'm not installing DF_MSAnalysis on these just now but would like to. Read the previous post from another members probs with spamming from Russia. Love the idea of purchasing an Uzi and going for a world tour... some people are just scum.

_________________
gerry @ redgerry.com
redgerry.com - Home of RG_Sports
scottishwomensfootball.co.uk
scottishjuniorfootball.co.uk

RedGerry's server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS)
Suse9.3/Apache2.6.8-24.14/MySQL4.0.21Max/PHP4.3.8/CVS on Athlon64
Back to top
View user's profile Visit poster's website ICQ Number MSN Messenger
DJ Maze
Developer


Joined: Apr 19, 2004
Posts: 5668
Location: http://tinyurl.com/5z8dmv

PostPost subject: Re: $DeniedReferers not present in 9.1.x.x?
Posted: Mon Sep 11, 2006 6:02 pm
Reply with quote

includes/classes/security.php line 58

Security::check_domain() checks if a domain is listed as a denied referer domain (3) or email/referer domain (4)

To insert a denied referer domain
Code:
INSERT INTO `dragonfly`.`cms_security` SET ban_string='domaintoban.com', ban_type=3;

To insert a denied email+referer domain
Code:
INSERT INTO `dragonfly`.`cms_security` SET ban_string='domaintoban.com', ban_type=4;

The ban string may be a regular expression to ban a whole range of bad stuff like '.*viagra.*'


DJ Maze's server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS)
Fedora 12 / 2.2.15 / 5.1.47 / 5.3.3 / CVS
Back to top
View user's profile Visit poster's website Yahoo Messenger
RedGerry
Silver Supporter


Joined: Jun 29, 2004
Posts: 448
Location: Alloa, Scotland

PostPost subject: Re: $DeniedReferers not present in 9.1.x.x?
Posted: Mon Sep 11, 2006 9:01 pm
Reply with quote

wow,, didn't know about this table/feature at all.

OK I've utilised that info so hopefully that's them 'uzi'd

_________________
gerry @ redgerry.com
redgerry.com - Home of RG_Sports
scottishwomensfootball.co.uk
scottishjuniorfootball.co.uk

RedGerry's server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS)
Suse9.3/Apache2.6.8-24.14/MySQL4.0.21Max/PHP4.3.8/CVS on Athlon64
Back to top
View user's profile Visit poster's website ICQ Number MSN Messenger
Display posts from previous:   
Post new topic   Reply to topic   Printer Friendly Page     Forum IndexSecurity All times are GMT
Page 1 of 1


Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You cannot download files in this forum

stopsoftwarepatents.eu petition banner
User Info [x]

Welcome Anonymous

Nickname
Password
(Register)

Last CVS commits [x]

Languages [x]

Community [x]

Support for DragonflyCMS in a other languages:

Deutsch
Español

X-links [x]
UltraEdit Browse Happy logo Firefox MySQL PostgreSQL Valid CSS! Valid XHTML 1.0! Unicode Encoded Badge NukeBiz Resources Raven DragonflyCMS Dedicated Now InsideSupport Lampe Berger

Preview theme [x]
Each user can view the site with a different theme.
Themes marked with a * also change the forum look.


You are seeing squares or questionmarks on this page?

All content of this website is copyrighted by the Creative Commons NC-SA
The logos and trademarks used on this site are the property of their respective owners
We are not responsible for comments posted by our users, as they are the property of the poster.
Our server runs on a P3 1.2GHz with 512MB RAM with no accelerators
Support GoPHP5.org
This page generated in 0.4457 seconds with 19 DB Queries in 0.0417 seconds
Memory Usage: 2.87 MB
Interactive software released under GNU GPL, Code Credits, Privacy Policy