Support

Admin Tools

#13530 Locked out of site, backend & FTP

Posted in ‘Admin Tools for Joomla! 4 & 5’
This is a public ticket

Everybody will be able to see its contents. Do not include usernames, passwords or any other sensitive information.

Environment Information

Joomla! version
n/a
PHP version
n/a
Admin Tools version
n/a

Latest post by nicholas on Friday, 14 September 2012 03:14 CDT

user68235
Mandatory information about my setup:

Have I read the related troubleshooter articles above before posting (which pages?)? Yes
Have I searched the tickets before posting? Yes
Have I read the documentation before posting (which pages?)? Yes
Joomla! version: 2.5
PHP version: (unknown)
MySQL version: (unknown)
Host: CloudAccess
Admin Tools version: current

Description of my issue:

Hi Nicholas - great support strings - thank you.

I installed Admin Tools a couple of days ago after discovering that spammers had taken advantage of my summer vacation to bombard a site I am developing with garbage comments (being new to Joomla and website design in general, I had been procrastinating dealing with security issues. Paid the price, too.).

I successfully set up a secret login URL and password but apparently did not save the page when I entered my IP into the whitelist and changed the lock-out settings from 3 per hour to something more generous. Yesterday, I noticed that I was being bounced out of AdminTools whenever I clicked 'save' or tried to navigate from Admin Tools to another component (without logging out). Then I got a password request to re-enter Admin Tools and although I entered the same password I had written down, I got bounced to the home page. Since then, whenever I try to view even the front end of the site I get an error message that the computer has failed to connect to the server and the operation has timed out. CloudAccess confirms that they have no problem viewing the site, and that it is loading quickly. I saw your instructions for disabling the WAF but am also unable to connect via FTP (I get the same 'timed out' error there).

Last night, my father (a proper developer, unlike myself) was kind enough to login using my user credentials from a different location and had no problems doing so. He discovered that I had apparently not saved the WAF settings with my IP whitelisted and added my IP to the whitelist for me. He also found that I had in fact been blacklisted and removed my IP from the blacklist. He also noticed that the reasons given for the blacklisting were admin queries that sounded, over the phone, like simple efforts to call up other components (alas, being unable to get in I can't give you any better information than that). These changes made no difference; moreover, I have now waited more than the 1 day that WAF defaults say I should have been locked out and yet I still cannot access the home page, FTP or the administrator.

What am I doing wrong? I have cleared all cache and cookies on each of 3 different browsers and 2 different computers (1 PC, 1 Mac). Noone else seems to be having trouble viewing the site. Any suggestions would be much appreciated; if need be I can take advantage of CloudAccess' backup restore but would like to understand the problem so I know how to avoid it again.

Thanks,
Cheryl

nicholas
Akeeba Staff
Manager
If you get accidentally locked out by Admin Tools, please follow the troubleshooting instructions, especially the information regarding automatically banned IP address.

Please note that Admin Tools can't lock you out of FTP. If you get a timeout error trying to connect to FTP you are either entering the wrong connection information, trying to use the wrong connection method (FTP, SFTP and FTPS are three different protocols and not all of them are supported by all hosts) or you have a DNS issue with your machine or ISP. Seeing that you tried with 1 PC and 1 Mac, I suspect the problem is with the DNS servers of your ISP. On the Mac click open Network Preferences. Click your connection (Ethernet or Wi-Fi) and then click on the "Advanced..." button towards the lower right. Click on the DNS tab. Click the + button and add the following IPs:
8.8.8.8
208.67.222.222
8.8.4.4
208.67.220.220

and click on OK. This will change your connection to use Google DNS and OpenDNS to resolve hostnames. These are much more stable than any ISP I've seen.

Your problem was that you hadn't added your own IP in the whitelist. This caused repeated security exceptions trying to access the backend of your site. It ended up automatically blocking your IP. The IP block has precedence over the whitelist. You have to clear it as per the instructions on the link I posted.

He also noticed that the reasons given for the blacklisting were admin queries that sounded, over the phone, like simple efforts to call up other components

This is typical behaviour of script kiddies, running a hacking script targeting old versions of extensions which may or may not even be installed on your site. Nothing to worry too much.

Nicholas K. Dionysopoulos

Lead Developer and Director

🇬🇷Greek: native 🇬🇧English: excellent 🇫🇷French: basic • 🕐 My time zone is Europe / Athens
Please keep in mind my timezone and cultural differences when reading my replies. Thank you!

Support Information

Working hours: We are open Monday to Friday, 9am to 7pm Cyprus timezone (EET / EEST). Support is provided by the same developers writing the software, all of which live in Europe. You can still file tickets outside of our working hours, but we cannot respond to them until we're back at the office.

Support policy: We would like to kindly inform you that when using our support you have already agreed to the Support Policy which is part of our Terms of Service. Thank you for your understanding and for helping us help you!