Support

Admin Tools

#15741 Admin Tools logging internal Ip address

Posted in ‘Admin Tools for Joomla! 4 & 5’
This is a public ticket

Everybody will be able to see its contents. Do not include usernames, passwords or any other sensitive information.

Environment Information

Joomla! version
n/a
PHP version
n/a
Admin Tools version
n/a

Latest post by nicholas on Friday, 12 April 2013 04:48 CDT

jjst135
Mandatory information about my setup:

Have I read the related troubleshooter articles above before posting (which pages?)? Yes
Have I searched the tickets before posting? Yes
Have I read the documentation before posting (which pages?)? Yes
Joomla! version: 1.5.26
PHP version: (unknown)
MySQL version: (unknown)
Host: (optional, but it helps us help you)
Admin Tools version: latest

Description of my issue:

Hi,

I have a client who tries to login to the backend. I use the admin whitelist to grant access to the backend. Their external IP is added tot the whitelist. But now when they try to log in Direct Admin detects their internal IP (192.168.*.*) and does not grant them access to the backend. How is it possible that their internal IP is detected by Admin Tools?

This client uses a proxy for internet access. When they turn this off they do get acces to the backend. So the proxy somehow sends their internal IP?

Adding their internal IP adresses tot he whitelist is probably not very safe, because other could also (easily?) somehow fake/use these IP's?

Is it possible that the request form their proxy sends multiple IP addresses and Admin Tools picks maybe the first one?

Any thoughts on this? Tanks!

nicholas
Akeeba Staff
Manager
Admin Tools 2.2.10 (the last version compatible with Joomla! 1.5) does not support the HTTP headers used by proxies to report the IP of the client the request was forwarded for. This was fixed much later. Unfortunately there is no solution for your problem, unless you upgrade their site to Joomla! 2.5 or 3.x and use the latest version of Admin Tools (yeah, I know, not likely to happen).

Nicholas K. Dionysopoulos

Lead Developer and Director

πŸ‡¬πŸ‡·Greek: native πŸ‡¬πŸ‡§English: excellent πŸ‡«πŸ‡·French: basic β€’ πŸ• My time zone is Europe / Athens
Please keep in mind my timezone and cultural differences when reading my replies. Thank you!

jjst135
Oeps, I provided the wrong version of Joomla. This happens on:

Joomla 2.5.9
Admin Tools Pro 2.5.3`

So this should not happen with this version?

jjst135
Screenshot Admin Tools Blocking Administration...

nicholas
Akeeba Staff
Manager
No, it should not happen unless you have a broken proxy which sends an X-Forwarded-For HTTP header even when the IP belongs to a private subnet.

Nicholas K. Dionysopoulos

Lead Developer and Director

πŸ‡¬πŸ‡·Greek: native πŸ‡¬πŸ‡§English: excellent πŸ‡«πŸ‡·French: basic β€’ πŸ• My time zone is Europe / Athens
Please keep in mind my timezone and cultural differences when reading my replies. Thank you!

jjst135
OK, thanks. I will notify my client that he should check their proxy settings... Thanks for the info.

nicholas
Akeeba Staff
Manager
You're welcome!

Nicholas K. Dionysopoulos

Lead Developer and Director

πŸ‡¬πŸ‡·Greek: native πŸ‡¬πŸ‡§English: excellent πŸ‡«πŸ‡·French: basic β€’ πŸ• My time zone is Europe / Athens
Please keep in mind my timezone and cultural differences when reading my replies. Thank you!

Support Information

Working hours: We are open Monday to Friday, 9am to 7pm Cyprus timezone (EET / EEST). Support is provided by the same developers writing the software, all of which live in Europe. You can still file tickets outside of our working hours, but we cannot respond to them until we're back at the office.

Support policy: We would like to kindly inform you that when using our support you have already agreed to the Support Policy which is part of our Terms of Service. Thank you for your understanding and for helping us help you!