Support

Admin Tools

#24939 Admin Tools: Whitelisted IP Blocked

Posted in ‘Admin Tools for Joomla! 4 & 5’
This is a public ticket

Everybody will be able to see its contents. Do not include usernames, passwords or any other sensitive information.

Environment Information

Joomla! version
n/a
PHP version
n/a
Admin Tools version
n/a

Latest post by nyocca on Thursday, 14 April 2016 02:37 CDT

nyocca
 Thank you for your excellent, dependable extensions, including but not limited to Admin Tools for Joomla.

The Auto Blocking feature in Admin Tools blocked an IP address in the IP whitelist (my own).

It did so because of repeated Admin Query String errors (about 15) within a short period of time.

I am familiar with reentering my site and how I can adjust my settings to avoid this in the future. I am not having any trouble accessing my site at this time. However, I wish to help you by pointing out this item to you, and I simply want to thank you and Nicholas, again, for making such great products.

nicholas
Akeeba Staff
Manager
The IP whitelist is completely ignored unless the option Web Application Firewall, Configure WAF, "Allow administrator access only to IPs in Whitelist" is set to Yes.

Nicholas K. Dionysopoulos

Lead Developer and Director

🇬🇷Greek: native 🇬🇧English: excellent 🇫🇷French: basic • 🕐 My time zone is Europe / Athens
Please keep in mind my timezone and cultural differences when reading my replies. Thank you!

nyocca
I see.

When "Allow administrator access only to IPs in Whitelist" is set to Yes, then the Admin String events (maybe all events) are ignored and not logged if they originate from a whitelisted IP. I suppose the "Auto Blocking" is triggered by logged events.

In the documentation, I had read:

"Since Admin Tools 2.1.7, irrespective of whether this option is enabled, IPs added to the administrator IP whitelist are fully white-listed as far as Admin Tools is concerned. This means that no security measure will be applied against them. Please place only very well trusted IPs in this list! If an attack is launched from this IP, it will not be blocked by Admin Tools!"

I believe the documentation of this, for the most part, seemed completely correct, and yet, as you also correctly point out, the autoblocking should block even a whitelisted IP, unless "Allow administrator access only to IPs in Whitelist" is set to Yes.

If I understand you correctly, this is a feature that seems to be perhaps overlooked in the documentation.

Thank you, Nicholas.

Support Information

Working hours: We are open Monday to Friday, 9am to 7pm Cyprus timezone (EET / EEST). Support is provided by the same developers writing the software, all of which live in Europe. You can still file tickets outside of our working hours, but we cannot respond to them until we're back at the office.

Support policy: We would like to kindly inform you that when using our support you have already agreed to the Support Policy which is part of our Terms of Service. Thank you for your understanding and for helping us help you!