Support

Admin Tools

#26434 Increase in WAF security exceptions after AdminTools update 4.0.2

Posted in ‘Admin Tools for Joomla! 4 & 5’
This is a public ticket

Everybody will be able to see its contents. Do not include usernames, passwords or any other sensitive information.

Environment Information

Joomla! version
n/a
PHP version
n/a
Admin Tools version
n/a

Latest post by agnamr on Tuesday, 01 November 2016 10:18 CDT

agnamr
 I am getting very frequent security exceptions recorded on my website since I updated to 4.0.2, such as
IP Address: 162.193.22.234 (IP Lookup: IP Lookup)
Reason: WAF Blacklist
The associated entry in the log looks like this:
2016-10-31 20:48:29 162.193.22.234 WAF Blacklist http://www.structuresolver.com/undefined?1477946445518
12345678910.
I don't think that most of these are genuine security exceptions. I can generate these exceptions myself by just going to my website www.structuresolver.com, not including the /undefined? etc.
Occasionally I get a complete red screen security warning as shown in the attached file.

I also attach an image of my WAF Blacklist settings for AdminTools. The second rule was the one recommended by you to block the latest reported security exception in Joomla 3.6.2 until I could update Joomla and AdminTools (which I have done). The first was added, I think, by the AdminTools4.0.2 update. It appears that if I unpublish both of these settings, I do not get the security exceptions. Can you explain this, or advise what I should do?
Thanks

tampe125
Akeeba Staff
Hello Alice,

such WAF rules were added to protect old versions of Joomla that can not be updated.
If you have updated your Joomla site to the latest version you can disable them, since they are not needed.

Davide Tampellini

Developer and Support Staff

🇮🇹Italian: native 🇬🇧English: good • 🕐 My time zone is Europe / Rome (UTC +1)
Please keep in mind my timezone and cultural differences when reading my replies. Thank you!

agnamr
Thanks, I have done that.
Mary

Support Information

Working hours: We are open Monday to Friday, 9am to 7pm Cyprus timezone (EET / EEST). Support is provided by the same developers writing the software, all of which live in Europe. You can still file tickets outside of our working hours, but we cannot respond to them until we're back at the office.

Support policy: We would like to kindly inform you that when using our support you have already agreed to the Support Policy which is part of our Terms of Service. Thank you for your understanding and for helping us help you!