Support

Admin Tools

#35718 access forbidden by rule

Posted in ‘Admin Tools for Joomla! 4 & 5’
This is a public ticket

Everybody will be able to see its contents. Do not include usernames, passwords or any other sensitive information.

Environment Information

Joomla! version
n/a
PHP version
n/a
Admin Tools version
n/a

Latest post by on Wednesday, 29 September 2021 20:17 CDT

[email protected]

I'm on nginx, and i've configured nginx.conf via the tool.

On the front-end is all ok.

On the back-end i cannot insert images in contents.... via the image button in description text or via che button in the images and link section.

I receive "Forbidden. You do not have permission to access this document." error on the page.

And 

GET /administrator/index.php?option=com_media&view=images&tmpl=component&asset=88&author=42&fieldid=jform_images_image_intro&ismoo=0&folder= HTTP/2.0

16385#0: *1477710 access forbidden by rule

on the server logs.

nicholas
Akeeba Staff
Manager

This comes from your server's protection rules, not Admin Tools. Most likely your host is using the Apache module mod_security2 with the Atomic ruleset. If I recall correctly they do have a rule which disallows the folder query name parameter in certain contexts and I believe this is the rule you just hit. Please contact your host. They can disable that rule for you.

When they disable that rule for you, you will most likely see that they added a line to your site's main .htaccess file. If you want to use Admin Tools' .htaccess Maker copy that line to the .htaccess Maker's area for rules to add at the bottom of the file. This way regenerating your .htaccess will not lose that rule override.

Nicholas K. Dionysopoulos

Lead Developer and Director

🇬🇷Greek: native 🇬🇧English: excellent 🇫🇷French: basic • 🕐 My time zone is Europe / Athens
Please keep in mind my timezone and cultural differences when reading my replies. Thank you!

[email protected]

Thanks for your fast reply.

I'm the host, this is mine vps, and i've installaed joomla and admintools on some domain on the same server.

At the moment apache is fully disabled for this domain like all the other domain in production state (this is a test and not a production site)

nicholas
Akeeba Staff
Manager

If you are not using Apache, which web server are you using?

Nicholas K. Dionysopoulos

Lead Developer and Director

🇬🇷Greek: native 🇬🇧English: excellent 🇫🇷French: basic • 🕐 My time zone is Europe / Athens
Please keep in mind my timezone and cultural differences when reading my replies. Thank you!

System Task
system
This ticket has been automatically closed. All tickets which have been inactive for a long time are automatically closed. If you believe that this ticket was closed in error, please contact us.

Support Information

Working hours: We are open Monday to Friday, 9am to 7pm Cyprus timezone (EET / EEST). Support is provided by the same developers writing the software, all of which live in Europe. You can still file tickets outside of our working hours, but we cannot respond to them until we're back at the office.

Support policy: We would like to kindly inform you that when using our support you have already agreed to the Support Policy which is part of our Terms of Service. Thank you for your understanding and for helping us help you!