Hi,
I gave access to a manager on backend who have to work with Invoice manager from https://www.joomlathat.com
Regulary, that person is blocked by Admintools.
I cannot choose the "Never block these IPs" options as she often has a different IP.
But I have added this user in the "Protected users" of the "Configure WAF".
I have also added in the " WAF Exceptions" :
- Component : com_invoices
View : all
Query parameter : all
But this user is still regular blocked.
Here's an example of the query blocked (seen in the "Blocked Request Log") :
- 2021-09-08 13:47:50 EDT
208.114.129.112
Admin Query String
https://mydomain.com/administrator/index.php?option=com_invoices&controller=invoices&task=load_items&limitstart=0&status_id=&filter_currency_id=0&cal_start=&cal_end=&filter_order=i.id&filter_order_Dir=DESC&type=1&keywords=rque&_=1631120633191
Or another one is :
- 2021-09-08 12:05:09 EDT
208.114.129.112
Admin Query String
https://mydomain.com/administrator/index.php?option=com_invoices&controller=invoices&task=load_items&limitstart=0&status_id=&filter_currency_id=0&cal_start=&cal_end=&filter_order=i.id&filter_order_Dir=DESC&type=1&keywords=l&_=1631115256794
I need your advice so this user will not be blocked again, using com_invoice on backend.
Is there any solution for that ?
Thanks in advance for any advice.
Stephan Herby PAO Production New Caledonia - Canada - France