Ticket #341 (closed defect: fixed)
403 errors because of wildcards in referrer spam list
| Reported by: | yodahome@… | Owned by: | unassigned |
|---|---|---|---|
| Priority: | normal | Milestone: | 1.3.4 |
| Component: | administration | Version: | 1.1.6.2 |
| Severity: | normal | Keywords: | 403 referrer spam block unwanted |
| Cc: |
Description (last modified by BrianKoontz) (diff)
Well, I consider this a bug but judge for yourself:
I just spend about 10 hours looking for a problem when certain pages and functions like /edit /info etc. on certain pages suddenly returned 403 errors. (I actually phoned my webhosters because I thought of it as a server problem) It turned out that all the pages didn't show up because I opened them from a Wikka page called "AssassinsKontakt". As you can see the magic word 'Kontakt' (=contact) caused the problem because the spamlist in .htaccess effectively blocks all connections from a referrer url that includes the listed words (e.g. 'Kontakt'). You might want to re-consider the words used in your list or whether only the name of the top level domain should be checked. This way it's much too strict for my taste and it's confusing although I (of course) understand the necessity to block spam.