PDA

View Full Version : Add-On Releases - DnP Firewall : SEO Friendly Double-Protection Layers against Flood / DoS / Spam Bots


silveryhat
08-24-2009, 10:00 PM
http://img25.imageshack.us/img25/9200/motm.gif


http://img198.imageshack.us/img198/7139/dnpfirewall.jpg
DnP Firewall Gateway Demo (http://www.silveryhat.com/delynie/)
*To test Front-End Layer protection : It's the page shows up when you first enter the site.
*To test 2nd Layer Protection : Pass Front-End Layer protection, then Tap (not hold) F5 continuously nonstop for 10 seconds.



DnP Firewall Gateway was designed to stand against the massive DoS attack targeted DnP Network? few years ago. Upon installed, it has been reducing the severe level of many incidents and preventing my forum from being overload ever since. It also nearly blocks away all the automated bots that come to register for spamming on the forum. The last release was almost 3 years ago and there had never been any update to the MOD. Version 0.3 came with many issues though it was very stable. I decide to give another upgrade and simplify the code a little for another release. Don't hesitate to install DnP Firewall Gateway for your forum and hope you will find it as useful as I do.

*This Firewall is compatible with All PHP Forum systems and Search Engines Friendly*


1 - Use this simple Firewall to protect your ( vBulletin / phpBB / SMF / IPB / etc.. ) forum

Deny unwanted Bots
Reduce Spamming
Block Flooding Attack
Partially weaken DoS
Prevent automated malicious scripts pass through2 - Side features
Increase your Adsense Impression and Revenue.
Act as an Introduction page for your forum.
SEO Friendly. (DnP Network has this firewall installed for more than 2 years. Google Search : silveryhat (http://www.google.com/search?q=silveryhat+site:silveryhat.com) returns 29,000+ results)
No query executed / Extremely fasthttp://img36.imageshack.us/img36/4936/35321986.jpg


3 - Installation for vBulletin Forum
a. Upload all files from package to your forum_root
b. Open global.php using Notepad. (Why global.php ? Because global.php is the core file of vBulletin system , it is also the initial startup file that calls important database queries and keeps sensitive information. The Firewall comes before any of the processes run to prevent direct damage to the forum. That is the reason why DnP Firewall does not use any hook or come as an automatic plugin like other MOD)
Find
// identify where we are
define('VB_AREA', 'Forum');Add BEFORE
if(file_exists('dnp_fw.php')){require_once('dnp_fw .php');} Simply remove this line to deactivate the firewall

c. Save and Reupload global.php to your server. Done!
3b - Upgrade
Simply perform step a.Upload all files from package to your forum_root *If you have custom layout, do not overwrite dnp_fw_template.php*

4 - Note

Eventhough the DnP Firewall Gateway could reduce the damage of a flooding attack, it does not guarantee that all of the negative affects of an attack could be avoided. I do not hold any responsibility for such matters. As an administrator you should know that there is not software firewall that could be as effective as a hardware firewall.

You are free and encouraged to modify the Layout of the Gateway page in dnp_fw_template.php but please respect the copyrights notice of the author. Additional templates are also available if you'd want different look. (How to change DnP Firewall Template (http://www.silveryhat.com/delynie/how-to-change-dnp-firewall-template-6984.html))

http://img193.imageshack.us/img193/5001/43494395.jpg http://img193.imageshack.us/img193/2053/29863888.jpg http://img193.imageshack.us/img193/5194/92989592.jpg http://img193.imageshack.us/img193/9864/60091982.jpg http://img193.imageshack.us/img193/7945/89648049.jpg
http://img193.imageshack.us/img193/8619/65625704.jpg http://img268.imageshack.us/img268/5809/44917866.jpg

Free layouts for DnP Firewall Gateway at Firewall Templates (http://www.silveryhat.com/delynie/f143/)

DnP Firewall Gateway also acts as an Introduction page for your forum if you fill it up with rich information content of your site. Adsense or other Ads could be placed here to maximize your revenue since every visitor will need to pass by this Introduction page. It almost 100% guarantees that your CTR or Page Impression will raise quickly.

5 - Compability

This MOD can be used with almost any system that runs PHP. Compatible with all vBulletin forum from 3.0.x to 3.8.x

It should not conflict with any existing MODs on your forum.

DnP Firewall Gateway consumes very little server resource because on the surface, it is just a simpe webpage. It does not execute any query, therefore your database will not be affected under any circumstances by this MOD.

DnP Firewall Gateway could together be used with InV-Firewall Script (http://www.silveryhat.com/delynie/f141/c-i-t-t-ng-l-inv-firewall-script-cho-di-n-3106.html) to act as doubled-firewall system that 2 x the strength against Flood /DoS Attack with bonus of denying malicious query and tracking access.

DnP Firewall Gateway is also compatible with DnP Instant! AJAX/SEO Musicbox & News (https://vborg.vbsupport.ru/showthread.php?t=216098) smart anti-flood protection that brings extra power to the firewall. The 3 firewalls, DnP Firewall Gateway - InV-Firewall Script (http://www.silveryhat.com/delynie/f141/c-i-t-t-ng-l-inv-firewall-script-cho-di-n-3106.html) and Smart Anti-Flood from DnP Instant! AJAX/SEO Musicbox & News (https://vborg.vbsupport.ru/showthread.php?t=216098) can be used altogether to triple the strength.

6 - History Log v1.4
Optimize firewall structure
Optimize 2nd-layer protection v1.3
Add 2nd layer protection
3 more options for 2nd layer protection in config file v1.2 Beta
Improve Firewall Stability
Add Domain option
Separate config file7 - Useful links
Setup Domain List for DnP Firewall Gateway (http://www.silveryhat.com/delynie/f142/setup-domain-list-for-dnp-firewall-gateway-6993.html)
How to change DnP Firewall Template (http://www.silveryhat.com/delynie/f142/how-to-change-dnp-firewall-template-6984.html)
What are the Search Engines allowed by DnP Firewall Gateway ? (http://www.silveryhat.com/delynie/f142/what-are-the-search-engines-allowed-by-dnp-firewall-gateway-6990.html)
Branding-Free License of DnP Firewall Gateway (http://www.silveryhat.com/delynie/f142/branding-free-license-of-dnp-firewall-gateway-7013.html)
Detail information about DnP Firewall 2nd Layer Protection (http://www.silveryhat.com/delynie/f142/detail-information-about-dnp-firewall-2nd-layer-protection-7019.html)
Templates collection (http://www.silveryhat.com/delynie/f143/)

[Original topic can be found at http://www.silveryhat.com/delynie/f142/dnp-firewall-help-your-forum-fight-flood-attack-dos-spam-unwated-bots-6985.html]

yahoooh
08-25-2009, 06:06 PM
how to make it gorup user depend on
?
and also you should think about google and others bot will be affected by this way

silveryhat
08-25-2009, 06:16 PM
how to make it gorup user depend on
?
and also you should think about google and others bot will be affected by this way

Good questions, and I think many have the same so here's your answer :rolleyes:

1 - A firewall itself does not need to differ usergroups. When you first come to a forum you are not logged in, therefore how you could have a usergroup? It is also not necessary because any established connection is potential to be a problem, even the admin account if it falls into wrong hand. It's better safe than sorry my friends. And, without checking usergroups, the firewall remains intact to any database query, that is the goal of this firewall as well.

2 - For Google and other bots, you missed

http://img200.imageshack.us/img200/80/61103220.jpg

Example : DnP Network has installed this firewall for last few years. Google Search : DnP Network (http://www.google.com/search?q=+site:www.silveryhat.com+dnp+network) returns 2,800+ results. Yahoo Search (http://search.yahoo.com/search?p=dnp+network&vs=silveryhat.com) returns 5,600+ results. And of course, the new-born Bing Search (http://www.bing.com/search?q=dnp+network+site%3Asilveryhat.com), only returns 190+ results at the moment :(

You can find more details at What are the Search Engines allowed by DnP Firewall Gateway ? (http://www.silveryhat.com/delynie/f142/what-are-the-search-engines-allowed-by-dnp-firewall-gateway-6990.html)

saadessa
08-25-2009, 06:24 PM
thank you for this great hack
i will try and comeback

digicom
08-25-2009, 06:49 PM
Excellent Installed :up:

silveryhat
08-25-2009, 06:54 PM
Please kindly check for any bugs so I can quickly improve the MOD :)

Kolbi
08-25-2009, 08:58 PM
I think the fact that a guest has to pass this gateway many off them will leave the site before entering it.
CanĀ“t you install a automatically redirecting?

There are the advantages of this mod if you think about vbfirewall?

mark370
08-25-2009, 10:07 PM
Maybe a bug ?

we have installed this on our main site and test site, on the test site we have no problems at all :)
but on our main site the gateway page and our login page keeps redirecting to and fro each other and will not let you login.

it does this with or without using www in the url.

any ideas ?

silveryhat
08-25-2009, 11:35 PM
I think the fact that a guest has to pass this gateway many off them will leave the site before entering it.
Can?t you install a automatically redirecting?

There are the advantages of this mod if you think about vbfirewall?

what vBFirewall does is to sanitize malicious query sent to the forum. It does not block any Flood attack , or Spamming or DoS. Even though it's named vBfirewall, its function is totally different than Dnp Firewall Gateway. It's also recommended to use both to empower the security level of your forum.

Automatically redirecting is absolutely a No. The reason is if a bad connection approaches the forum, we don't want to transfer it inside. And we cannot differ a good and bad connection. So again, better safe than sorry.

Maybe a bug ?

we have installed this on our main site and test site, on the test site we have no problems at all :)
but on our main site the gateway page and our login page keeps redirecting to and fro each other and will not let you login.

it does this with or without using www in the url.

any ideas ?

Is there a list of functions that are disabled on the main site?

silveryhat
08-26-2009, 03:01 AM
Version 1.2 is ready for download ;)

In this version, the firewall has been improved on stability. The config file is separate.

New option allows domain restriction, which means firewall only accepts requests from this domain (security purpose). The setting can be changed via dnp_fw_config.php

Please kindly follow upgrade instruction on first post if you already install DnP Firewall Gateway

kiwinz
08-26-2009, 04:06 AM
Sweet, Im Checking this out !

silveryhat
08-26-2009, 04:49 PM
;) Leave a feedback soon!

mark370
08-28-2009, 06:06 PM
what vBFirewall does is to sanitize malicious query sent to the forum. It does not block any Flood attack , or Spamming or DoS. Even though it's named vBfirewall, its function is totally different than Dnp Firewall Gateway. It's also recommended to use both to empower the security level of your forum.

Automatically redirecting is absolutely a No. The reason is if a bad connection approaches the forum, we don't want to transfer it inside. And we cannot differ a good and bad connection. So again, better safe than sorry.



Is there a list of functions that are disabled on the main site?Sorry for the late reply but we have managed to sort it out now thanks

SuperTaz
08-28-2009, 10:56 PM
I have vbadvanced as the homepage. Do I need to add that to the config also?

silveryhat
08-29-2009, 12:13 AM
Sorry for the late reply but we have managed to sort it out now thanks

Thanks for letting me know. If you would not mind to share the solution, please pm me how you managed to fix it. It will be documented for future references.

I have vbadvanced as the homepage. Do I need to add that to the config also?

The firewall starts up before any of vBulletin scripts begins to run, so you need not to worry about it conflicts with any modifications, or none that I have found so far.

SuperTaz
08-29-2009, 02:17 AM
Will this affect normal, non-bot, traffic?

TheLastSuperman
08-29-2009, 02:23 AM
Very nice silveryhat and yes I dropped the ball on your install video for the DnP Musicbox but if you still need it PM me, I'll get it done ASAP!

S-MAN

Edit: Ok pm me about the MusicBox... have not DL'd an update yet but this mod here has no install instructions.. I see them above in the post and it should be simple but us coders know how many members are so I'll make a video for this and get it to you tomorrow.

bleros
08-29-2009, 03:16 AM
perfect work :)

bleros
08-29-2009, 03:23 AM
Here must config? like that?

//Your forum *domain only*
//Define domain with and without www
//Do not add trail at the end
//Example : 'google.com' , 'www.google.com'
$Forum_domain = array(
'http://yourforum.com',
'http://www.yourforum.com',

silveryhat
08-29-2009, 03:31 AM
Will this affect normal, non-bot, traffic?

Could you name some of those ? Besides, you can check this topic for detail information What are the Search Engines / Bots allowed by DnP Firewall Gateway ? (http://www.silveryhat.com/delynie/f142/what-are-the-search-engines-bots-allowed-by-dnp-firewall-gateway-6990.html)

Very nice silveryhat and yes I dropped the ball on your install video for the DnP Musicbox but if you still need it PM me, I'll get it done ASAP!

S-MAN

Edit: Ok pm me about the MusicBox... have not DL'd an update yet but this mod here has no install instructions.. I see them above in the post and it should be simple but us coders know how many members are so I'll make a video for this and get it to you tomorrow.

:) it would be good too and thank you very much. There is not only install instruction needed but also the other advanced configures, I'm trying to get all of them written down.

Here must config? like that?


//Your forum *domain only*
//Define domain with and without www
//Do not add trail at the end
//Example : 'google.com' , 'www.google.com'
$Forum_domain = array(
'http://yourforum.com',
'http://www.yourforum.com',

Yup. It'd be your forum domain. You can add more than just two if you have more than 1 domain set. This Setup Domain List for DnP Firewall Gateway (http://www.silveryhat.com/delynie/f142/setup-domain-list-for-dnp-firewall-gateway-6993.html) , may also help you on the way.

bleros
08-29-2009, 04:01 AM
yup thanks if work i tested it The site made doss :D

TheLastSuperman
08-29-2009, 11:53 AM
Could you name some of those ? Besides, you can check this topic for detail information What are the Search Engines / Bots allowed by DnP Firewall Gateway ? (http://www.silveryhat.com/delynie/f142/what-are-the-search-engines-bots-allowed-by-dnp-firewall-gateway-6990.html)



:) it would be good too and thank you very much. There is not only install instruction needed but also the other advanced configures, I'm trying to get all of them written down.



Yup. It'd be your forum domain. You can add more than just two if you have more than 1 domain set. This Setup Domain List for DnP Firewall Gateway (http://www.silveryhat.com/delynie/f142/setup-domain-list-for-dnp-firewall-gateway-6993.html) , may also help you on the way.

All I have to do is mow the yard (woohoo lol) since it's cool outside and after that the install video. Get that info to me and I'll make another one for the advanced features, if it's anything server dependant please be aware my host might not be setup exactly the same to provide what others could already have in place so that might hinder showing the results etc but we'll see what the advanced options are and do the best we can. Can you host the video or is bandwidth a problem? Let me know... ok BRB (Big Back Yard with a push mower so most likely 2-3 hours).

S-MAN

R-D
08-29-2009, 02:04 PM
Shouldn't that $_GET variable be sanitized or at least checked that it is for the same site? Not sure if it can be abused as an open redirect (http://www.bloghighlight.com/your-website-is-abused-by-open-redirect-spam/) but it's better to be safe than sorry.

Also, $HTTP_SERVER_VARS is deprecated ($HTTP_SERVER_VARS['HTTP_USER_AGENT']). You should use $_SERVER. :up:

silveryhat
08-29-2009, 05:08 PM
All I have to do is mow the yard (woohoo lol) since it's cool outside and after that the install video. Get that info to me and I'll make another one for the advanced features, if it's anything server dependant please be aware my host might not be setup exactly the same to provide what others could already have in place so that might hinder showing the results etc but we'll see what the advanced options are and do the best we can. Can you host the video or is bandwidth a problem? Let me know... ok BRB (Big Back Yard with a push mower so most likely 2-3 hours).

S-MAN

;) yes i can host the file just fine. Take all the time that you need and don't worry about advanced options. It's better to have a clean, basic setup instruction

Shouldn't that $_GET variable be sanitized or at least checked that it is for the same site? Not sure if it can be abused as an open redirect (http://www.bloghighlight.com/your-website-is-abused-by-open-redirect-spam/) but it's better to be safe than sorry.

Also, $HTTP_SERVER_VARS is deprecated ($HTTP_SERVER_VARS['HTTP_USER_AGENT']). You should use $_SERVER. :up:

:rolleyes: though $_GET is sent, if you check carefully it is not used anywhere. And the domain check is already available since we have Setup Domain List for DnP Firewall Gateway (http://www.silveryhat.com/delynie/f142/setup-domain-list-for-dnp-firewall-gateway-6993.html) . I know $HTTP_SERVER_VARS is old...but believe it or not I ran into some incompatibility issue of using $_SERVER. So I have to keep it safe. I might provide information related to the change to $_SERVER, but I would not directly do that on the code just to avoid problems.

In version 1.3 there will be one more layer of protection besides the firewall itself :)

silveryhat
08-29-2009, 08:50 PM
Update v1.3 on Aug 29 / 2009 Add 2nd layer protection and 3 more options in config file.
Detail information about DnP Firewall 2nd Layer Protection (http://www.silveryhat.com/delynie/f142/detail-information-about-dnp-firewall-2nd-layer-protection-7019.html)

digicom
08-30-2009, 01:27 AM
Thanks For Update To 1.3, Installed And Working With No Problems :up:

Brandon Sheley
08-30-2009, 03:10 AM
interesting mod, I've tagged it

bleros
08-30-2009, 04:01 AM
Installed and Nominated :)

Thanks for update

nomoreturn
08-30-2009, 04:12 AM
Installed working great

bleros
08-30-2009, 04:30 AM
silveryhat any idea without Enter page :S:(

silveryhat
08-30-2009, 05:07 AM
Installed working great

Thanks For Update To 1.3, Installed And Working With No Problems :up:

Please report if any problem occurs :)

silveryhat any idea without Enter page :S:(

Is there any message ? Any error ? or screenshot ..

digicom
08-30-2009, 08:35 AM
1 problem im a having is the that message

Multiple Requests have been directly targeted our forum, as the result the current access is temporarily restricted for 10 second(s)

Is being displayed in shoutbox and in Top 5 Stats aswell on forum and I have had to dissable 2nd Layer Flood Protection to stop this happening.

Is there anyway to stop this? Regards

AdrianH
08-30-2009, 01:03 PM
1 problem im a having is the that message

Multiple Requests have been directly targeted our forum, as the result the current access is temporarily restricted for 10 second(s)

Is being displayed in shoutbox and in Top 5 Stats aswell on forum and I have had to dissable 2nd Layer Flood Protection to stop this happening.

Is there anyway to stop this? Regards

This second layer is useless on a forum with a shoutbox or a java tabbed content box.

Every refresh trips the firewall and messages appear all over the forum,after @ 2 minutes the screen disolved into a mess of broken images.........:(

AdrianH
08-30-2009, 01:26 PM
Uninstalled as it is interfering with ping backs and monitoring provided by my host.

silveryhat
08-30-2009, 02:45 PM
This second layer is useless on a forum with a shoutbox or a java tabbed content box.

Every refresh trips the firewall and messages appear all over the forum,after @ 2 minutes the screen disolved into a mess of broken images.........:(

1 problem im a having is the that message

Multiple Requests have been directly targeted our forum, as the result the current access is temporarily restricted for 10 second(s)

Is being displayed in shoutbox and in Top 5 Stats aswell on forum and I have had to dissable 2nd Layer Flood Protection to stop this happening.

Is there anyway to stop this? Regards

You guys forgot to change the 2ng layer config to have it adapted to your forum :). On some board the default configuration should be fine while on some other board with active AJAX shoutbox a little change might be necessary. Open config file and set

$config['dnp_firewall_penalty_allow'] = 12;

Detail information about DnP Firewall 2nd Layer Protection (http://www.silveryhat.com/delynie/f142/detail-information-about-dnp-firewall-2nd-layer-protection-7019.html)

digicom
08-30-2009, 02:45 PM
I Have Installed Cyb Advanced 'New Posts' (AJAX),Cyb Advanced Forum Statistics, Cyb - ChatBox,And It Seems That Because There Auto Refreshing That Its Causing Firewall To Trigger The Message Multiple Requests have been directly targeted our forum, as the result the current access is temporarily restricted for 10 second(s)

digicom
08-30-2009, 02:47 PM
i have already tryed setting this to a few diffrent setting atm it is set at
//Amount of time in second to show restrict message if a Flooding attack is determined
$config['dnp_firewall_wait_time'] = 10 ;
//Amount of penalty to be considered a Flooding attack.
//Every time multiple requests sent to the forum in less than few a second, penalty count increased by 1.
$config['dnp_firewall_penalty_allow'] = 20;You guys forgot to change the 2ng layer config to have it adapted to your forum :). On some board the default configuration should be fine while on some other board with active AJAX shoutbox a little change might be necessary. Open config file and set

$config['dnp_firewall_penalty_allow'] = 12; Detail information about DnP Firewall 2nd Layer Protection (http://www.silveryhat.com/delynie/f142/detail-information-about-dnp-firewall-2nd-layer-protection-7019.html)

silveryhat
08-30-2009, 03:02 PM
I pull this information from the Detail information about DnP Firewall 2nd Layer Protection (http://www.silveryhat.com/delynie/f142/detail-information-about-dnp-firewall-2nd-layer-protection-7019.html) for you. Though it is titled as Advanced, it is not very hard to do

Advanced
The 2nd Layer protection also sports one hidden setting that is not shown in config file. This setting is for how long it should take before clear out the penalty count.

Open dnp_fw.php and find

if((time() - $_SESSION['dnp_firewall_last_request_timestamp']) > 10 ){
Change 10 to a different amount of time client does not send any request (in seconds) then 2nd layer should reset the penalty count to 0.

Example : 3 or 4 seconds would be fine.
if((time() - $_SESSION['dnp_firewall_last_request_timestamp']) > 4 ){


In your case any value from 2-5 would work, also depends on how fast other ajax mods refresh themselves :erm:

digicom
08-30-2009, 03:23 PM
Thanks just edited dnp_fw.php amd changed setting,
Ill see if that sorts it Apprciated :up:

silveryhat
08-30-2009, 03:27 PM
Anytime. As you see, the 2nd Layer protection is a bit powerful and sensitive.

TomHQ
08-30-2009, 03:28 PM
I've added my domain to the config file but it keeps telling me "Sorry, Connection from your IP Address is not allowed!". How can I stop this?

silveryhat
08-30-2009, 03:35 PM
I've added my domain to the config file but it keeps telling me "Sorry, Connection from your IP Address is not allowed!". How can I stop this?

Let me have a peek of the setting :) Is it IP address or domain name ?

TomHQ
08-30-2009, 03:39 PM
Let me have a peek of the setting :) Is it IP address or domain name ?

It's a domain name.


EDIT: It fixed itself. :D

silveryhat
08-30-2009, 03:51 PM
It's a domain name.


EDIT: It fixed itself. :D

That was..cool :eek: . Well, just let me know if you come across any problem. Some solutions maybe available on first post, F.A.Q section.

bleros
09-01-2009, 04:05 AM
Please report if any problem occurs :)



Is there any message ? Any error ? or screenshot ..


No all is ok . but i want without Enter page if you can.

ngphuc2k
09-01-2009, 12:30 PM
Thanks

zstewart
09-01-2009, 03:21 PM
Any templates the link does not seem to work?

bahisyeri
09-03-2009, 03:07 AM
Sorry, I don't wanna be so mean but how can such script can protect you from DoS attacks? DoS attacks should be blocked from hardware level like good router etc if not kernel level firewalls such as iptables,ipfw block them. Software level is meaningless. You can only block spam bots etc with this script. Anyway good luck.

silveryhat
09-03-2009, 05:21 AM
Sorry, I don't wanna be so mean but how can such script can protect you from DoS attacks? DoS attacks should be blocked from hardware level like good router etc if not kernel level firewalls such as iptables,ipfw block them. Software level is meaningless. You can only block spam bots etc with this script. Anyway good luck.

It's always helpful to read the open topic carefully. ;)
Eventhough the DnP Firewall Gateway could reduce the damage of a flooding attack, it does not guarantee that all of the negative affects of an attack could be avoided. I do not hold any responsibility for such matters. As an administrator you should know that there is not software firewall that could be as effective as a hardware firewall.
===========================
Any templates the link does not seem to work?
I took down the forum for awhile for maintenance. You should be able to check out the templates by now

silveryhat
09-04-2009, 04:20 PM
Update v1.4 on Sep / 04 / 2009

This version mainly targets firewall structural optimization. Some minor bugs fixed as well. :)

digicom
09-04-2009, 10:32 PM
Thanks For Update silveryhat :up:

silveryhat
09-06-2009, 01:27 AM
Thanks For Update silveryhat :up:

This should almost be the final release ;)

animcentral
09-06-2009, 01:52 AM
interesting,i've tagged it.
i gonna w8 for final release

silveryhat
09-07-2009, 03:49 AM
interesting,i've tagged it.
i gonna w8 for final release

:) This is pretty much it and the most stable version.

macc
09-07-2009, 05:51 AM
Hello

can we get or use templates randomly?

reg

macc

silveryhat
09-08-2009, 03:22 AM
Hello

can we get or use templates randomly?

reg

macc

I don't understand what you mean, if you ask about whether templates from DnP Default Templates (http://www.silveryhat.com/delynie/f143/) can be used, yes of course :). You can make your own as well if you know HTML .

vnairp11
09-09-2009, 12:33 PM
some times when quick replying to posts it redirects you to the dnp firewall page or a blank page but works 2nd itme round how do i fix this?

silveryhat
09-11-2009, 05:35 AM
some times when quick replying to posts it redirects you to the dnp firewall page or a blank page but works 2nd itme round how do i fix this?

When does it happen ? How long do you set for a session to be expired ?

vnairp11
09-11-2009, 03:03 PM
//2nd Layer Flood Protection enable ?
//1 to enable , 2 to disable
$config['dnp_firewall_2nd_layer'] = 1 ;

//Amount of time in second to show restrict message if a Flooding attack is determined
$config['dnp_firewall_wait_time'] = 10 ;

//Amount of penalty to be considered a Flooding attack.
//Every time multiple requests sent to the forum in less than few a second, penalty count increased by 1.
$config['dnp_firewall_penalty_allow'] = 12;

i changed the last settings to 12 it hasn't been hapenning lately or im not aware of it i'll let u know thanks.

it used to happen when i type something in the reply box and hit submit and it forwards you to the dnp page. then i have to click back ont eh browser and retype the post.

ErrorLog
09-13-2009, 01:53 AM
<a href="http://xxxxx.org/dnp_fw.php?dnp_firewall_redirect=%2F" target="_blank">http://xxxxx.org/dnp_fw.php?dnp_firewall_redirect=%2F</a>
Sorry, Connection from your IP Address is not allowed!

What's problem ?

silveryhat
09-13-2009, 03:31 AM
i changed the last settings to 12 it hasn't been hapenning lately or im not aware of it i'll let u know thanks.

it used to happen when i type something in the reply box and hit submit and it forwards you to the dnp page. then i have to click back ont eh browser and retype the post.

I see, those are the settings for 2nd layer protection. If you need further information about it, you might wanna read Detail information about DnP Firewall 2nd Layer Protection (http://www.silveryhat.com/delynie/f142/detail-information-about-dnp-firewall-2nd-layer-protection-7019.html)

http://xxxxx.org/dnp_fw.php?dnp_firewall_redirect=%2F
Sorry, Connection from your IP Address is not allowed!

What's problem ?

Please refer to Setup Domain List for DnP Firewall Gateway (http://www.silveryhat.com/delynie/f142/setup-domain-list-for-dnp-firewall-gateway-6993.html) :)

ErrorLog
09-14-2009, 10:43 PM
Same problem ? :|

Edit : Fixed

silveryhat
09-16-2009, 08:41 AM
When the settings are all configured properly, the firewall should work fine in silence and protect the forum for years to come ;)

bleros
09-16-2009, 10:35 PM
Protected by DnP Firewall v1.0 ? 2005-2009 when i try to edit this link inside :( i get this error
Sorry, Connection from your IP Address is not allowed!

how can change this or is not allowed by you :S pls

silveryhat
09-16-2009, 11:20 PM
Protected by DnP Firewall v1.0 ? 2005-2009 when i try to edit this link inside :( i get this error
Sorry, Connection from your IP Address is not allowed!

how can change this or is not allowed by you :S pls

Please refer to Setup Domain List for DnP Firewall Gateway (http://www.silveryhat.com/delynie/f142/setup-domain-list-for-dnp-firewall-gateway-6993.html) :)

bleros
09-17-2009, 05:38 AM
i was asked for this. no for setup domain .. i want to change the link inside v1.0 belowe

silveryhat
09-17-2009, 07:24 AM
i was asked for this. no for setup domain .. i want to change the link inside v1.0 belowe
What link is it ?

bleros
09-17-2009, 03:47 PM
What link is it ?

href='http://www.silveryhat.com/delynie/f142' title='Firewall Gateway by DnP Network&trade;'

silveryhat
09-17-2009, 06:49 PM
href='http://www.silveryhat.com/delynie/f142' title='Firewall Gateway by DnP Network&trade;'

o_O unfortunately what you were trying to change is the copyright notice and it is not allowed unless it's a branding-free license

relaxiha
09-17-2009, 11:30 PM
ession_start() [function.session-start]: open(/var/sessions/sess_28e7d847f537fc43c18b4d6a22d3f998, O_RDWR) failed: No such file or directory (2) in /home/**********/public_html/forums/dnp_fw.php on line 3

Warning: session_start() [function.session-start]: Cannot send session cookie - headers already sent by (output started at /home/**********/public_html/forums/dnp_fw.php:3) in /home/**********/public_html/forums/dnp_fw.php on line 3

Warning: session_start() [function.session-start]: Cannot send session cache limiter - headers already sent (output started at /home/************/public_html/forums/dnp_fw.php:3) in /home/*********/public_html/forums/dnp_fw.php on line 3

silveryhat
09-18-2009, 02:15 AM
ession_start() [function.session-start]: open(/var/sessions/sess_28e7d847f537fc43c18b4d6a22d3f998, O_RDWR) failed: No such file or directory (2) in /home/**********/public_html/forums/dnp_fw.php on line 3

Warning: session_start() [function.session-start]: Cannot send session cookie - headers already sent by (output started at /home/**********/public_html/forums/dnp_fw.php:3) in /home/**********/public_html/forums/dnp_fw.php on line 3

Warning: session_start() [function.session-start]: Cannot send session cache limiter - headers already sent (output started at /home/************/public_html/forums/dnp_fw.php:3) in /home/*********/public_html/forums/dnp_fw.php on line 3

When this happens ? Did you properly set up the firewall ? You provide no detail explanation but the error message and I can't help for anything...

relaxiha
09-18-2009, 09:06 PM
Hello.
After installing this. Anything but this message does not show.
And this message shows.
The settings I name my second time I config
As soon as I enter the file global.php line does not show anything except the same error message

silveryhat
09-18-2009, 11:07 PM
Hello.
After installing this. Anything but this message does not show.
And this message shows.
The settings I name my second time I config
As soon as I enter the file global.php line does not show anything except the same error message

o.o did you upload all the files and folders in the package to your forum root folder ?

bleros
09-18-2009, 11:35 PM
o_O unfortunately what you were trying to change is the copyright notice and it is not allowed unless it's a branding-free license


:D Ok but i change it :p just need little brain,thnx for answer

relaxiha
09-19-2009, 12:19 AM
Hello
Yes, all 3 files to the folder upload root / forum
Looks not very difficult. Itself to an error message
If you have other settings to apply to write

Frondy
09-19-2009, 09:00 AM
Nice work, thanks!

Is there any log file possibilities?

Installed

silveryhat
09-20-2009, 11:45 AM
Nice work, thanks!

Is there any log file possibilities?

Installed

It was one of my concern when I first start coding the mod. I believe generating logs during an attack will consume alot of server resource and I want the minimize the amount of damage to the forum so log feature has been removed.

relaxiha
09-21-2009, 01:41 AM
o.o did you upload all the files and folders in the package to your forum root folder ?

hi
Yes, all files were properly upload
already root forum

silveryhat
09-21-2009, 11:32 PM
I would like to have a look at your global.php , this clearly states that dnp_fw.php has not been found.

ession_start() [function.session-start]: open(/var/sessions/sess_28e7d847f537fc43c18b4d6a22d3f998, O_RDWR) failed: No such file or directory (2) in /home/**********/public_html/forums/dnp_fw.php on line 3

tlwwolfseye
09-22-2009, 01:30 PM
Got it installed, no issues at all. ;) Thanks for this Mod.

relaxiha
09-22-2009, 05:32 PM
hello i think should update it

JasonGD
09-25-2009, 08:29 AM
Works great so far! *clicks install*

bigcurt
09-26-2009, 12:29 AM
So, a user visits my site and the first thing that is displayed is this? Is that correct?

Thanks,
Curt

silveryhat
09-26-2009, 03:58 AM
Yes, it applies to everyone but search engines.

vnairp11
09-26-2009, 09:09 AM
i have this issue please fix

Warning: session_start() [function.session-start]: open(/tmp/sess_b22c70d5b06ff6082f4112d732e050ab, O_RDWR) failed: Permission denied (13) in /home/xxxxx/public_html/dnp_fw.php on line 3

Warning: session_start() [function.session-start]: Cannot send session cache limiter - headers already sent (output started at /home/vnairp11/public_html/dnp_fw.php:3) in /home/xxxxx/public_html/dnp_fw.php on line 3

vnairp11
09-26-2009, 05:23 PM
it used to work but ever since i transferred the site this has been happening and i love this mod pleas help..

bigcurt
09-27-2009, 12:05 AM
Yes, it applies to everyone but search engines.

OK, one more thing. Would this happen only once and be based on cookies or will it happen every single time to a user?


Thanks,
Curt

silveryhat
09-27-2009, 03:25 PM
As long as the user session alive, the firewall gateway does not appear again. ;)

it used to work but ever since i transferred the site this has been happening and i love this mod pleas help..

This is a server side misconfiguration. If you could contact your host provider, mention that apache temp folder for function session_start is not writable by local script.

need2fart
10-04-2009, 09:51 AM
I am unsure about installing this mod. Recently I've been receiving DDoS attacks, about 300 zombies were flooding my forum with a UDP flood... Will this help me lol? I get flooded by medium attacks like 300-500 zombies. =\

Will this have any effect or save my forum? I hate having my host banning all the IP's and I soon find out half my members were infected with botnets. This has all been fixed but, still I'm bracing for another DDoS attack soon.

On a scale of about 1-10

If I got DDoSed by about 100 zombies, would my forum still load with this hack?
Normally if I get attacked by 100 zombies I do lose connection to the server -

Thanks man I've been looking for a good firewall for preventing DDoS. I'm sad hostgator doesn't offer ddos hardware protection.

jchamber2010
10-05-2009, 01:40 AM
How hard it to change your Useragent? I know that in firefox it is really quite easy to do using About:Config, same with seamonkey. This wouldn't offer protection at all if the DDoSer knew about it.

big219
10-05-2009, 10:40 AM
Thank you for this awesome mod, hopefully it does the job
it is suppose to do. Keep up the great work silveryhat!!

Regards,
Kev

silveryhat
10-06-2009, 05:43 PM
I am unsure about installing this mod. Recently I've been receiving DDoS attacks, about 300 zombies were flooding my forum with a UDP flood... Will this help me lol? I get flooded by medium attacks like 300-500 zombies. =\

Will this have any effect or save my forum? I hate having my host banning all the IP's and I soon find out half my members were infected with botnets. This has all been fixed but, still I'm bracing for another DDoS attack soon.

On a scale of about 1-10

If I got DDoSed by about 100 zombies, would my forum still load with this hack?
Normally if I get attacked by 100 zombies I do lose connection to the server -

Thanks man I've been looking for a good firewall for preventing DDoS. I'm sad hostgator doesn't offer ddos hardware protection.

On the situation of 100+ bots , the firewall could reduce the attack 20-80% theoretically, depend on what technique it uses and what type of flooding it is, xFlash or IMCP flooding etc...

As the matter of fact, you should also deny these ips or the the ones cause the most requests during the flood occurrence , then remove the list after it has gone.

How hard it to change your Useragent? I know that in firefox it is really quite easy to do using About:Config, same with seamonkey. This wouldn't offer protection at all if the DDoSer knew about it.
It still has two layer of protections even if user-agent is fake. You can give it a try :)

Thank you for this awesome mod, hopefully it does the job
it is suppose to do. Keep up the great work silveryhat!!

Regards,
Kev

I'm developing a newer version based on a new bounce back technique, still waiting for feedback from my professors though. ;)

James Birkett
10-07-2009, 12:00 PM
My apologies if this is already answered but i'm short for time at the minute:

Does it log IP addresses of potential DDoS attempts?

jchamber2010
10-07-2009, 09:48 PM
...t still has two layer of protections even if user-agent is fake. You can give it a try :)...

I can make your website think my browser is the Google Bot, so it's either going to let me in, and believe that I'm the googlebot OR it's going to be blocking the real googlebot

Dr.LoVe
10-08-2009, 10:06 AM
Parse error: syntax error, unexpected ':', expecting ')' in /home/xxx/public_html/vb/dnp_fw_config.php on line 29

??

silveryhat
10-08-2009, 03:21 PM
My apologies if this is already answered but i'm short for time at the minute:

Does it log IP addresses of potential DDoS attempts?

This is my respond to a similar concern :)

It was one of my concern when I first start coding the mod. I believe generating logs during an attack will consume alot of server resource and I want the minimize the amount of damage to the forum so log feature has been removed.

I can make your website think my browser is the Google Bot, so it's either going to let me in, and believe that I'm the googlebot OR it's going to be blocking the real googlebot

The two other protection is the 2nd layer protection and cookie check ;) , too many requests will disable the session no matter if the visitor is bot agent or not.

Parse error: syntax error, unexpected ':', expecting ')' in /home/xxx/public_html/vb/dnp_fw_config.php on line 29

??

You have done some misconfiguration. Try to use the original file or post the content of your dnp_fw_config.php and I'll check for you.

Dr.LoVe
10-08-2009, 04:17 PM
i didn't do anything just add my website link look here


<?
//List of Search Engine Agents
$UserAgent = array(
'Googlebot',
'msnbot',
'slurp',
'fast-webcrawler',
'Googlebot-Image',
'teomaagent1',
'directhit',
'lycos',
'ia_archiver',
'gigabot',
'whatuseek',
'Teoma',
'scooter',
'Ask Jeeves',
'slurp@inktomi',
'gzip(gfe) (via translate.google.com)',
'Mediapartners-Google',
'crawler@alexa.com'
);

//Your forum *domain only*
//Define domain with and without www
//Do not add trail at the end
//Example : 'google.com' , 'www.google.com'
$Forum_domain = array(
‘http://xxxx.com’,
‘http://www.xxxxx.com’,

);

//2nd Layer Flood Protection enable ?
//1 to enable , 2 to disable
$config['dnp_firewall_2nd_layer'] = 1 ;

//Amount of time in second to show restrict message if a Flooding attack is determined
$config['dnp_firewall_wait_time'] = 10 ;

//Amount of penalty to be considered a Flooding attack.
//Every time multiple requests sent to the forum in less than few a second, penalty count increased by 1.
$config['dnp_firewall_penalty_allow'] = 6;
?>


And another thing if you don't mind could you tell me when should i upload those files ?
( public_html or vb file )??

thanx

silveryhat
10-11-2009, 01:33 AM
i didn't do anything just add my website link look here

And another thing if you don't mind could you tell me when should i upload those files ?
( public_html or vb file )??

thanx

It's nothing much wrong, only that you have to use the right single quotes :). Here is the fix :


<?
//List of Search Engine Agents
$UserAgent = array(
'Googlebot',
'msnbot',
'slurp',
'fast-webcrawler',
'Googlebot-Image',
'teomaagent1',
'directhit',
'lycos',
'ia_archiver',
'gigabot',
'whatuseek',
'Teoma',
'scooter',
'Ask Jeeves',
'slurp@inktomi',
'gzip(gfe) (via translate.google.com)',
'Mediapartners-Google',
'crawler@alexa.com'
);

//Your forum *domain only*
//Define domain with and without www
//Do not add trail at the end
//Example : 'google.com' , 'www.google.com'
$Forum_domain = array(
'http://xxxx.com',
'http://www.xxxxx.com',

);

//2nd Layer Flood Protection enable ?
//1 to enable , 2 to disable
$config['dnp_firewall_2nd_layer'] = 1 ;

//Amount of time in second to show restrict message if a Flooding attack is determined
$config['dnp_firewall_wait_time'] = 10 ;

//Amount of penalty to be considered a Flooding attack.
//Every time multiple requests sent to the forum in less than few a second, penalty count increased by 1.
$config['dnp_firewall_penalty_allow'] = 6;
?>

vnairp11
10-17-2009, 04:36 AM
excellent mod nominated thanks :)

JasonGD
10-17-2009, 07:02 AM
Back with a little update, it's been about 3 weeks since installing, and I've had absolutely no spammers! That's definitely a nice change from the 1 a day I was getting beforehand. ;)

This thing rocks!

|Jordan|
10-20-2009, 06:56 PM
When i have this mod enabled, and when i click the image to enter my site, i get the following url: dnp_fw.php?dnp_firewall_redirect='.%24_SERVER['REQUEST_URI'].'

and the page just goes back to the DnP page. What am i doing wrong? It even does it when i didnt edit any DnP files. The website server is using a Firewall though that has HTTP filters to enabled to prevent exploits.

Also, your link to "InV-Firewall Script" leads to a page in another language, can you link to a page in english?

silveryhat
10-26-2009, 02:05 PM
Back with a little update, it's been about 3 weeks since installing, and I've had absolutely no spammers! That's definitely a nice change from the 1 a day I was getting beforehand. ;)

This thing rocks!

excellent mod nominated thanks :)

Thanks for the nice feedbacks guys, ;)

When i have this mod enabled, and when i click the image to enter my site, i get the following url: dnp_fw.php?dnp_firewall_redirect='.%24_SERVER['REQUEST_URI'].'

and the page just goes back to the DnP page. What am i doing wrong? It even does it when i didnt edit any DnP files. The website server is using a Firewall though that has HTTP filters to enabled to prevent exploits.

Also, your link to "InV-Firewall Script" leads to a page in another language, can you link to a page in english?

Have you tried to figure out what are being filtered by the web server firewall ? For all the time the firewall is just a type of plug and play mod, if there is something wrong it is more likely a misconfiguration for from the host side itself.

silveryhat
10-29-2009, 04:43 AM
The firewall blocks requests with the following strings:
...

So anything in there that could be blocking this mod from working properly? Or are my firewall settings adequate enough to do the same thing this mod does?

The firewall you are using seems to block or , like you describe, convert characters. This, more likely is used to avoid malicious query being executed but on the other hand it will interrupt the process of other MODs and for DnP Firewall apparently. What firewall are you using? Is it software or hardware? Because if it only blocks certain commands, it does not protect your site against flooding, dos and spambots.

fta2k
10-29-2009, 05:00 PM
Everything seems to be working fine here.

LeHHeL
10-30-2009, 05:30 AM
Just a small issue, on PHP files use LONG TAG like <?php not <? , if is disabled, cannot run.

|Jordan|
10-30-2009, 06:13 AM
I'd rather not say what firewall im using because it will open security issues.

What characters does DnP in the url tag?

|Jordan|
11-01-2009, 11:40 PM
Well. I finally figured out what was causing my problems! And it wasnt my firewall!

I changed all the <? of the DnP php files to <?php and now it works flawlessly!

P.S. silveryhat, can you edit your post id of 104 (this post (https://vborg.vbsupport.ru/showpost.php?p=1907683&postcount=104)) and remove your quote about my firewall info. I'd rather not have it online anymore.

P.S.S I'm trying to download INV firewall, but cant because theres no username to access the download page (there's only a password)

maddoghalo1
11-02-2009, 03:19 AM
Is there a way to make it so when ever someone leaves my website and they come back it makes them go thorugh that portal again? I have to dissconnect from my internet then reconnect to get the gateway to pop up again when I re visit the site. When I leave the site, then open browser and go back to my site, it goes to my site and the gateway part does not pop up. I want it to pop up every time someone visits my site even if they leave it for 5 seconds.

silveryhat
11-02-2009, 05:24 PM
Well. I finally figured out what was causing my problems! And it wasnt my firewall!

I changed all the <? of the DnP php files to <?php and now it works flawlessly!

P.S. silveryhat, can you edit your post id of 104 (this post (https://vborg.vbsupport.ru/showpost.php?p=1907683&postcount=104)) and remove your quote about my firewall info. I'd rather not have it online anymore.

I have done so ;)


P.S.S I'm trying to download INV firewall, but cant because theres no username to access the download page (there's only a password)

This is a firewall script written by a local Vietnamese coder. Try Shacker and Delynie for the username and password to access. Further support of INV firewall is not available here because this topic is for DnP Firewall. However, you may ask about it on the official forum, which its link is provided below.

Is there a way to make it so when ever someone leaves my website and they come back it makes them go thorugh that portal again? I have to dissconnect from my internet then reconnect to get the gateway to pop up again when I re visit the site. When I leave the site, then open browser and go back to my site, it goes to my site and the gateway part does not pop up. I want it to pop up every time someone visits my site even if they leave it for 5 seconds.

The gateway is designed to appear only once in the first time user establishes a connection to the forum. This session expires after an amount of time, depends on your server setting. Since the way you require is not how the firewall should work for everyone, you might want to make a personal request on the official forum (http://www.silveryhat.com/delynie/f142/).

need2fart
11-04-2009, 02:31 AM
Dear Silveryhat,

This script works good it stopped the spammers from attacking one of my pages, but I looked today and I have a few errors in my error log, can you help me fix them?

Here are the errors:

[03-Nov-2009 01:14:43] PHP Warning: require_once(./global.php) [<a href='function.require-once'>function.require-once</a>]: failed to open stream: No such file or directory in /home/delta/public_html/showthread.php on line 104
[03-Nov-2009 01:14:43] PHP Fatal error: require_once() [<a href='function.require'>function.require</a>]: Failed opening required './global.php' (include_path='.:/usr/lib/php:/usr/local/lib/php') in /home/delta/public_html/showthread.php on line 104


Thanks.

silveryhat
11-04-2009, 04:44 AM
._. Are you sure the warning message comes from the firewall ? The firewall integrates itself into global.php not requiring it , while the error means showthread.php is looking for global.php but not found. It looks more like a intermittent server issue.

|Jordan|
11-10-2009, 03:10 AM
Now when i click the link in firefox i get the following error "Sorry, Connection from your IP Address is not allowed!" Clicking the link in IE shows my site normally. Any idea why its doing this suddenly?

silveryhat
11-10-2009, 05:19 PM
Now when i click the link in firefox i get the following error "Sorry, Connection from your IP Address is not allowed!" Clicking the link in IE shows my site normally. Any idea why its doing this suddenly?

Have you added your forum domain to the domain list in dnp_fw_config.php ? ( Setup Domain List for DnP Firewall Gateway (http://www.silveryhat.com/delynie/f142/setup-domain-list-for-dnp-firewall-gateway-6993.html) )

|Jordan|
11-10-2009, 05:24 PM
Yes i added them.

The link works fine in IE, but in firefox it doesnt for some weird reason. It's been working fine previous days but suddenly stopped working.

Edit: NM i found the problem, my firefox had referrer header disabled. Enabling it again fixed it.

profanitytalker
11-17-2009, 05:07 PM
Has anyone here seen a decrease in traffic from both real users and bots using this hack?

silveryhat
11-23-2009, 04:03 AM
Has anyone here seen a decrease in traffic from both real users and bots using this hack?

It is SEO friendly.

RedTrinity
11-25-2009, 08:59 PM
I installed this 2 days ago and it appears to be working correctly, however 2 spambots still managed to register and spam our forum overnight??

I had to turn the flood protection off due to numerous complaints by members, but the firewall has been still functional up until this point... so not sure why it hasn't worked in these instances...

silveryhat
11-26-2009, 06:02 AM
I installed this 2 days ago and it appears to be working correctly, however 2 spambots still managed to register and spam our forum overnight??

I had to turn the flood protection off due to numerous complaints by members, but the firewall has been still functional up until this point... so not sure why it hasn't worked in these instances...

There is a different between spam bots and spammers. Those who can spam with the firewall on are not bots. They are human and they do that on purpose.

You are able to change the flood protection settings following this guide Detail information about DnP Firewall 2nd Layer Protection (http://www.silveryhat.com/delynie/f142/detail-information-about-dnp-firewall-2nd-layer-protection-7019.html) :)

carleboy
01-06-2010, 11:34 PM
Cant get this working on vb 4 any one know how ??? please :)

could be somthing to do with this but i dont know ??

error_reporting(E_ALL & ~E_NOTICE);

require('./includes/class_bootstrap.php');



define('VB_AREA', 'Forum');

define('VB_AREA etc isnt the first command in the global.php any more.

The fire wall just gets stuck on the gateway and wont go though to the forum.

Thanks in advance for your help...

manuelg1201
01-25-2010, 02:37 PM
its working for me but some users after clicking here to continue they are not redirected into the forum. why?

Rideharder
02-01-2010, 08:58 PM
This is a great product..

I wanted image background so I kind of played around with it and it seems like it works this is what I used..

<body style="font-family:Verdana, Geneva, sans-serif;background-color: #BEBBBB; background-image: ur (http://www.YOURURL.gif)">

demo www.speedaholic.net

.................................................. .................................................. .....................................

One thing I'm running into in Firefox sometimes it converts my style back to the parent style when the firewall is clicked on.. Has anybody ran across this issue in the past

silveryhat
02-05-2010, 08:51 PM
The firewall does not have any function to change style, it only verifies request and then directs the visitor to the page they intend to view.

I have taken a look at your forum but I don't see that problem occurs.

Elric
02-07-2010, 04:25 PM
Much Thanks for this Mod...

Farsisat
02-07-2010, 05:25 PM
hi. thanks work well.

i install InV-Firewall Script but the proplem is for edit post or send pm to user. when i want to edit posts or send pm to user firewall is show me an error me to can not do it.

what i am i doing to work for this one?

silveryhat
02-09-2010, 01:54 AM
hi. thanks work well.

i install InV-Firewall Script but the proplem is for edit post or send pm to user. when i want to edit posts or send pm to user firewall is show me an error me to can not do it.

what i am i doing to work for this one?

I do not cover support for other firewalls on the main topic, however you find a discussion going on here in this topic (http://www.silveryhat.com/delynie/141/c-i-t-t-ng-l-inv-firewall-script-cho-di-n-3106-5.html#post20776)

PiroX
02-10-2010, 01:39 PM
How can i get this working with vbcms?
vbcms is before the forum dir
example
vbcms.php
forum/index.php

if i call my site and click on enter this comes
http://siteurl/dnp_fw.php?dnp_firewall_redirect=%2F

if i call the forum it works

any idea?

silveryhat
02-22-2010, 07:18 AM
How can i get this working with vbcms?
vbcms is before the forum dir
example
vbcms.php
forum/index.php

if i call my site and click on enter this comes
http://siteurl/dnp_fw.php?dnp_firewall_redirect=%2F

if i call the forum it works

any idea?

You may want to exclude the firewall from cmps index file by changing

if(file_exists('dnp_fw.php')){require_once('dnp_fw .php');}

into

if(file_exists('dnp_fw.php') and THIS_SCRIPT != 'adv_index'){require_once('dnp_fw.php');}

of global.php file. Because the path of cmps index file is not in the same location with showthread, forumdisplay and other vb files.

PiroX
03-22-2010, 06:54 AM
to exclude it and make it only available for the forum isn't good
the gateway has to be for the whole site and after clicking on it, it should continue to correct page

www.site.de/ --> gateway --> click --> www.site.de/
www.site.de/forum --> gateway --> click --> www.site.de/forum

and it should remember when it was entered so that the user dont have to click two times


it would be very nice if you can help me
i already got a ddos attack directly on /forum what crashed my server because of sql 100% usage

Manoel J?nior
04-27-2010, 02:14 AM
Working with vB4.x?

silveryhat
06-01-2010, 10:28 PM
to exclude it and make it only available for the forum isn't good
the gateway has to be for the whole site and after clicking on it, it should continue to correct page

www.site.de/ --> gateway --> click --> www.site.de/
www.site.de/forum --> gateway --> click --> www.site.de/forum

and it should remember when it was entered so that the user dont have to click two times


it would be very nice if you can help me
i already got a ddos attack directly on /forum what crashed my server because of sql 100% usage

Though this is a vb modification, keep it mind that it will work with any php page. So you can install exactly the same firewall code to any location you want the firewall to protect.

Working with vB4.x?
I do not have vb4 to test one :(

ctrlbrk
08-08-2010, 12:07 PM
Hi,

I want to always/permanently skip the "front-end" protection. I want to disable that, not use it... But I do want to keep the 2nd layer protection (too many hits frequently), how can I make this change?

Mike

silveryhat
08-25-2010, 12:12 AM
I'm sorry the free version of DnP Firewall doesn't allow advanced modification to the original source code for such request.

|Jordan|
12-02-2010, 06:39 AM
I think this mod is dead. The author is MIA. I've been trying to get in contact with him since august (email, pm, i even posted on his site) and he never responds.

sivaganeshk
12-02-2010, 04:17 PM
does it work with 4.1?

|Jordan|
12-02-2010, 05:57 PM
does it work with 4.1?

It should, it doesnt use any vbulletin code. Hell ive even used it with non-vb scripts.

phkk
12-03-2010, 06:24 PM
this is a useless from large DDOS attack.

James T Brock
12-04-2010, 11:33 AM
That's why it says DoS and not DDOS in the subject line.

A better question is what benefit does this have over something like mod deflate?

|Jordan|
12-05-2010, 03:08 AM
The main good thing about this mod is that it makes it impossible for bots to sign up on your forum or to use forms.

matrixmark
12-05-2010, 08:57 AM
Does this work on vbulletin 4.1.x ?

Thanks

Mark

da_judge
12-16-2010, 08:13 PM
how to make it gorup user depend on
?
and also you should think about google and others bot will be affected by this way

I noticed it also bloked paypal IPN

I have made a fix on my site for this to work with IPN and Guests Only

on www.wizardmods.net

Above

/*================================================= =====================*\
|| ################################################## ##################
|| # Downloaded: 14:31, Fri Oct 1st 2010
|| # CVS: $RCSfile$ - $Revision: 31416 $
|| ################################################## ##################
\*================================================ ======================*/

Put this

$ip = getenv('REMOTE_ADDR');
if ($ip != "66.211.170.66")
{
if ($vbulletin->userinfo['usergroupid'] == 1)
require_once('dnp_fw.php');
}

usergroupid == 1

Is the usergroup you want it to affect

The ips address is Google IPN ip... that might change from time to time

Hope that Helps

James T Brock
12-29-2010, 04:46 PM
Good mod but it lacks customization. Is there anyway to make it so that it ONLY affects a certain sub-forum and not the entire board?

Diablo-Sat
01-01-2011, 07:33 PM
thanks for this got 1.4 installed

thanks

sateurope
01-17-2011, 02:23 PM
Finally something that works.
Spam bots are no longer registering by the 150 a day.


Thank you
:D

Globe
01-31-2011, 06:45 AM
Good morning, I have the firewall in the Forum and it works too.I had from them then quick and all that in time I joined come not in the Forum if it back on is.

Sorry, Connection from your IP Address is not allowed!

my English is not so good,sorry

Antidepresiv
02-06-2011, 09:58 PM
Any chance this might work in 4.08 ? Or if not, is there any chance for you to code it for 4.08 or 4.1 ? Would be realy apprechiated. And i would like to have this mod. Thanks Anti.

Goomzee
02-08-2011, 03:41 AM
thanks but every member think that site is hack

MissKalunji
05-02-2011, 11:02 PM
anyway to reduce how big the splash screen is?

muratcan25
05-22-2011, 05:17 PM
Thank You

James T Brock
06-13-2011, 10:15 PM
The OP doesn't even use this on their own website anymore...

MissKalunji
06-14-2011, 12:14 PM
The OP doesn't even use this on their own website anymore...
I don't use it anymore either, I thought it was annoying not only for spammers but mostly for users and in my position didn't quite help since they were still sending queries to my server.

not a bad idea tho

iDHKHCM
09-25-2011, 11:46 PM
Does this work on vbulletin 4.1.x ?

Thanks

Mark

yeah www.highclassmods.com so u can see. i have minor issues. like setting up the domain. common sense right? well no matter how i set it up i get an error, others have gotten it from reading comments in the thread with no solution.

when i was on shared hosting the DNP image would show in the shoutbox when ever someone's session expired, n they had to refresh and re enter the site

Doesnt happen now that were on VPS but over good mod, gives members a welcome before they enter the site.

B16MCC
01-08-2012, 12:57 PM
Just installed this after being hacked. Looks great thanks.
Just one simple question, should I see the firewall page every time I access my forum ?
I saw it just once, and now I don't see it anymore ?

crouzmind
04-05-2012, 10:56 AM
neep some help about this firewall . i have download the version 1.4 and upload all files to my forum root and also done the global.php file and also edit the firewall config file but after that when i try to access my site i got the firewall template image still did not redirect me to site and in the link box its show me this link below .

http://www.******.com/dnp_fw.php?dnp_firewall_redirect=%27.%24_SERVER%5B %27REQUEST_URI%27%5D.%27

Diablo-Sat
05-01-2012, 11:57 AM
im having problems with vb 4

i put this line in global.php

if(file_exists('dnp_fw.php')){require_once('dnp_fw .php');}

and the firewall works but when i have that line in the global.php file i cant upload attachments on the forum. as soon as i remove this line i can upload attachments no problem

anyone know what i can do

thanks

eyedream
05-07-2012, 04:01 PM
after installing Dnp Firewall Tapatalk is not working :(.any Guide..

YungAnh
06-03-2012, 05:00 AM
How can I use this as root?
I want this firewall to protect everything on my host: forum, blog, etc.
Can I use this with htaccess file.
If so pls guide me how.
Thanks

Prorockz
08-23-2012, 05:53 PM
it has banned IP's of my Forum members how do i unban them????

123_y_321
02-10-2013, 04:30 AM
It says sorry you cant join your ip is banned.. It does it for everybody that tries to join. How to fix that?

123_y_321
02-10-2013, 06:11 PM
noone will answer?

123_y_321
02-12-2013, 09:21 AM
Why with firefox sometimes the firewall just doesnt redirect to the site? it stays at the same firewall page.

elitecarders
05-06-2013, 10:08 AM
there is anyway to add apply this mod only for Guests and normal Members ? other site staff and vip members will not see DNP firewall also maybe they will see but firewall will not detect there ip's bcoz i am admin i mostly online on my forum dnp blocked my ip :( i cant access my admin cp

check www.true-carders.com