vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   vBulletin 4.x Add-ons (https://vborg.vbsupport.ru/forumdisplay.php?f=245)
-   -   Administrative and Maintenance Tools - [DBTech] vBSecurity v2 (vB4) (https://vborg.vbsupport.ru/showthread.php?t=276228)

madness85 12-10-2013 11:40 AM

Quote:

Originally Posted by rhody401 (Post 2467157)
I think I found a bug in version 1.1.1

On my 4.2.1 patched system, this has happened twice in the past month.

I have multiple admins and if an admin enters the wrong password just ONCE, it treats it like 25+ brute force attempts. It takes action with one attempt, ignoring the settings for # of attempts.

Under SECURITY WATCHERS: GENERAL - I have:



Twice it has set off both of the above (two emails, closed forum, etc) for a single wrong password attempt.

I have temporarily taken away its ability to close the forum, because I was out yesterday and it shut down the forum for almost 5 hours.

If I can help in any way to help duplicate/identify this behavior - don't hesitate to email me.

Thanks
Rhody

Same here buddy 1 failed login ip banned mostly from my mobile :(

rhody401 12-10-2013 07:24 PM

Ya i was able to duplicate it again last night, with a single wrong password attempt. For now, I disabled all but EMAIL ADMINISTRATOR - so it wont shut down the forum again.

Thanks for the reply to let me know I'm not imagining things :)

Rhody

DragonByte Tech 12-15-2013 02:07 AM

I'll attempt to replicate this myself as soon as I have time, if I can't I'll reach out to one of you for FTP/AdminCP information.

Fillip

final kaoss 12-15-2013 06:39 PM

There is a bit of a change I would make to this mod. Add an option to add IP to a blacklist (for 30 days or increments in months) for failed logins within x amount of time would be great.

https://vborg.vbsupport.ru/attachmen...4&d=1325289905

Mukashi 02-23-2014 01:50 AM

Finally got around to upgrading to 1.1.1 today on vB4.2.1, and I'm having a very strange error. My users and staff (including moderators but not including admins) cannot access their notifications or profile pages. I had updated several other addons in the same session (all DB Tech addons: Advanced User Tagging, vB Arcade, Username Change and AJAX Threads), but we've confirmed the error did not crop up until after this addon was installed.
The error only happened after this addon was updated, but did not seem to vanish when the addon was disabled/uninstalled.

EDIT: Hmmmm. Looks like it may be an addon conflict with Tournaments, Ladders & Leagues Manager v4.x. Disabled that addon, and now it's working again. Don't know how the heck that error could stay there even when I'd disabled/uninstalled vBSecurity, but since it only cropped up after updating this...*shrugs*

ZUCCO 02-23-2014 05:27 AM

Thank you ! I will try it :D

DragonByte Tech 06-29-2014 03:34 PM

vBSecurity v1.1.2

ACP Access Log / Verifier
  • Triggers an email alert if the IP addresses no longer match
  • Sends email to the Webmaster Email listed in the vBulletin Options


Fillip

woodmj 02-23-2015 08:44 AM

Please could I check something with this mod?

There's 2 kinds of rules you can set up for failed login attempts. 1 is for any IP address in eg. 5 mins and the other is for 1 IP address in eg. 5 mins. I think I understand the alerts produced for 1 IP address in eg. 5 mins in that 1 IP address has made multiple attempts to access accounts and has failed? but was does the alert for any IP address in eg. 5 mins mean? It will mention a handful of usernames but only one IP so I'm not sure what the IP relates to in that situation?

neptunesys 02-24-2015 02:11 PM

So far, this has been a great mod to have. I wish I'd installed in sooner :)

I would like to see two improvements in the Login Strikes Viewer to make this even more useful.

1. Differentiate between bogus (non-existent) usernames and existing usernames
2. Indicate if the displayed IP address has been banned

409industries 03-24-2015 04:43 PM

Awesome mod. Purchased the pro version.

Wish i had found this a long time ago to enforce password complexity requirements during registration / password changes.

Support is awesome too, they listened to some of my suggestions regarding the mass password reset feature and got the changes implemented very quickly. :-)

ForceHSS 03-24-2015 06:34 PM

Quote:

Originally Posted by 409industries (Post 2541386)
Awesome mod. Purchased the pro version.

Wish i had found this a long time ago to enforce password complexity requirements during registration / password changes.

Support is awesome too, they listened to some of my suggestions regarding the mass password reset feature and got the changes implemented very quickly. :-)

Yes it is a very good mod I use many of their pro versions myself

DragonByte Tech 03-30-2015 05:51 PM

vBSecurity v1.1.3

Changes to Existing Features:

Mass Password Reset
  • Now uses a more secure method of generating temporary passwords
  • Enables greater security for users, avoiding brute force attacks on their passwords before the passwords can be changed


Fillip

GreyGhost 04-16-2015 03:07 AM

EDIT: Answered on DBTech forums. ANSWERED HERE

I'm getting the following message when I try to change any vBSecurity settings in ACP.
----------
"Forbidden

You don't have permission to access /admincp/vbsecurity.php on this server.

Additionally, a 404 Not Found error was encountered while trying to use an ErrorDocument to handle the request."
----------

vB 4.2.2 - vBSecurity v1.1.3

Fresh vB install with a hand full of members and forums/post imported from phpbb3

Only other mod installed is DBTech Copyright Management v2.1.1
Have now disabled both in Manage Products but am still unable to change any settings.

8-)

UPDATE: Just installed vBShout and I'm getting the same Forbidden message when I try to change the settings.
"Forbidden

You don't have permission to access /admincp/vbshout.php on this server."

So I uninstalled vBSecurity and deleted all the files but this hasn't fixed it.

All other vB settings changes work fine, it's only DBTech mods that produce the error.

I've looked for any .htaccess and there's none and checked file permissions which all DBTech .php files are set to 0644 where all other vB .php files on the server are 0600.

8-/

woodmj 04-20-2015 08:13 AM

After ugrading to the latest version there seems to be a problem when a standard password change is effected. Please could you advise? The below error is displayed :

Database error in vBulletin 4.2.2:

Invalid SQL:
UPDATE user SET
salt =
passworddate =
password =
dbtech_vbsecurity_forcenewpass =
WHERE userid = ;

MySQL Error : Unknown column 'dbtech_vbsecurity_forcenewpass' in 'field list'
Error Number : 1054
Request Date : Monday, April 20th 2015 @ 10:08:45 AM
Error Date : Monday, April 20th 2015 @ 10:08:45 AM
Script : /profile.php?do=updatepassword
Referrer : /profile.php?do=editpassword
IP Address :
Username :
Classname : vB_Database_MySQLi
MySQL Version : 5.5.41-0ubuntu0.14.04.1

ForceHSS 04-20-2015 08:32 AM

Quote:

Originally Posted by woodmj (Post 2543602)
After ugrading to the latest version there seems to be a problem when a standard password change is effected. Please could you advise? The below error is displayed :

Database error in vBulletin 4.2.2:

Invalid SQL:
UPDATE user SET
salt =
passworddate =
password =
dbtech_vbsecurity_forcenewpass =
WHERE userid = ;

MySQL Error : Unknown column 'dbtech_vbsecurity_forcenewpass' in 'field list'
Error Number : 1054
Request Date : Monday, April 20th 2015 @ 10:08:45 AM
Error Date : Monday, April 20th 2015 @ 10:08:45 AM
Script : /profile.php?do=updatepassword
Referrer : /profile.php?do=editpassword
IP Address :
Username :
Classname : vB_Database_MySQLi
MySQL Version : 5.5.41-0ubuntu0.14.04.1

The error means you are missing a table but that table was and is not there and never was in this plugin so I dont see how you are getting the error unless you edited the xml

woodmj 04-20-2015 09:13 AM

Have not edited the XML. This just came about after upgrading to the latest release from the DB site. I believe it's tied in with one of the new features in the new release.

ForceHSS 04-20-2015 05:10 PM

This wait for the coder to reply as they will know but I cant see that table or if its part of a table name so this see what the coder has to say

DragonByte Tech 04-20-2015 07:30 PM

vBSecurity v1.1.4

New Features:

Scheduled Password Reset
  • Enforces a password reset for a user upon next login, via the User Manager in the ACP
  • Mimicks the "Password Expiry" feature in vBulletin
  • Great for forcing users to provide a more secure password

(Pro) Mass Scheduled Password Reset
  • Enforces a password reset for every account upon next login
  • Mimicks the "Password Expiry" feature in vBulletin
  • Great for forcing users to provide a more secure password


Fillip

DragonByte Tech 04-20-2015 07:32 PM

Quote:

Originally Posted by woodmj (Post 2543602)
After ugrading to the latest version there seems to be a problem when a standard password change is effected. Please could you advise? The below error is displayed :

Code:

alter table user add dbtech_vbsecurity_forcenewpass tinyint(1) unsigned not null default '0'

Fillip

ForceHSS 04-20-2015 07:51 PM

Quote:

Originally Posted by woodmj (Post 2543602)
After ugrading to the latest version there seems to be a problem when a standard password change is effected. Please could you advise? The below error is displayed :

Database error in vBulletin 4.2.2:

Invalid SQL:
UPDATE user SET
salt =
passworddate =
password =
dbtech_vbsecurity_forcenewpass =
WHERE userid = ;

MySQL Error : Unknown column 'dbtech_vbsecurity_forcenewpass' in 'field list'
Error Number : 1054
Request Date : Monday, April 20th 2015 @ 10:08:45 AM
Error Date : Monday, April 20th 2015 @ 10:08:45 AM
Script : /profile.php?do=updatepassword
Referrer : /profile.php?do=editpassword
IP Address :
Username :
Classname : vB_Database_MySQLi
MySQL Version : 5.5.41-0ubuntu0.14.04.1

Did not install the latest until now so I see the coder has put in the new table to the update

xxfullclipxx 04-20-2015 08:47 PM

hey guys thanks for the great mods you guys do :) just a quick question say for some odd reason you white list an ip and it changes > how would you then access the acp ? since i am the only one that will access. i want to just have my ip allowed. but if my cable company for some reason switched my ip. what would i do ? would i lose all ability to get in ?

ForceHSS 04-20-2015 10:15 PM

Quote:

Originally Posted by xxfullclipxx (Post 2543681)
hey guys, thanks for the great mods you guys do :) just a quick question say for some odd reason you white list an IP and it changes > how would you then access the acp ? Since I am the only one that will access. I want to just have my IP allowed. But if my cable company for some reason switched my IP. What would I do ? Would I lose all ability to get in?

Best to make yourself a superadmin and don't whitelist your IP if you are locked out you can disable plugins via config, but if that does not work you won't get back in

xxfullclipxx 04-21-2015 08:50 AM

what controls the ban there has to be a way to access phpmyadmin and just remove the banned ip. I was banned by strikes system :( playing with it

since its a fresh install new board its not a huge issue, But it would be nice to be able to do something if this ever happened again when the forum is live and has many users.

woodmj 04-21-2015 09:28 AM

Try removing your IP from setting/banip via PHPMyAdmin.

xxfullclipxx 04-21-2015 09:33 AM

yeah i tried that still same So its storing somewhere else as well

woodmj 04-21-2015 09:53 AM

Maybe try as ForceHSS suggested above and temporarily disable all hooks/plugins to get in and resolve things.

You can do this by inserting the line
define('DISABLE_HOOKS', true);
after the line that reads
<?php
in /includes.config.php on your web server.

xxfullclipxx 04-21-2015 11:21 AM

that didnt work either. I just installed a fresh copy of the forum since it was just in the design stage so it wasn't a big deal. But it would be nice if the the creators could answer what you can do in case this happens.

ForceHSS 04-21-2015 05:34 PM

Quote:

Originally Posted by xxfullclipxx (Post 2543723)
yeah i tried that still same So its storing somewhere else as well

If you cant access your admincp pm me your site url and admin login I will remove your ip from the list. There is a way to unban yourself but unless you know how to giving me access is faster

xxfullclipxx 04-22-2015 09:29 AM

Quote:

Originally Posted by ForceHSS (Post 2543782)
If you cant access your admincp pm me your site url and admin login I will remove your ip from the list. There is a way to unban yourself but unless you know how to giving me access is faster

Thanks for the offer bud :) but i just ended up deleting that forum and just reinstalling it was a brand new instance so it wasnt anything major to lose :)

DragonByte Tech 04-27-2015 05:25 PM

vBSecurity v1.1.4 Patch Level 1

Bug Fixes:
  • Fixed an issue where the mod wasn't initialised in the ModCP


Fillip

DragonByte Tech 05-04-2015 05:54 PM

vBSecurity v1.1.4 Patch Level 2

Bug Fixes:
  • Fixed an issue where the "IP Awaiting Authorisation" message would not display correctly in the DBSEO CP.


Fillip

DragonByte Tech 05-25-2015 07:52 PM

vBSecurity v1.1.4 Patch Level 3

Bug Fixes:
  • The "Unrecognised AdminCP Login From <new IP address>" email would be sent without a subject and body


Fillip

DragonByte Tech 06-01-2015 05:22 PM

vBSecurity v1.1.5

New Features:

AdminCP Login Viewer
  • Paginated list of all AdminCP logins
  • Filter by User Name
  • Filter by start/end date
  • Filter by IP Address
  • Change sort column

AdminCP Login Prune
  • Only accessible to users with the required config.php permission
  • Optional age limit


Fillip

DragonByte Tech 06-15-2015 05:59 PM

vBSecurity v1.1.6

New Features:

Admin Strikes Viewer: Prune
  • Only accessible to users with the required config.php permission
  • Optional age limit

Changes To Existing Features:

General / Other
  • Streamlined the phrasing for the ACP Logins and Admin Strikes interfaces


Fillip

highlander29 06-20-2015 03:58 PM

I just wanted to say this is a really good mod. I have known about it for the last year but had no idea all of what this did based on the description. It's crazy this hasn't won mod of the month yet. Everyone who runs a VBulletin forum should install this. It provides some nice logging that VBulletin doesn't have natively, it adds additional protections for privileged accounts and it provides some nice options for alerting of suspicious behavior. It even has a check you can run and provides suggestions on things you can do to better lock down your system.

I might have more ideas later but the one suggestion I would have for the developers is to consider bundling the strong authentication mod with this one and have some options to selectively turn that on for moderators, supermoderators and administrators - possibly as an alternative to the IP address check. I'd give the option to do both.

DragonByte Tech 06-22-2015 07:23 PM

vBSecurity v1.1.7

New Features:

Change Log Viewer: Prune
  • Only accessible to users with the required config.php permission
  • Optional age limit


Fillip

DragonByte Tech 07-04-2015 07:50 PM

vBSecurity v1.1.7 Patch Level 1

Bug Fixes:
  • Turning off the modification via the vBulletin Options will now work as intended


Fillip

MikeTrin 07-08-2015 10:40 AM

I'm noticing super moderators getting block from the moderator control panel with the blocked message saying they are not white-listed for access to the admincp. I thought this was only for blocking access to the admincp, no one reported any problems to me before the last update to vBSecurity. Am I missing something here?

DragonByte Tech 07-17-2015 07:11 PM

Quote:

Originally Posted by MikeTrin (Post 2549648)
I'm noticing super moderators getting block from the moderator control panel with the blocked message saying they are not white-listed for access to the admincp. I thought this was only for blocking access to the admincp, no one reported any problems to me before the last update to vBSecurity. Am I missing something here?

That was added as a feature, they'll receive an email to confirm their IP addresses :)


Fillip

MikeTrin 07-19-2015 11:40 PM

I thought the feature was added for super administrators. The admin account flagged in the config.php.

I'm talking about super moderators and I'm not seeing any documentation mentioning super moderators.


All times are GMT. The time now is 01:53 PM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01546 seconds
  • Memory Usage 1,843KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)bbcode_code_printable
  • (9)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (3)pagenav_pagelink
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (40)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • pagenav_page
  • pagenav_complete
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete