Go Back   vb.org Archive > vBulletin 4 Discussion > vB4 Programming Discussions
FAQ Community Calendar Today's Posts Search

Reply
 
Thread Tools Display Modes
  #21  
Old 10-30-2014, 02:07 AM
hilaryl hilaryl is offline
 
Join Date: Jan 2006
Location: Brisbane, Australia
Posts: 110
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by Mark.B View Post
It's not just about bugs, your site is *definitely* insecure at the moment due to unpatched security issues. To patch those you need to upgrade.
Is this the case even if we have the latest patch's for our version?
Reply With Quote
  #22  
Old 10-30-2014, 03:46 AM
CAG CheechDogg's Avatar
CAG CheechDogg CAG CheechDogg is offline
 
Join Date: Feb 2012
Location: Riverside, California USA
Posts: 1,080
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

I had this happen to me a while back, about a year or so ago maybe a bit longer and the issue was search bots hitting our site like fire ants .... the main ones were:

AhrefsBot
Baiduspider
Ezooms
MJ12bot
YandexBot

I used Ban Spiders by User Agent to help with this issue ... now these bots and others don't hit the search feature which is something others around here will say doesn't happen with bots ...

If it worked for me I am sure it will work for you... there is also other things you can do to limit and reduce the amount of hits on your search feature.... you also want to check your mods to see if they are updated .. some modes can attract unwanted activity and actions on your forums ....

And about upgrading .... if you are careful with your site, forums and stay on top of security and suspicious behaviour you don't need to upgrade at all ... I don't mean to insult any of the previous individuals who say you should upgrade but it is not necessary to do so at all ....
Reply With Quote
Благодарность от:
tbworld
  #23  
Old 10-30-2014, 04:19 PM
Lynne's Avatar
Lynne Lynne is offline
 
Join Date: Sep 2004
Location: California/Idaho
Posts: 41,180
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by hilaryl View Post
Is this the case even if we have the latest patch's for our version?
Yes. Only 4.2.2 and 4.2.3 have the latest security fixes. http://www.vbulletin.com/forum/forum...-2-2-and-4-2-3
Reply With Quote
Благодарность от:
CAG CheechDogg
  #24  
Old 10-30-2014, 05:27 PM
TheLastSuperman's Avatar
TheLastSuperman TheLastSuperman is offline
Senior Member
 
Join Date: Sep 2008
Location: North Carolina
Posts: 5,844
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Limited space as someone said above and on rare occasions it could be related to spam, check the session table for an insane amount of entries (30k+ records) because once it hits around 30k records the session table is nothing but trouble and you need to truncate the table.

I'm pretty sure the disk space is the factor as Marv mentioned, tracing down the issue before attempting a fix is the best way to go about this though. As the others said upgrade to 4.2.2 in the least as 4.2.3 is still marked as Beta.
Reply With Quote
Благодарность от:
CAG CheechDogg
  #25  
Old 10-30-2014, 05:28 PM
tbworld tbworld is offline
 
Join Date: Oct 2008
Posts: 2,126
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by CAG CheechDogg View Post
And about upgrading .... if you are careful with your site, forums and stay on top of security and suspicious behaviour you don't need to upgrade at all ... I don't mean to insult any of the previous individuals who say you should upgrade but it is not necessary to do so at all ....
I have looked at the latest patches to vBulletin and although I have not tried to exploit the possible vulnerabilities, it does seem prudent to make the changes. When vBulletin releases their patched distribution, script kiddies get to work and try to exploit older boards that have not upgraded. Granted most of the script kiddies aren't the brightest, but it only takes one to release an attacking script.

Everything else I agree with you. Your still the man.
Reply With Quote
Благодарность от:
CAG CheechDogg
  #26  
Old 10-31-2014, 06:14 PM
CAG CheechDogg's Avatar
CAG CheechDogg CAG CheechDogg is offline
 
Join Date: Feb 2012
Location: Riverside, California USA
Posts: 1,080
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by tbworld View Post
I have looked at the latest patches to vBulletin and although I have not tried to exploit the possible vulnerabilities, it does seem prudent to make the changes. When vBulletin releases their patched distribution, script kiddies get to work and try to exploit older boards that have not upgraded. Granted most of the script kiddies aren't the brightest, but it only takes one to release an attacking script.

Everything else I agree with you. Your still the man.
I hear you tbworld ... thanks for the little props lol ... And I was thinking after my post and for those who aren't as active and "savvy" maybe as most of us it would be best for them to update or upgraded to the latest version with patches ...

It was not at all smart or considerate of myself to say that upgrading is not necessary and I apologize to everyone ... because we should all upgrade and install the patches regardless of our experience to "avoid" headaches later on ...

So I am really truly sorry you guys ...
Reply With Quote
  #27  
Old 10-31-2014, 06:32 PM
tbworld tbworld is offline
 
Join Date: Oct 2008
Posts: 2,126
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

You are being too hard on yourself. I think in general you were referring to upgrades not vulnerability patches. In this case I just happened to be snooping at the changes they made in the code from v4.2.2 to v4.2.3. I'm a big snoop!

You do way more good around here then any slight miswording error. I have to retreive my own foot out of my mouth at least once a day. I was trying to inform, not cast judgement, I am sorry if it felt that way.
Reply With Quote
Благодарность от:
RichieBoy67
  #28  
Old 11-01-2014, 02:53 AM
RichieBoy67's Avatar
RichieBoy67 RichieBoy67 is offline
 
Join Date: Apr 2004
Location: CT - Down in a hole..
Posts: 3,057
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

I second that.

Don't worry about Cheech!
Reply With Quote
  #29  
Old 11-02-2014, 10:58 PM
hilaryl hilaryl is offline
 
Join Date: Jan 2006
Location: Brisbane, Australia
Posts: 110
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Hi everyone,

First of all - thanks for all your feedback and suggestions. It has definitely helped to isolate where we should be looking, and what we should be looking for.

After some trial and error testing, we did find that during our nightly database back-ups, we were running out of space on the server. This caused somewhat of a chain effect which was congesting our mysql database, effectively shutting it down. Somewhere in that chain, the 'searchcore_text' table was trying to be optimised, and because of a lack of space, this couldn't complete and left the table corrupt.

We will obviously need to upgrade the space on our server - which is our next step.

The 'searchcore_text' was a contributor to our issue, but only because of the sheer size of the table. We will potential have to look at making this smaller without jeopardising the search function of our forum.

And then look at upgrading to the latest vBulletin.

Thanks again,
hilaryl
Reply With Quote
  #30  
Old 11-02-2014, 11:26 PM
Marv Marv is offline
 
Join Date: Jun 2002
Location: Germany
Posts: 372
Благодарил(а): 0 раз(а)
Поблагодарили: 0 раз(а) в 0 сообщениях
Default

Quote:
Originally Posted by hilaryl View Post
Hi everyone,

First of all - thanks for all your feedback and suggestions. It has definitely helped to isolate where we should be looking, and what we should be looking for.

After some trial and error testing, we did find that during our nightly database back-ups, we were running out of space on the server. This caused somewhat of a chain effect which was congesting our mysql database, effectively shutting it down. Somewhere in that chain, the 'searchcore_text' table was trying to be optimised, and because of a lack of space, this couldn't complete and left the table corrupt.

We will obviously need to upgrade the space on our server - which is our next step.

The 'searchcore_text' was a contributor to our issue, but only because of the sheer size of the table. We will potential have to look at making this smaller without jeopardising the search function of our forum.

And then look at upgrading to the latest vBulletin.

Thanks again,
hilaryl
Good to hear you were able to figure that out. We had ourselfs a hard night until we stumbled over the disk quota issue, when we run into that. Nice to get a feedback that we could help you out getting back in the tracks.
Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT. The time now is 08:52 AM.


Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.
X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.04347 seconds
  • Memory Usage 2,282KB
  • Queries Executed 13 (?)
More Information
Template Usage:
  • (1)SHOWTHREAD
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)ad_showthread_beforeqr
  • (1)ad_showthread_firstpost
  • (1)ad_showthread_firstpost_sig
  • (1)ad_showthread_firstpost_start
  • (5)bbcode_quote
  • (1)footer
  • (1)forumjump
  • (1)forumrules
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (1)navbar
  • (3)navbar_link
  • (120)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (3)pagenav_pagelink
  • (10)post_thanks_box
  • (5)post_thanks_box_bit
  • (10)post_thanks_button
  • (1)post_thanks_javascript
  • (1)post_thanks_navbar_search
  • (5)post_thanks_postbit
  • (10)post_thanks_postbit_info
  • (10)postbit
  • (10)postbit_onlinestatus
  • (10)postbit_wrapper
  • (1)spacer_close
  • (1)spacer_open
  • (1)tagbit_wrapper 

Phrase Groups Available:
  • global
  • inlinemod
  • postbit
  • posting
  • reputationlevel
  • showthread
Included Files:
  • ./showthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/functions_bigthree.php
  • ./includes/class_postbit.php
  • ./includes/class_bbcode.php
  • ./includes/functions_reputation.php
  • ./includes/functions_post_thanks.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_postinfo_query
  • fetch_postinfo
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • showthread_start
  • showthread_getinfo
  • forumjump
  • showthread_post_start
  • showthread_query_postids
  • showthread_query
  • bbcode_fetch_tags
  • bbcode_create
  • showthread_postbit_create
  • postbit_factory
  • postbit_display_start
  • post_thanks_function_post_thanks_off_start
  • post_thanks_function_post_thanks_off_end
  • post_thanks_function_fetch_thanks_start
  • fetch_musername
  • post_thanks_function_fetch_thanks_end
  • post_thanks_function_thanked_already_start
  • post_thanks_function_thanked_already_end
  • postbit_imicons
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • postbit_display_complete
  • post_thanks_function_can_thank_this_post_start
  • post_thanks_function_fetch_thanks_bit_start
  • post_thanks_function_show_thanks_date_start
  • post_thanks_function_show_thanks_date_end
  • post_thanks_function_fetch_thanks_bit_end
  • post_thanks_function_fetch_post_thanks_template_start
  • post_thanks_function_fetch_post_thanks_template_end
  • pagenav_page
  • pagenav_complete
  • tag_fetchbit_complete
  • forumrules
  • navbits
  • navbits_complete
  • showthread_complete