Overunity.com Archives is Temporarily on Read Mode Only!



Free Energy will change the World - Free Energy will stop Climate Change - Free Energy will give us hope
and we will not surrender until free energy will be enabled all over the world, to power planes, cars, ships and trains.
Free energy will help the poor to become independent of needing expensive fuels.
So all in all Free energy will bring far more peace to the world than any other invention has already brought to the world.
Those beautiful words were written by Stefan Hartmann/Owner/Admin at overunity.com
Unfortunately now, Stefan Hartmann is very ill and He needs our help
Stefan wanted that I have all these massive data to get it back online
even being as ill as Stefan is, he transferred all databases and folders
that without his help, this Forum Archives would have never been published here
so, please, as the Webmaster and Creator of this Forum, I am asking that you help him
by making a donation on the Paypal Button above
Thanks to ALL for your help!!


Explicit content site opens when I enter overunity.com

Started by Fred Flintstone, May 09, 2009, 04:43:32 PM

Previous topic - Next topic

0 Members and 2 Guests are viewing this topic.

hartiberlin

Has anybody any good experience with a good and free
open source website firewall software ?

Is there any PHP package that can block bad spiders
and users, who want to abuse a forum ?

Many thanks.

Regards, Stefan.
Stefan Hartmann, Moderator of the overunity.com forum

powercat

 :D ;D :D ;D
  a different kind of pulse motor  :o

I thought somebody had hacked into my wifi link

  ;) cat

When logic and proportion Have fallen
Go ask Alice When she's ten feet tall

wings

It works with NoScript preference.

I run Firefox under Sandboxie.

http://www.sandboxie.com/

exxcomm0n

Hi Stefan,

I've used a software called moblock (gui control is mobloquer) to disallow connections from various hosts based on online databases that are constantly updated for specific types of hosts or abusive IP ranges. It was originally posted for torrent connections but would work fine for abusive hosts connections to an http server and you can make a custom config file to add hosts not caught by the databases you choose.

IPTABLES is the default firewalling program for linux kernels and has many graphical front ends to work with (firestarter, firewallbuilder, webadmin plugin, etc.) that will do just what moblock does (in fact it is what moblock uses to function).

FAIL2BAN is a nice program that crawls your logs in /var/log and will selectively look for abusive behavior aimed at services like ssh, http, https, xinetd, PAM, etc. and ban the abusive IPs for a specified length of time (I use it for ssh and http(s) ) using iptables rules.

/etc/hosts.deny is a tried and true fall back to disallow certain IPs access
to web services but requires manual filtering of the logs for abuse and manual entry into the file to ban them.

For ease of use, I'd try mixture of moblock  and fail2ban first as they are a "safer" way to manipulate iptables more easily.

Hand hacking iptables rules from command line works just as well, but command syntax is sometimes pretty arcane.

WARNING: With any of these tools it IS possible to lock out any type of network access to the machine if you misconfigure them!!!!

You might want to configure and test them with nmap or wireshark on a differnet machine/test LAN, and then copy the successfully tested configs over to the production machine (web server).

Hope That Helps!
When I stop learning, plant me.

I'm already of less use than a tree.

WilbyInebriated

Quote from: Goat on May 10, 2009, 08:46:49 AM
Hi LowQ

I've have experienced the same problem as you described and posted the server information in the pop-ups thread at http://www.overunity.com/index.php?topic=7441.msg177412#msg177412

The following information is for anyone who is using a Windows operating system and doesn't have Firefox and/or AdBlock and/or NoScript installed, or any other way to block this for that matter:

1. Go to C:\WINDOWS\system32\drivers\etc\hosts (When you double click on it choose to open with Notepad or Wordpad). See picture 1 below.

2.  Copy and paste the following at the end of the file and click save. See picture 2 below.

When this problem has been fixed on the site simply remove the entry from the hosts file and save the changes to bring the hosts file back to it's original state.

Regards,
Paul
paul is right, hosts files work great. if used properly, they can be better than most firewalls. your windows operating systems checks it FIRST before asking your DNS server so why not use it?
personally, i don't use a 'enumerate the badness' policy. it puts you in an endless 'arms race'. i use a deny all and enumerate the goodness, but most people don't even know the difference between ram and rom so... 'default permit' and 'enumerate the badness' it is.

this link makes it easy for anyone, to easily modify their host file to block a ton of crap sites like this russian one.
http://www.mvps.org/winhelp2002/hosts.htm
find the zip file. download it, extract it, run the batch (.bat) file and you're done.
read the page and learn something about how your computer works, it's in lay terms.
i don't use adblock or any firefox plugins and i haven't seen a bit of russian pron...

for those interested, here is a quick read of why using a default permit, and then enumerating the badness is a BAD IDEA.
http://www.ranum.com/security/computer_security/editorials/dumb/
if you read this, be sure to click the link to richard feynman's "Personal Observations on the Reliability of the Space Shuttle". it's a great read too.
There is no news. There's the truth of the signal. What I see. And, there's the puppet theater...
the Parliament jesters foist on the somnambulant public.  - Mr. Universe