By stackideas newbie on Sunday, 09 August 2015
Posted in Technical Issues
Likes 0
Views 0.9K
Votes 0
Dear Tech Support,

Similar to my post about Polls in ED, it came to light that access to password protected posts is being flagged as an attack by firewall as well. Attached please find screen captures of both the error and log from Securitycheck.

In the meantime, I have created an exception for 2nd level protection to circumvent the issue.

I also noticed that public (Guests) are able to access password protected posts from the top page by entering the password without any need for logging in. This increases the level of vulnerability, whereby, non-registered persons (who wouldn't have been vetted) could hack into these posts if they are able to guess the password.

Could you help look into the above?

Thanks!
As long as you have the password to the post, you will be able to view the post by entering the password. However, that being said, your post needs to be visible to the public (category permissions) as well.
·
Monday, 10 August 2015 02:27
·
0 Likes
·
0 Votes
·
0 Comments
·
There is really nothing we can do about this if your "firewall" is being overly sensitive. This is just a task name that is used to submit your password to verify if you are really allowed to view the post.
·
Monday, 10 August 2015 02:11
·
0 Likes
·
0 Votes
·
0 Comments
·
Understand. That confirms my suspicion and validates my decision to override. Thanks, Mark!

What about the ability to access password protected posts without logging in?
·
Monday, 10 August 2015 02:20
·
0 Likes
·
0 Votes
·
0 Comments
·
Would have preferred tighter security for password protected posts but understand.

Thanks, Mark!
·
Monday, 10 August 2015 03:07
·
0 Likes
·
0 Votes
·
0 Comments
·
Hi there,

You are most welcome.
·
Monday, 10 August 2015 10:46
·
0 Likes
·
0 Votes
·
0 Comments
·
View Full Post