Home › Forums › Product Support Forums › Ajax Search Pro for WordPress Support › unable to access secureservercdn2.net
- This topic has 6 replies, 2 voices, and was last updated 1 year, 8 months ago by
Ernest Marcinko.
-
AuthorPosts
-
September 19, 2024 at 4:49 am #49399
mindthegip
ParticipantHello,
when I try to save a new search instance settings (i.e. adding a new search source), I got this error message:Sorry, you have been blocked
You are unable to access secureservercdn2.netCan you please help?
Thanks!September 19, 2024 at 7:51 am #49400Ernest Marcinko
KeymasterHi,
Sure!
The block is reported by Cloudflare firewall – it is a false positive match. Unfortuantely there are no other details available. It happens because cloudflare heuristics picks up a “suspicious” payload when submitting the form. Cloudflare firewall is very complex and has hundreds of thousands of active rules, I have had similar issue with other plugins too, so it’s not uncommon. Most of the time a word or a string triggers it within the settings.
Can you please add temporary FTP access so I can make changes to the search plugin files? I will try to debug ste-by-step the submitted payload to see which value cloudflare doesn’t like. It’s a painful process, but at least I will know what to look for if this issue may repeat for someone else.
September 19, 2024 at 8:34 am #49401mindthegip
ParticipantHi Ernest, unfortunately I have no FTP credentials to share.
Could you please access the needed file throug https://cometohive.com/wp-admin/admin.php?page=wp_file_manager ???
Otherwise send me the updated file with the path to reach it and overwrite it.
Thanks!September 19, 2024 at 12:21 pm #49402Ernest Marcinko
KeymasterI tried the file manager, but it is not working correctly, it’s not loading all the files, reverts back to the base directory and takes over 3 minutes to open a file – I guess the firewall does not like that either. If it’s possible to adjust the firewall, I strongly suggest that.
Either way, I will try to replicate this on one of our test servers with the highest firewall settings to see if I can get the same errror and go from there. This is unfortunately not a simple plug fix, first I need to be able to tell what exactly triggers it.
I will get back to you soon.
September 19, 2024 at 1:03 pm #49403Ernest Marcinko
KeymasterGood news! I have very likely found the culprit. Because of a previous Yoast SEO plugin vulerability, Cloudflare has a trigger for a post variable “orderby”. This was detected falsely and triggered the block on our ends.
I’m attaching the patched version to this post, please install and activate it. After that the issue should go away.
September 19, 2024 at 1:17 pm #49415mindthegip
Participantyeah it is working! thanks!
September 19, 2024 at 1:22 pm #49416Ernest Marcinko
KeymasterGreat! I will make sure to have this included in the upcoming version 🙂 Thanks for the feedback!
If you don’t mind, I will close this topic soon and mark it as resolved, feel free to open another one if you have other questions or issues.
If you like the plugin and have not rated already, feel free to leave a rating on your codecanyon downloads page and on the wordpress plugin repository, it’s greatly appreciated.
-
AuthorPosts
- You must be logged in to reply to this topic.