Author |
Message |
Caedus
Hangin' Around
![](modules/Forums/images/avatars/blank.gif)
Joined: Jun 21, 2004
Posts: 39
Location: The Netherlands
|
Posted:
Sun Jan 16, 2005 4:27 pm |
|
I'm using Sentinel 1.20.
When someone gets blocked they get a message once, and after that they just can't access the domain anymore. I would like to change the text in the message. I is like this:
Quote: | This IP has been blocked from ***
Your IP: ***
Your Agent: ***
If you think it was blocked by mistake, please contact
*** |
Also I would like blocked visitors to get that page everytime they try to visit the site in stead of:
Quote: | Forbidden
You don't have permission to access / on this server. |
Any suggestions?
EDIT
And a small question: if the setting "Block" is off, does that mean the attempt isn't prevented or does that mean that the ip adres isn't saved? |
_________________
Caedus
|
|
|
![](themes/RavenIce/forums/images/spacer.gif) |
sixonetonoffun
Spouse Contemplates Divorce
![](modules/Forums/images/avatars/d1ecfa674c890aee2698b.jpg)
Joined: Jan 02, 2003
Posts: 2496
|
Posted:
Sun Jan 16, 2005 4:56 pm |
|
You can edit the messages displayed in the abuse directory are the templates pretty much just basic html.
The permission denied is your Apache error handler you can if you have access customize that message or not use the htaccess ban then blocked users will get the abuse page for the specific blocker that was fired off.
Block means block access to the site. This is all covered in depth in the manual. |
_________________ [b][size=5]openSUSE 11.4-x86 | Linux 2.6.37.1-1.2desktop i686 | KDE: 4.6.41>=4.7 | XFCE 4.8 | AMD Athlon(tm) XP 3000+ | MSI K7N2 Delta-L | 3GB Black Diamond DDR
| GeForce 6200@433Mhz 512MB | Xorg 1.9.3 | NVIDIA 270.30[/size:2b8 |
|
|
![](themes/RavenIce/forums/images/spacer.gif) |
Caedus
![](modules/Forums/images/avatars/gallery/blank.gif)
|
Posted:
Mon Jan 17, 2005 9:12 am |
|
No template files in mine abuse dir. The only files I've in there are:
.htaccess
abuse.php
abuse.swf
GanjaUKevil.swf
index.html
You're sure there should be template files with the 1.20 version?
And about the settings, the manual states this with the email setting:
Quote: | Email Admin - Sends an email to the Admin(s) listed in the NukeSentinel™ Administration page |
So my conclusion would be that it doesn't block the attack, it just sends me an email. However that seems not logical. So does it just block that one attack and nothing more? |
|
|
|
![](themes/RavenIce/forums/images/spacer.gif) |
JRSweets
Worker
![Worker Worker](modules/Forums/images/ranks/3stars.gif)
![](modules/Forums/images/avatars/1893895841d22f8dea615.gif)
Joined: Aug 06, 2004
Posts: 192
|
Posted:
Mon Jan 17, 2005 10:04 am |
|
You should really upgrade to 2.1.3
You are using a real old version.
The tpl files began with 2.0 I think. |
|
|
|
![](themes/RavenIce/forums/images/spacer.gif) |
Caedus
![](modules/Forums/images/avatars/gallery/blank.gif)
|
Posted:
Mon Jan 17, 2005 5:11 pm |
|
Maybe so, but I won't upgrade just for the error message, I just want an answer on my questions.
I don't think it's worth all the trouble upgrading. Is there any significant reason why I should upgrade? Is for example, my version not capable of blocking hackers when compared to the newest version? I'm using nuke 6.9 btw. |
|
|
|
![](themes/RavenIce/forums/images/spacer.gif) |
JRSweets
![](modules/Forums/images/avatars/gallery/blank.gif)
|
Posted:
Mon Jan 17, 2005 8:35 pm |
|
Well Six provided the answer to one of your questions. Don't set the ip address to be written to .htaccess . You would then have to remove any entry already there. That would stop the forbidden message.
I am not sure how to change the display in 1.2 because the newest uses simple tpl files.
I am pretty sure that the newest version 2.1.3 is faster, more secure, and protects your site better, but Raven, Bob, or six would have to confirm this. |
|
|
|
![](themes/RavenIce/forums/images/spacer.gif) |
Caedus
![](modules/Forums/images/avatars/gallery/blank.gif)
|
Posted:
Tue Jan 18, 2005 8:08 am |
|
Hmm, ok I will have to think about it. One more thing though: is the newest version more user friendly or does it look more complex compared to the older ones? |
|
|
|
![](themes/RavenIce/forums/images/spacer.gif) |
JRSweets
![](modules/Forums/images/avatars/gallery/blank.gif)
|
Posted:
Tue Jan 18, 2005 11:54 am |
|
No it very user friendly. Every option has a "?" that when you are putting your mouse over it, it explains the feature. |
|
|
|
![](themes/RavenIce/forums/images/spacer.gif) |
Caedus
![](modules/Forums/images/avatars/gallery/blank.gif)
|
Posted:
Tue Jan 18, 2005 12:26 pm |
|
Ah ok. Well, I think I will try it out. Problem is, that I've tweaked my sentinel system, so that all my sites use the same installation and database.
I've still this question though: does the 'Email admin' setting only email when a hack is attempted, or does it also block the attack? |
|
|
|
![](themes/RavenIce/forums/images/spacer.gif) |
JRSweets
![](modules/Forums/images/avatars/gallery/blank.gif)
|
Posted:
Tue Jan 18, 2005 1:38 pm |
|
This is from the sentinel manual
Quote: | Off - Turns off this protection method
Email Admin - Sends an email to the Admin(s) listed in the NukeSentinel™ Administration page
Forward - Forwards the attacker to the URL listed in the Forward to.
Default Page - Sends the attacker to the default NukeSentinel™ banned page
Email & Forward - Sends an email, and forwards attacker to the URL
Email & Default Page - Sends an email and sends attacker to the default page
Email, Block & Forward - Sends an email, blocks the IP by adding to .htaccess and the database, and forwards to the URL
Email, Block, & Default Page - Sends an email, blocks the IP by adding to .htaccess and the database, and sends the attacker to the default page |
As long as its not turned to "off" the attack will be blocked. If you set it to 'Email Admin' the hack will be blocked and you will be notified. |
|
|
|
![](themes/RavenIce/forums/images/spacer.gif) |
Deseroka
Client
![](modules/Forums/images/avatars/Animaniacs/Animaniacs_-_Stinkbomb.gif)
Joined: Apr 15, 2003
Posts: 466
Location: FL
|
Posted:
Wed Jan 19, 2005 1:02 pm |
|
I'm so thankful for people with patience. ![Wink](modules/Forums/images/smiles/icon_wink.gif) |
|
|
|
![](themes/RavenIce/forums/images/spacer.gif) |
Caedus
![](modules/Forums/images/avatars/gallery/blank.gif)
|
Posted:
Wed Jan 19, 2005 5:29 pm |
|
Yo Deseroka, as I wrote a few posts before, if it just says 'Sends an email' how can I know for sure that it also blocks the attack?
Anyway, JRSweets, do not think I don't appreciate your patience, 'cause I do ! Thanks for all the info! |
|
|
|
![](themes/RavenIce/forums/images/spacer.gif) |
JRSweets
![](modules/Forums/images/avatars/gallery/blank.gif)
|
Posted:
Thu Jan 20, 2005 11:11 am |
|
Have someone try a exploit and set it to "Send an email". And see what it does. |
|
|
|
![](themes/RavenIce/forums/images/spacer.gif) |
|