Can someone explain to me why my scripts are not working like they use to.
I have worked my tail off on my CRE loaded cart and now I can’t add no freaking products, everyime I add a product and go to save i get page cant be found.
This was working, because the old products I already added loaded fine. I took these old products and tested and hit save and even get page can’t be found on these also.
What is going on???
One of my clients had the same issue on a coppergallery script.
Did you guys change maybe a image limit on MYSQL, because if I don’t load a picture on my products its fine.
ANd my client who uses coppergallery is having the same problem as me with any images over 100k she gets page can’t be fine. If her image is under 100k its fine???
SO for some reason my CRE Loaded and her coppergalley is acting the same with same issues looks like with images???
just as a FYI, this has nothing to do with databases at all, it is due to some new rules on mod security to prevent hackers from being able to expliot non updated sites that are running old software.
you need to submit a ticekt for resolution, include url’s and preferrably your IP as well, it will make it easier to track the error and cause.
This is a real pain. Maybe it is necessary, but I’ve never been through such trivial troubleshooting on so many sites at once. I think I’d rather have a 1 hour network outage than deal with this.
How often does this happen? It happened a couple months back too. I sure hope this isn’t something I have to get used to, because I won’t.
I lost 2 days, thinking it was the CRE Loaded script and almost gave up on the thing., 2 days of tweaking code thinking it was me… X( X( Can’t afford to lose this time at the moment.
I tell you one thing, I want this ticket fixed, I have wasted 2 days on this issue and now support can’t get back to me.
I sugggest getttingTanmaya or someone to fix this issue A.S.A.P. that knows what is going on. My client is getting up set and TIME IS MONEY and I cant afford to waste time on this project.
I have wasted 2 days not even knowing it was some security mod, and thinking something I was doing. Maybe post in fourm about these type of things, so people don’t think its there mistake making it happen. I almost threw away the cart to use another one after all my work thinking CRE was no good.
Was this change announced? I too had some problems, in my case with CMS scripts. I was getting 403 Forbidden errors. I’d edit a page and click Submit and then get the 403 on the “action” page. I tried various file permission settings including 777 to no avail.
Eventually I found a thread on that CMS’s support forum suggesting to add the following to the .htaccess. It worked for me, though I have no idea of the ramifications of the change.
SecFilterEngine Off
SecFilterScanPOST Off
It would be nice if such changes were announced so that we could be prepared. If it was announced, I missed it and I guess I should have been more diligent in watching for such announcements.
Tim, mod_security was always available and working on servers with fewer rules.
I’m sure going to do changes here, but we were forced into applying updated rules(this is all what is done).
You can search for threads about being hacked, etc on forums and majority of it is code exploits where some malacious scripts are uploaded and used many many months later, so you may not have that old logs.
Please always feel free to ask us along with steps to replicate the issue.
You sure can conclude quicker this way. We prefer via tickets for better response times, as forums are not attended reguarly and chat can be L1 techs only (infact it will be mostly L1 level support only in future).
I have been sending tickets, and getting things fixed one by one, but this is hard with this mess. I am putting new tickets in for my live chat and clients form mail. Please look for it.
We understand and I’m having Deepak do some changes here. I would say i’ve seen some very encouraging results in logs, but since most customer won’t agree to wait and get this resolved with us, we are going this way.
All i can say here is please keep your applications updated and secure. This helps you and other users on the server as well. We have 0 cases of server-side hack and 100% of what we have seen is application hacks, so its up to customers again to deal with this completely. Most of the rules will remain there but not the most effective ones.