Saving cusom htaccess code, resulting in 403

Home Forums BulletProof Security Free Saving cusom htaccess code, resulting in 403

Tagged: 

Viewing 2 posts - 1 through 2 (of 2 total)
  • Author
    Posts
  • #34571
    kander
    Participant

    Hi

    Im trying to save a custom code (Root htaccess File Custom Code) in the 1. … Handler/Cache Code. Ive did this several times but after the newest update of wordpress / BPS I receive this:

    [403 POST Request: 16. November 2017 - 21:29] 
    BPS: 2.8 
    WP: 4.9 Event Code: WPADMIN-SBR 
    Solution: https://forum.ait-pro.com/forums/topic/security-log-event-codes/ 
    REMOTE_ADDR: 202.5.4.12 
    Host Name: pub.dh-hfc.com 
    SERVER_PROTOCOL: HTTP/1.1 
    HTTP_CLIENT_IP: 
    HTTP_FORWARDED: 
    HTTP_X_FORWARDED_FOR: 
    HTTP_X_CLUSTER_CLIENT_IP: 
    REQUEST_METHOD: POST 
    HTTP_REFERER: https://page.com/wp-admin/admin.php?page=bulletproof-security%2Fadmin%2Fcore%2Fcore.php 
    REQUEST_URI: /wp-admin/admin.php?page=bulletproof-security/admin/core/core.php 
    QUERY_STRING: page=bulletproof-security/admin/core/core.php 
    HTTP_USER_AGENT: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:56.0) Gecko/20100101 Firefox/56.0 REQUEST BODY: _wpnonce=7893a13bda&_wp_http_referer=%2Fwp-admin%2Fadmin.php%3Fpage%3Dbulletproof-security%2Fadmin%2Fcore%2Fcore.php&bps_customcode_one=%23+PHP%2Fphp.ini+handler+htaccess+code%0D%0AAddHandler+application%2Fx-httpd-php70+.php%0D%0A%0D%0ARewriteCond+%25%7BREQUEST_FILENAME%7D+%21-f%0D%0ARewriteCond+%25%7BREQUEST_FILENAME%7D+%21-d%0D%0ARewriteRule+%5E%28.%2B%29%5C.%28%5Cd%2B%29%5C.%28js%7Ccss%7Cpng%7Cjpg%29%24+%241.%243+%5BL%5D%0D%0A%0D%0A%23+BEGIN+WEBSITE+SPEED+BOOST%0D%0A%23+Time+cheat+sheet+in+se

    Searching for the event code on ait-pro.com shows me something like I should create Plugin/Theme skip/bypass rule.
    Ime somehow stuck in space now. Out of the log above I can not see which plugin or theme is affected and HOW the custom code should look.

    Thanks a lot for any help

    #34572
    AITpro Admin
    Keymaster

    Sounds like a typical Mod Security issue/problem that we are seeing fairly regularly in the last several months.  See this forum topic > https://forum.ait-pro.com/forums/topic/mod-security-common-known-problems/ for how to get the issue resolved.  Not every web host has the same cPanel Mod Security options available so depending on what your particular web host does or does not offer you “option-wise”, you may need to contact your web host support folks for help with changing Mod Security settings/rules.

Viewing 2 posts - 1 through 2 (of 2 total)
  • You must be logged in to reply to this topic.