• 1

Read this first!

We do not monitor these forums. The forum is provided to exchange information and experience with other users ONLY. Forum responses are not guaranteed.

However, please submit a ticket if you have an active subscription and wish to receive support. Our ticketing system is the only way of getting in touch with RSJoomla! and receiving the official RSJoomla! Customer Support.

For more information, the Support Policy is located here.

Thank you!

TOPIC: Can RSFirewall be bypassed?

Can RSFirewall be bypassed? 11 years 2 months ago #26416

Found a site today that describes how to get by RSFirewall.
I'm not that technical, so I wonder if there are settings that would help prevent this?

[link removed - we do not link to hacking forums]

Just want to make sure my sites are as safe as possible.
Last Edit: 11 years 2 months ago by octavian.
The administrator has disabled public write access.

Can RSFirewall be bypassed? 11 years 2 months ago #26427

  • octavian
  • octavian's Avatar
  • OFFLINE
  • RSJoomla! Official Staff
  • Posts: 783
  • Thank you received: 110
The "bypassing" in the article is quite useless - you have to have access to the database to do it. That's actually how we suggest you disable RSFirewall! manually, straight from our docs. In other words, if somebody has access to your database (that's why it's password protected!) they can do pretty much what they want with your website. There's also a method described how to disable RSFirewall! completely. You don't need to be hacker to do that - it's information from our website. Still, it requires administrative access to your website's files, so would that mean that RSFirewall! can be bypassed? Certainly not, because if somebody has access to either the database or files, your site is already breached.
The "hackers" here were actually surprised that RSFirewall! prevented them to change administrators' passwords or add new administrator accounts and hence the reason for their topic. That's one of the reasons we've implemented such a security feature :)
Please note: my help is not official customer support. To receive your support, submit a ticket by clicking here
Regards,
RSJoomla! Development Team
Last Edit: 11 years 2 months ago by octavian.
The administrator has disabled public write access.
  • 1

Read this first!

We do not monitor these forums. The forum is provided to exchange information and experience with other users ONLY. Forum responses are not guaranteed.

However, please submit a ticket if you have an active subscription and wish to receive support. Our ticketing system is the only way of getting in touch with RSJoomla! and receiving the official RSJoomla! Customer Support.

For more information, the Support Policy is located here.

Thank you!