11.2.4.Behaviour when the checksums file cannot be downloaded

11.2.4.Behaviour when the checksums file cannot be downloaded

If Admin Tools cannot download the checksums file — for example, because the server has no outbound internet access, the download times out, or the CoreSums service is temporarily unavailable — the scan still completes normally. In this situation no file is classified as core, non-core, or tampered; the scanner falls back to its original behaviour for every file.

A dismissible warning is displayed on the Control Panel and on the PHP File Change Scanner page to let you know that core verification was skipped. The warning is cleared automatically the next time a scan runs and the checksums file is downloaded successfully.

Two options in the component Options page let you tune the download behaviour: CoreSums service URL (the base URL of the checksums service; default https://getpanopticon.com/checksums) and CoreSums download timeout (seconds) (how long Admin Tools waits for the download before giving up; default 5 seconds). Reducing the timeout is useful on servers with strict outbound connection limits; increasing it may help on slow or geographically distant connections.