Support

Admin Tools

#26403 Google Bot/ Bot Simulator 403

Posted in ‘Admin Tools for Joomla! 4 & 5’
This is a public ticket

Everybody will be able to see its contents. Do not include usernames, passwords or any other sensitive information.

Environment Information

Joomla! version
n/a
PHP version
n/a
Admin Tools version
n/a

Latest post by on Sunday, 27 November 2016 17:17 CST

atolli
 I get a block from Admin Tools on Botsimulator and Google Bot (Fetch) on petrakersten.com.

How to circumvent this?

dlb
Please check .htaccess Maker, in the list of user agents to block to make sure your bots are not included. If they are, you need to delete them from the list and regenerate your .htaccess file. Note that some host cache the .htaccess files so it may take a while for your changes to be effective.


Dale L. Brackin
Support Specialist


us.gifEnglish: native


Please keep in mind my timezone and cultural differences when reading my replies. Thank you!


????
My time zone is EST (UTC -5) (click here to see my current time in Philadelphia, PA)

atolli
I disabled Admintools and all works just fine. So how can I resolve this?

atolli
This is htaccess no blocks!

atolli

dlb
If they are blocked by WAF there should be a record in the Security Exceptions Log that tells why they are blocked. Please post the reason here and we can figure out how to create the exception to allow they to work.


Dale L. Brackin
Support Specialist


us.gifEnglish: native


Please keep in mind my timezone and cultural differences when reading my replies. Thank you!


????
My time zone is EST (UTC -5) (click here to see my current time in Philadelphia, PA)

atolli
I did check that there are no entries in the Security Log for Googlebot.

dlb
WAF wouldn't block a bot because it's a bot, that only happens in .htaccess. It would be an IP address blocked because of some suspicious behavior. You can trigger your 403 error then immediately check the log. If the log is sorted by date, it should be the top entry.


Dale L. Brackin
Support Specialist


us.gifEnglish: native


Please keep in mind my timezone and cultural differences when reading my replies. Thank you!


????
My time zone is EST (UTC -5) (click here to see my current time in Philadelphia, PA)

atolli
Thanks for the hint on the log. I imagine the GEO blocked it!!! Thank you, sorry for the trouble

dlb
You're welcome!


Dale L. Brackin
Support Specialist


us.gifEnglish: native


Please keep in mind my timezone and cultural differences when reading my replies. Thank you!


????
My time zone is EST (UTC -5) (click here to see my current time in Philadelphia, PA)

atolli
But how come i did Geo block and it allows .googlebot.com? Does not that override?

dlb
It can be blocked by either .htaccess or WAF. But it has to be allowed by both in order to work. If something is allowed in one it does not override a block by the other.


Dale L. Brackin
Support Specialist


us.gifEnglish: native


Please keep in mind my timezone and cultural differences when reading my replies. Thank you!


????
My time zone is EST (UTC -5) (click here to see my current time in Philadelphia, PA)

atolli
So how can I do both, as some of my clients do not have a market in the US? So googlebot is save in WAF but in htaccess i have nothing for Googlebot to be ok, despite Geoblock?

dlb
If you GeoIP block the USA, you will block the googlebot. There is no way around that.

The GeoIP blocking is really not all that effective. It is trivial for a human attacker to use a different compromised computer, log in through a proxy server, etc.  The block will stop most scripts but that is about it. In addition, we are using the free version of MindMax's database, which is only about 90% accurate. Their paid version is better, but not cheap.


Dale L. Brackin
Support Specialist


us.gifEnglish: native


Please keep in mind my timezone and cultural differences when reading my replies. Thank you!


????
My time zone is EST (UTC -5) (click here to see my current time in Philadelphia, PA)

System Task
system
This ticket has been automatically closed. All tickets which have been inactive for a long time are automatically closed. If you believe that this ticket was closed in error, please contact us.

Support Information

Working hours: We are open Monday to Friday, 9am to 7pm Cyprus timezone (EET / EEST). Support is provided by the same developers writing the software, all of which live in Europe. You can still file tickets outside of our working hours, but we cannot respond to them until we're back at the office.

Support policy: We would like to kindly inform you that when using our support you have already agreed to the Support Policy which is part of our Terms of Service. Thank you for your understanding and for helping us help you!