Login
User Name:

Password:



Register

Forgot your password?
do_owhere recursive
Author: Khonsu
Submitted by: Khonsu
Changes list / Addchange
Author: Khonsu
Submitted by: Khonsu
6Dragons mp3 sound pack
Author: Vladaar
Submitted by: Vladaar
AFKMud 2.2.3
Author: AFKMud Team
Submitted by: Samson
SWFOTEFUSS 1.5
Author: Various
Submitted by: Samson
Users Online
DotBot, Bing, Yandex

Members: 0
Guests: 10
Stats
Files
Topics
Posts
Members
Newest Member
489
3,794
19,649
596
Elwood

Today's Birthdays
There are no member birthdays today.
» SmaugMuds » General » General Discussions » Is there a problem with mudby...
Forum Rules | Mark all | Recent Posts

Is there a problem with mudbytes?
< Newer Topic :: Older Topic >

Pages:<< prev 1, 2 next >>
Post is unread #1 Jun 6, 2009 4:32 pm   
Go to the top of the page
Go to the bottom of the page

Keberus
Conjurer
GroupFUSS Project Team
Posts341
JoinedJun 4, 2005

 
Is there a problem with mudbytes.net or am I actually banned? I tried going there a couple of times now and I get hit with...

You have been banned from viewing any portion of this board.


If my IP is indeed banned, and it isn't a problem for everyone, could someone post or PM me an email addy so I can email the admin to get my IP unbanned if possible.


Thanks,
KeB

Post is unread #2 Jun 6, 2009 4:55 pm   
Go to the top of the page
Go to the bottom of the page

David Haley
Sorcerer
GroupMembers
Posts903
JoinedJan 29, 2007

 
I've brought this up with Davion -- hopefully it'll get worked out soon. I don't have any issues with MB.

Post is unread #3 Jun 6, 2009 4:55 pm   
Go to the top of the page
Go to the bottom of the page

Davion
Fledgling
GroupMembers
Posts4
JoinedMar 2, 2008

 
Keb! Noo! PM me your IP and I'll fix it up for ya ;).

Post is unread #4 Jun 6, 2009 4:58 pm   Last edited Jun 6, 2009 5:01 pm by Hanaisse
Go to the top of the page
Go to the bottom of the page

Hanaisse
Magician
GroupMembers
Posts196
JoinedNov 25, 2007

 
Sorry to hear that, it works fine for me.

The contact info just says to PM Samson; Davion; Asylumius; Kiasyn. No email info. I suppose you could just wait for Samson to read this or contact him through here easier.


Edit: Or, what they said above. lol, gotta love posting at the same time.

Post is unread #5 Jun 6, 2009 5:03 pm   
Go to the top of the page
Go to the bottom of the page

Keberus
Conjurer
GroupFUSS Project Team
Posts341
JoinedJun 4, 2005

 
Alrighty, PM'ed Davion with my IP. Thanks for the quick repiles guys.

Peace

Post is unread #6 Jun 6, 2009 5:46 pm   
Go to the top of the page
Go to the bottom of the page

Keberus
Conjurer
GroupFUSS Project Team
Posts341
JoinedJun 4, 2005

 
Problem was indeed resolved.

Thanks,
KeB

Post is unread #7 Jun 6, 2009 11:50 pm   
Go to the top of the page
Go to the bottom of the page

Samson
Black Hand
GroupAdministrators
Posts3,685
JoinedJan 1, 2002

 
Ah, got caught in the crossfire I guess. Some dufus decided to flood the code comments area with inane garbage so I blocked their IP range last night. Guess you must be using the same ISP since those range bans are usually fairly specific to a certain ISP's allotment.

Post is unread #8 Jun 7, 2009 12:14 pm   
Go to the top of the page
Go to the bottom of the page

Conner
Sorcerer
GroupMembers
Posts870
JoinedMay 8, 2005

 
I've run into that before myself from trying to block spammers at my firewall only to find that I'd inadvertently also blocked a player from my mud or forums or some such too. It's too bad all the spammers and jerks and such can't be auto-relegated to some specific IP range that no one else uses so we could just block that range and never have to worry about it again.

Post is unread #9 Jun 7, 2009 3:36 pm   
Go to the top of the page
Go to the bottom of the page

Samson
Black Hand
GroupAdministrators
Posts3,685
JoinedJan 1, 2002

 
Would be nice, but so far this is the first time range banning has ever snared a legit user along with the intended target. It may be a bit of a wide net to cast but when you're dealing with jerks who will disconnect their IP and reconnect just to evade a specific IP ban what else are you supposed to do?

Post is unread #10 Jun 8, 2009 12:14 am   
Go to the top of the page
Go to the bottom of the page

David Haley
Sorcerer
GroupMembers
Posts903
JoinedJan 29, 2007

 
Well, it's the first time we know about, at least... :wink:

Post is unread #11 Jun 8, 2009 5:52 am   
Go to the top of the page
Go to the bottom of the page

Quixadhal
Conjurer
GroupMembers
Posts398
JoinedMar 8, 2005

 
Samson said:

Would be nice, but so far this is the first time range banning has ever snared a legit user along with the intended target. It may be a bit of a wide net to cast but when you're dealing with jerks who will disconnect their IP and reconnect just to evade a specific IP ban what else are you supposed to do?


Redesign the internet to require valid ssh keys as part of the tcp/ip negotiation process, so you can choose to only accept connections from registered users? :)

Post is unread #12 Jun 8, 2009 3:04 pm   
Go to the top of the page
Go to the bottom of the page

Conner
Sorcerer
GroupMembers
Posts870
JoinedMay 8, 2005

 
We might be a tad late on that otherwise most useful bit of input Quixadhal. :wink:

Post is unread #13 Jun 8, 2009 5:17 pm   
Go to the top of the page
Go to the bottom of the page

David Haley
Sorcerer
GroupMembers
Posts903
JoinedJan 29, 2007

 
We can already choose to only accept stuff from users who registered for the site. The problem isn't in restricting to users who registered, it's in restricting the set of people who can register...

Post is unread #14 Jun 9, 2009 1:26 pm   
Go to the top of the page
Go to the bottom of the page

Conner
Sorcerer
GroupMembers
Posts870
JoinedMay 8, 2005

 
Actually, we can't choose only accept connections from registered users currently, David, that would require a means to establish their identity prior to logon as Quixadhal suggested.

Post is unread #15 Jun 9, 2009 2:35 pm   
Go to the top of the page
Go to the bottom of the page

David Haley
Sorcerer
GroupMembers
Posts903
JoinedJan 29, 2007

 
Hmm, I thought we were talking about just preventing people from using a site, not outright blocking connections. (I'm also not sure what the functional difference is, unless we're talking about DOS attacks.)

But, well, don't forget that there's not much difference between doing the negotation as part of the connection, and immediately following it, especially given TCP's heavy implementation costs to begin with.

Post is unread #16 Jun 10, 2009 5:19 pm   
Go to the top of the page
Go to the bottom of the page

Conner
Sorcerer
GroupMembers
Posts870
JoinedMay 8, 2005

 
Nah, we were talking about blocking IP ranges at the firewall, David, not just their accounts once they've logged into the forums. Functionally, the difference is whether they have to connect and then log in before being dropped versus never even reaching the actual forums which has the potential to block the wrong people when the range in question covers more than just the offender.

Most forum software can't do that negotiation as part of the connection so the result is having to go through the firewall where, if negotiation was more defined to individual users rather than just IP addresses/blocks it'd be far more useful.

Post is unread #17 Jun 10, 2009 5:38 pm   
Go to the top of the page
Go to the bottom of the page

David Haley
Sorcerer
GroupMembers
Posts903
JoinedJan 29, 2007

 
Conner said:

Functionally, the difference is whether they have to connect and then log in before being dropped versus never even reaching the actual forums which has the potential to block the wrong people when the range in question covers more than just the offender.

I'm not sure how one method will block offenders whereas the other won't. If you only accept registered users, then either you accept them at the firewall level or the forum level; vice-versa for refusing them. If the range is applied at the firewall, it'll block just as many people as if the range were applied at the forum.

Basically if your criterion is matching IPs, you can do that equally well at the firewall as at the forum.
And if the criterion is matching against a known username/password (an SSH key is just another form of password after all) then the forum software is already doing that.

So I might be missing something, but I'm not seeing what we'd be able to do with this new thing that we can't already do.

Post is unread #18 Jun 10, 2009 6:16 pm   
Go to the top of the page
Go to the bottom of the page

Samson
Black Hand
GroupAdministrators
Posts3,685
JoinedJan 1, 2002

 
Well the difference between range blocking them at the form and range blocking them at the firewall is that at the firewall you'd be denying them access to the entire machine and any services currently running on it. That includes things like the Sandbox forum (dead as it may be) and several MUDs running on the box in addition to the actual forum/repository. If all we're trying to do is block someone from abusing the forum, range blocking at the forum is sufficient. If they start abusing the server itself, that's a whole other ball game.

BTW, imposing a range block at the forum doesn't even let someone log in. They lose all access and only get greeted with an empty screen telling them they've been banned. So there's no user authentication involved once things get to that level.

Post is unread #19 Jun 10, 2009 6:20 pm   
Go to the top of the page
Go to the bottom of the page

Conner
Sorcerer
GroupMembers
Posts870
JoinedMay 8, 2005

 
Exactly, the difference would be that as it is, with a range block, we can deny them access regardless of who they are because we're resorting to the IP, but if we had some sort of ssh style authentication, we could determine who they were without letting them get into the system at all.

Post is unread #20 Jun 10, 2009 7:14 pm   
Go to the top of the page
Go to the bottom of the page

Samson
Black Hand
GroupAdministrators
Posts3,685
JoinedJan 1, 2002

 
A range ban at the firewall won't let them into the system at all. SSH would require they have access to the SSH server at the very least, as you need to be able to reach the system before SSH negotiation can even take place.

Pages:<< prev 1, 2 next >>