WordPress.org

Forums

Disable WP Admin Bar Removal
[resolved] function to include wp-admin-bar-removal.css changed (7 posts)

  1. mydiskdriveonline
    Member
    Posted 10 months ago #

    Greetings,

    The new update 2014.0708.0383 has changed the call to /wp-content/plugins/wp-admin-bar-removal/wp-admin-bar-removal.css?ver=3.9.1 somehow.

    I do not allow direct access to files and it is now throwing a 403 error.

    This never happened before.

    Cheerz

    https://wordpress.org/plugins/wp-admin-bar-removal/

  2. mydiskdriveonline
    Member
    Posted 10 months ago #

    I see that there is a "strict" .htaccess file.

    I removed it and all of the readme stuffz( i already block those too)

    Now my error.log stops wizzin by

    Cheerz

  3. sLa NGjI's
    Member
    Plugin Author

    Posted 10 months ago #

    Hi :)

    I do not allow direct access to files and it is now throwing a 403 error.
    I see that there is a "strict" .htaccess file.

    So?
    This is a problem?
    Wath is the problem?

    Explain me more ... ;)

    This is a Ticket #5766717

  4. mydiskdriveonline
    Member
    Posted 10 months ago #

    your htaccess conflicted with my apache conf and broke your plugin.

    your css and js files became 403.

    I use:

    RewriteRule .*\.(jpg|jpeg|gif|png|bmp|flv|mp3|wav|swf|psd|txt|doc|exe|zip|kml|mp4|JPG|avi|mpg|mpeg|fla|rar|sql|gz|7z|tar|css|js|wmv|rm|bcp|cbk|bcf|xml)$ - [R=404,NC,L]

    in my httpd.conf <directory> settings.

    i believe its better to 404 and tell bad guys there is nothing there to hack instead of 403 and let them keep hacking on it.

    whats a Ticket #5766717?

    Cheerz :)

  5. sLa NGjI's
    Member
    Plugin Author

    Posted 10 months ago #

    I am interested to this exception to provide .htaccess file and "Strict Security Rules" compatible with the majority of systems: how do you think i should change .htaccess file to match your configuration but maintaining it impossible to access directed to external files .css and .js on plugin pakage?

    This issue was inserted as Ticket #5766717 on to To-Do List for Future Development.

  6. mydiskdriveonline
    Member
    Posted 10 months ago #

    I'm really not that smart :/

    Your intentions are great and theoretically should work fine with the "sub" htaccess over-riding higher configs.

    For php pages I know a simple "if is_defined(whatever)" stops the page from being called directly.

    What about instead of using "Allow/Deny" use "Rewrites" like I use for "hotlinking"?

  7. sLa NGjI's
    Member
    Plugin Author

    Posted 9 months ago #

    Thanks you so much for suggestions!

Reply

You must log in to post.

About this Plugin

  • Disable WP Admin Bar Removal
  • Frequently Asked Questions
  • Support Threads
  • Reviews

About this Topic

Tags

No tags yet.