Title: The Meerkat's Replies | WordPress.org

---

# The Meerkat

  [  ](https://wordpress.org/support/users/themeerkat/)

 *   [Profile](https://wordpress.org/support/users/themeerkat/)
 *   [Topics Started](https://wordpress.org/support/users/themeerkat/topics/)
 *   [Replies Created](https://wordpress.org/support/users/themeerkat/replies/)
 *   [Reviews Written](https://wordpress.org/support/users/themeerkat/reviews/)
 *   [Topics Replied To](https://wordpress.org/support/users/themeerkat/replied-to/)
 *   [Engagements](https://wordpress.org/support/users/themeerkat/engagements/)
 *   [Favorites](https://wordpress.org/support/users/themeerkat/favorites/)

 Search replies:

## Forum Replies Created

Viewing 10 replies - 1 through 10 (of 10 total)

 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[NinjaFirewall (WP Edition) - Advanced Security Plugin and Firewall] NFW blocking all CSS and JS in admin every other page load](https://wordpress.org/support/topic/nfw-blocking-all-css-and-js-on-dashboard-every-other-page-load/)
 *  Thread Starter [The Meerkat](https://wordpress.org/support/users/themeerkat/)
 * (@themeerkat)
 * [9 years, 5 months ago](https://wordpress.org/support/topic/nfw-blocking-all-css-and-js-on-dashboard-every-other-page-load/#post-8924639)
 * I asked a user to refresh a couple of times, and it is not occurring for them.
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[NinjaFirewall (WP Edition) - Advanced Security Plugin and Firewall] NFW blocking all CSS and JS in admin every other page load](https://wordpress.org/support/topic/nfw-blocking-all-css-and-js-on-dashboard-every-other-page-load/)
 *  Thread Starter [The Meerkat](https://wordpress.org/support/users/themeerkat/)
 * (@themeerkat)
 * [9 years, 5 months ago](https://wordpress.org/support/topic/nfw-blocking-all-css-and-js-on-dashboard-every-other-page-load/#post-8910659)
 * Sent.
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[NinjaFirewall (WP Edition) - Advanced Security Plugin and Firewall] NFW blocking all CSS and JS in admin every other page load](https://wordpress.org/support/topic/nfw-blocking-all-css-and-js-on-dashboard-every-other-page-load/)
 *  Thread Starter [The Meerkat](https://wordpress.org/support/users/themeerkat/)
 * (@themeerkat)
 * [9 years, 5 months ago](https://wordpress.org/support/topic/nfw-blocking-all-css-and-js-on-dashboard-every-other-page-load/#post-8905566)
 * DOCUMENT_ROOT on my host is always set: [https://php71.nfshost.com/](https://php71.nfshost.com/)
   
   There shouldn’t really be anything my simple WordPress site is doing to intentionally
   un‐set it.
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[NinjaFirewall (WP Edition) - Advanced Security Plugin and Firewall] NFW blocking all CSS and JS in admin every other page load](https://wordpress.org/support/topic/nfw-blocking-all-css-and-js-on-dashboard-every-other-page-load/)
 *  Thread Starter [The Meerkat](https://wordpress.org/support/users/themeerkat/)
 * (@themeerkat)
 * [9 years, 5 months ago](https://wordpress.org/support/topic/nfw-blocking-all-css-and-js-on-dashboard-every-other-page-load/#post-8903498)
 * Theme has already been changed many times, and no plugin deactivation helped 
   the issue. Sorry. 🙁
 * I saw you asking others to post wp-check.php results here, so here’s mine:
    [https://i.imgur.com/zQcodkj.png](https://i.imgur.com/zQcodkj.png)
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[NinjaFirewall (WP Edition) - Advanced Security Plugin and Firewall] NFW blocking all CSS and JS in admin every other page load](https://wordpress.org/support/topic/nfw-blocking-all-css-and-js-on-dashboard-every-other-page-load/)
 *  Thread Starter [The Meerkat](https://wordpress.org/support/users/themeerkat/)
 * (@themeerkat)
 * [9 years, 5 months ago](https://wordpress.org/support/topic/nfw-blocking-all-css-and-js-on-dashboard-every-other-page-load/#post-8901590)
 * I added the following to my theme’s functions.php:
 * `remove_action( 'shutdown', 'wp_ob_end_flush_all', 1 );`
 * This removed that error, and no others are being produced anywhere on the site,
   whether backend or frontend (as far as I can tell). The problem in my original
   post remains.
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[NinjaFirewall (WP Edition) - Advanced Security Plugin and Firewall] NFW blocking all CSS and JS in admin every other page load](https://wordpress.org/support/topic/nfw-blocking-all-css-and-js-on-dashboard-every-other-page-load/)
 *  Thread Starter [The Meerkat](https://wordpress.org/support/users/themeerkat/)
 * (@themeerkat)
 * [9 years, 5 months ago](https://wordpress.org/support/topic/nfw-blocking-all-css-and-js-on-dashboard-every-other-page-load/#post-8900093)
 * The only PHP error on broken admin pages is:
    `Notice: ob_end_flush(): failed
   to send buffer of zlib output compression (0) in /home/public/wp-includes/functions.
   php on line 3719` … but it appears on the homepage and non‐broken admin pages
   as well.
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[NinjaFirewall (WP Edition) - Advanced Security Plugin and Firewall] NFW blocking all CSS and JS in admin every other page load](https://wordpress.org/support/topic/nfw-blocking-all-css-and-js-on-dashboard-every-other-page-load/)
 *  Thread Starter [The Meerkat](https://wordpress.org/support/users/themeerkat/)
 * (@themeerkat)
 * [9 years, 5 months ago](https://wordpress.org/support/topic/nfw-blocking-all-css-and-js-on-dashboard-every-other-page-load/#post-8899731)
 * Nothing in the firewall log seems seems to be responsible:
 *     ```
       09/Mar/17 23:07:47  #3726096  info         -  [redacted IP]  POST /wp-login.php - Logged in user - [TheMeerkat (administrator)] - monochromaticrp.com
       09/Mar/17 23:13:12  #3983253  info         -  [redacted IP]  GET /wp-admin/plugins.php - Plugin deactivated by TheMeerkat - [Name: login-security-solution/login-security-solution.php] - monochromaticrp.com
       09/Mar/17 23:13:30  #8933896  info         -  [redacted IP]  GET /wp-admin/plugins.php - Plugin deactivated by TheMeerkat - [Name: login-security-solution/login-security-solution.php] - monochromaticrp.com
       10/Mar/17 02:46:23  #8010085  info         -  [redacted IP]  GET /wp-admin/plugins.php - Plugin deactivated by TheMeerkat - [Name: php-compatibility-checker/wpengine-phpcompat.php] - monochromaticrp.com
       10/Mar/17 03:45:27  #8742236  info         -  [redacted IP]    GET /wp-admin/plugins.php - Plugin deactivated by TheMeerkat - [Name: bbp-style-pack/bbp-style-pack.php] - monochromaticrp.com
       10/Mar/17 03:52:34  #2664687  info         -  [redacted IP]    GET /wp-admin/plugins.php - Plugin deactivated by TheMeerkat - [Name: bbp-toolkit/bbp-toolkit.php] - monochromaticrp.com
       10/Mar/17 07:49:07  #2147020  medium     306  [redacted IP] GET /index.php - Bogus user-agent signature - [SERVER:HTTP_USER_AGENT = Mozilla/4.0 (compatible; MSIE 5.5;Windows NT)] - monochromaticrp.com
       10/Mar/17 12:31:25  #4886215  info         -  [redacted IP]  POST /wp-login.php - Logged in user - [TheMeerkat (administrator)] - monochromaticrp.com
       ```
   
 * And it still happens resetting everything under “HTTP response headers” to the
   default, aside from Strict‐Transport‐Security.
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Private groups] Is content really hidden?](https://wordpress.org/support/topic/is-content-really-hidden/)
 *  [The Meerkat](https://wordpress.org/support/users/themeerkat/)
 * (@themeerkat)
 * [9 years, 6 months ago](https://wordpress.org/support/topic/is-content-really-hidden/#post-8814863)
 * Anecdotally, I can confirm it works really, _really_ well—if someone doesn’t 
   have permissions, there’s no evidence the forums even exist anywhere on the site.
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[Login Security Solution] password strength of less than 10 necessary](https://wordpress.org/support/topic/password-strength-of-less-than-10-necessary/)
 *  [The Meerkat](https://wordpress.org/support/users/themeerkat/)
 * (@themeerkat)
 * [9 years, 6 months ago](https://wordpress.org/support/topic/password-strength-of-less-than-10-necessary/#post-8811211)
 * 7 characters is hideously insecure. I would strongly suggest educating them on
   password strength policy.
 *   Forum: [Plugins](https://wordpress.org/support/forum/plugins-and-hacks/)
    In
   reply to: [[SimpleSecure] Plugin incorrectly claiming contact page is insecure](https://wordpress.org/support/topic/plugin-incorrectly-claiming-contact-page-is-insecure/)
 *  Thread Starter [The Meerkat](https://wordpress.org/support/users/themeerkat/)
 * (@themeerkat)
 * [12 years ago](https://wordpress.org/support/topic/plugin-incorrectly-claiming-contact-page-is-insecure/#post-5163554)
 * Fixed it myself. I was using the WordPress HTTPS plugin, which doesn’t play very
   nicely on my server, apparently. I disabled it and [fiddled with some things manually](https://codex.wordpress.org/Administration_Over_SSL#Using_a_Reverse_Proxy)
   that were listed in the codex.

Viewing 10 replies - 1 through 10 (of 10 total)