Mailman info page redirects to a domain owners web site hoem page.
I am running a CentOS 6.xl box with the latest version of cPanel. Until recently I was able to use the syntax http://www.domainame com/mailman/listinfo/listname to fetch the list info page for any mailing list. Now that syntax redirects to the main page of the clients web site. An example is at the site http://www.leverty.com. There is a link on the right side that goes to the list info page. Historically it has worked as designed and the list info page was displayed. Now that link redirects back the the main page of the web site. Any idea what is going on here? I am thinking it has something to do with a security setting on the box somewhere but I have no idea where to look.
Typically I find the cause of the issues as soon as I give up and ask for help. Such is the case here. It has to do with the OWASP rule set for ModSecurity. Now I just need to track down which rule is causing the issue...
On Tue, 2/17/15, JB jebva@yahoo.com.dmarc.invalid wrote:
Subject: [Mailman-Users] Mailman info page redirects to a domain owners web site hoem page. To: mailman-users@python.org Date: Tuesday, February 17, 2015, 3:24 PM
I am running a CentOS 6.xl box with the latest version of cPanel. Until recently I was able to use the syntax http://www.domainame com/mailman/listinfo/listname to fetch the list info page for any mailing list. Now that syntax redirects to the main page of the clients web site. An example is at the site http://www.leverty.com. There is a link on the right side that goes to the list info page. Historically it has worked as designed and the list info page was displayed. Now that link redirects back the the main page of the web site. Any idea what is going on here? I am thinking it has something to do with a security setting on the box somewhere but I have no idea where to look.
Mailman-Users mailing list Mailman-Users@python.org https://mail.python.org/mailman/listinfo/mailman-users Mailman FAQ: http://wiki.list.org/x/AgA3 Security Policy: http://wiki.list.org/x/QIA9 Searchable Archives: http://www.mail-archive.com/mailman-users%40python.org/ Unsubscribe: https://mail.python.org/mailman/options/mailman-users/jebva%40yahoo.com
Rule 960035 of the ModSec OWASP Rule Set blocks any URL that ends in .com. As a result any MM page for a .com domain will be blocked if the host is using that rule. I am not sure who all is involved in maintaining those rules but somehow they ought to be notified that one of their rules (which are, at a minimum, automatically distributed with all cpanel installs now) is impacting a major piece of software in this manner.
On Tue, 2/17/15, JB jebva@yahoo.com.dmarc.invalid wrote:
Subject: Re: [Mailman-Users] Mailman info page redirects to a domain owners web site hoem page. To: mailman-users@python.org Date: Tuesday, February 17, 2015, 3:28 PM
Typically I find the cause of the issues as soon as I give up and ask for help. Such is the case here. It has to do with the OWASP rule set for ModSecurity. Now I just need to track down which rule is causing the issue...
On Tue, 2/17/15, JB jebva@yahoo.com.dmarc.invalid wrote:
Subject: [Mailman-Users] Mailman info page redirects to a domain owners web site hoem page. To: mailman-users@python.org Date: Tuesday, February 17, 2015, 3:24 PM
I am running a CentOS 6.xl box with the latest version of cPanel. Until recently I was able to use the syntax http://www.domainame
com/mailman/listinfo/listname to fetch the list info page for any mailing list. Now that syntax redirects to the main page of the clients web site. An example is at the site http://www.leverty.com. There is a link on the right side that goes to the list info page. Historically it has worked as designed and the list info page was displayed. Now that link redirects back the the main page of the web site. Any idea what is going on here? I am thinking it has something to do with a security setting on the box somewhere but I have no idea where to look.
Mailman-Users mailing list Mailman-Users@python.org https://mail.python.org/mailman/listinfo/mailman-users Mailman FAQ: http://wiki.list.org/x/AgA3 Security Policy: http://wiki.list.org/x/QIA9 Searchable Archives: http://www.mail-archive.com/mailman-users%40python.org/ Unsubscribe: https://mail.python.org/mailman/options/mailman-users/jebva%40yahoo.com
Mailman-Users mailing list Mailman-Users@python.org https://mail.python.org/mailman/listinfo/mailman-users Mailman FAQ: http://wiki.list.org/x/AgA3 Security Policy: http://wiki.list.org/x/QIA9 Searchable Archives: http://www.mail-archive.com/mailman-users%40python.org/ Unsubscribe: https://mail.python.org/mailman/options/mailman-users/jebva%40yahoo.com
participants (1)
-
JB