-
Notifications
You must be signed in to change notification settings - Fork 799
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
XML RPC request should get hard blocker quicker #8855
Conversation
Currently math fallback doesn't do anything for xml rpc requests. This PR blocks xmlrpc requests for would regularly show the math test just gets bypassed and allows more valid xml rpc requests though.
cc @dereksmart |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Didn't test, but code is simple and looks 💯
Definitely comfortable shipping this. We should make sure to give HEs a heads up to let us know if we can an influx in tickets where users are having their XML-RPC connections blocked. I wouldn't expect this, but better safe than sorry...
cc @dereksmart |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
👍
* Changelog 6.0: create base for changelog. * Add #8938 to changelog * Add #8962 to changelog * Add #8974 to changelog * Add #8975 to changelog * Add #8978 to changelog * Add #8867 to changelog * Add #8937 to changelog * Add #8961 to changelog * Add #8855 to changelog * Add #8944 to changelog * Add #8973 to changelog * Add #8977 to changelog * Add #8979 to changelog * Add #8980 to changelog * Add #8982 to changelog * Add #8983 to changelog * Add #8984 to changelog * Add #8986 to changelog * Add #9005 to changelog * Add #9010 to changelog * Add #9012 to changelog * Add #9021 to changelog * Add #9022 to changelog * Add #9056 to changelog * Add #9061 to changelog * Add #9079 to changelog * Add #9080 to changelog * Add #9088 to changelog * Add #9096 to changelog * Add #9097 to changelog * Add #9100 to changelog * Add #9107 to changelog * Add #8969 to changelog * Add #8993 to changelog * Add #9003 to changelog * Add #9031 to changelog * Add #8945 to changelog * Add #9052 to changelog * Add #9058 to changelog * Add #9066 to changelog * Add #9076 to changelog * Add #9053 to changelog * Add #9108 to changelog * Add #9135 to changelog * Add #9148 to changelog * Add #9125 to changelog * Add #9137 to changelog * Added testing instructions for 6.0. * Added IS testing instructions, huge props to @tiagonoronha. * Added #8498 to changelog. * Added #8954 to changelog. * Added #8985 to changelog. * add #9027 * add #9112 to changelog * add #9136 to changelog * add #9102 to changelog * add #9093 to changelog * add #9062 to changelog * add #9172 to changelog
Currently math fallback doesn't do anything for xml rpc requests. Lets hard block xmlprc requests when they get marked as blocked. This would help prevent more of the requests coming though.
This PR blocks xmlrpc requests for would regularly show the math test just gets bypassed and allows more valid xml rpc requests though.
Testing instructions:
use the following code. composer.json
index.php
run
composer install
to install the dependenciesrun
php index.php
You should get blocked pretty after a few attempts.
with an error.
Changelog entry
Started blocking XML RPC requests when they get marked as blocked by Protect.