[Mailman-Users] Mailman info page redirects to a domain owners web site hoem page.

JB jebva at yahoo.com
Tue Feb 17 22:26:29 CET 2015


Rule 960035 of the ModSec OWASP Rule Set blocks any URL that ends in .com.  As a result any MM page for a .com domain will be blocked if the host is using that rule.  I am not sure who all is involved in maintaining those rules but somehow they ought to be notified that one of their rules (which are, at a minimum, automatically distributed with all cpanel installs now) is impacting a major piece of software in this manner.
--------------------------------------------
On Tue, 2/17/15, JB <jebva at yahoo.com.dmarc.invalid> wrote:

 Subject: Re: [Mailman-Users] Mailman info page redirects to a domain owners	web	site hoem page.
 To: mailman-users at python.org
 Date: Tuesday, February 17, 2015, 3:28 PM
 
 Typically I find the
 cause of the issues as soon as I give up and ask for help. 
 Such is the case here.  It has to do with the OWASP rule
 set for ModSecurity.  Now I just need to track down which
 rule is causing the issue...
 --------------------------------------------
 On Tue, 2/17/15, JB <jebva at yahoo.com.dmarc.invalid>
 wrote:
 
  Subject: [Mailman-Users]
 Mailman info page redirects to a domain owners web   
 site hoem page.
  To: mailman-users at python.org
  Date: Tuesday, February 17, 2015, 3:24 PM
  
  I am running a CentOS 6.xl
 box with
  the latest version of cPanel. 
 Until recently I was
  able to use the syntax
 http://www.domainame
 
 com/mailman/listinfo/listname to fetch the list info
  page for any mailing list.  Now that syntax
 redirects
  to the main page of the clients
 web site.  An example
  is at the site http://www.leverty.com.  There is a
 link
  on the right side that goes to the
 list info page. 
  Historically it has
 worked as designed and the list info
  page
 was displayed.  Now that link redirects back the
  the main page of the web site.  Any idea what
 is going
  on here? I am thinking it has
 something to do with a
  security setting on
 the box somewhere but I have no idea
  where
 to look.
 
 ------------------------------------------------------
  Mailman-Users mailing list Mailman-Users at python.org
  https://mail.python.org/mailman/listinfo/mailman-users
  Mailman FAQ: http://wiki.list.org/x/AgA3
  Security Policy: http://wiki.list.org/x/QIA9
  Searchable Archives: http://www.mail-archive.com/mailman-users%40python.org/
  Unsubscribe: https://mail.python.org/mailman/options/mailman-users/jebva%40yahoo.com
  
 ------------------------------------------------------
 Mailman-Users mailing list Mailman-Users at python.org
 https://mail.python.org/mailman/listinfo/mailman-users
 Mailman FAQ: http://wiki.list.org/x/AgA3
 Security Policy: http://wiki.list.org/x/QIA9
 Searchable Archives: http://www.mail-archive.com/mailman-users%40python.org/
 Unsubscribe: https://mail.python.org/mailman/options/mailman-users/jebva%40yahoo.com


More information about the Mailman-Users mailing list