TMC is an independent, primarily volunteer organization that relies on ad revenue to cover its operating costs. Please consider whitelisting TMC on your ad blocker and becoming a Supporting Member. For more info: Support TMC

I am getting blocked by Cloudflare DDoS protection

Discussion in 'Site Feedback' started by eprosenx, Jun 30, 2018.

  1. eprosenx

    eprosenx Member

    Joined:
    May 30, 2018
    Messages:
    993
    Location:
    Beaverton, OR
    All of a sudden today I can't reply to comment threads. Every 10 seconds or so during writing a comment (every time it auto-saves I presume) I get a huge dialog that covers the page with a CloudFlare error.

    I am guessing that the frequency of the auto-save is causing CloudFlare to blacklist my IP / device / account or whatever.

    Is anyone else seeing this?

    I have some comments I want to post but I currently can't...

    Can whoever admin's the site login to the CloudFlare console and tell them to knock it off? Probably some settings need tweaked..
     
  2. eprosenx

    eprosenx Member

    Joined:
    May 30, 2018
    Messages:
    993
    Location:
    Beaverton, OR
    But I was able to create this new thread... Interesting. Here is to trying to submit a comment on the thread. If you see this, it means it worked...
     
  3. HankLloydRight

    HankLloydRight No Roads

    Joined:
    Jan 18, 2014
    Messages:
    10,682
    Location:
    Connecticut
    Did the comment you were trying to post include any code (HTML, javascript, etc)?
     
  4. eprosenx

    eprosenx Member

    Joined:
    May 30, 2018
    Messages:
    993
    Location:
    Beaverton, OR
    No html or JavaScript.

    But I did figure it out!

    I was quoting NEC code sections and the section number and subsections in parenthesis were the issue. I am on my phone now so I don’t have the exact text that was the issue, but I will follow up when I get home.

    It did not like my content for some reason...
     
  5. eprosenx

    eprosenx Member

    Joined:
    May 30, 2018
    Messages:
    993
    Location:
    Beaverton, OR
    Ok, back at home now. I just tried posting the offending string in and it won't let me submit this post with it either!

    Here is the error it gives, and down at the bottom is a screen shot of the offending text. Can someone else try putting that text in EXACTLY as I did with the same punctuation and spacing and see what you get? I bet you too will get blocked!

    Super odd...

    Screen Shot 2018-07-01 at 12.15.25 AM.png


    Screen Shot 2018-07-01 at 12.15.54 AM.png
     
  6. HankLloydRight

    HankLloydRight No Roads

    Joined:
    Jan 18, 2014
    Messages:
    10,682
    Location:
    Connecticut
    Let's see! 310.15(B)(16).

    Nope, that works.

    Is it the word 'table'?

    (in the 2017 version of the code) is table 310.15(B)(16).

    that seems to work as well. Was there an embedded URL Link in what you were trying to post?


    Cloudflare is really a great tool for being a reverse proxy (as a front-end defense against IP/port scan attacks and hiding your server IP addresses), static content caching (CDN), and web application firewall blocking. I use it for many of my websites.

    But it took me three months to convince them the following URLs should be included in the WAF SQL injection block rules (hundreds of these requests were actually getting through to my servers every day!):

    upload_2018-7-1_10-19-19.png

    They finally relented and add custom rules for these.

    So if 310.15(B)(16) is causing a problem, that's surprising to me!
     
    • Like x 1
  7. HankLloydRight

    HankLloydRight No Roads

    Joined:
    Jan 18, 2014
    Messages:
    10,682
    Location:
    Connecticut
    Ok, I think I see it now. When I go back and try to edit that post, I get a cloudflare block message. Let's try again:

    Let's see! 310.15(B)(16).

    Nope, that works.

    Is it the word 'table'?

    editing again. I have no idea what's triggering the block.


    (in the 2017 version of the code) is table 310.15(B)(16).

    now I'm editing this message
     
    • Like x 1
  8. eprosenx

    eprosenx Member

    Joined:
    May 30, 2018
    Messages:
    993
    Location:
    Beaverton, OR
    Yup, you are on the right track here... I was trying all sorts of combo's and I could not figure it out either. It was not clear exactly what was getting matched on, but it was annoying!!!

    P.S. I just replied to your last message and it immediately gave me the block... lol, I had to edit the quote tags to get this to submit successfully. Someone needs to escalate to CloudFlare.
     
    • Like x 1

Share This Page

  • About Us

    Formed in 2006, Tesla Motors Club (TMC) was the first independent online Tesla community. Today it remains the largest and most dynamic community of Tesla enthusiasts. Learn more.
  • Do you value your experience at TMC? Consider becoming a Supporting Member of Tesla Motors Club. As a thank you for your contribution, you'll get nearly no ads in the Community and Groups sections. Additional perks are available depending on the level of contribution. Please visit the Account Upgrades page for more details.


    SUPPORT TMC