Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 10-16-2003, 02:17 PM   #1
InsaneGreen
Confirmed User
 
Join Date: Aug 2003
Location: southern california
Posts: 996
htaccess help.

the htaccess for my members area is setup to check for a password, how can i make it allow certain domains access without prompting the user for a password? thanks in advance to anyone that can help!
__________________
SIG TOO BIG! Maximum 120x60 button and no more than 3 text lines of DEFAULT SIZE and COLOR. Unless your sig is for a GFY top banner sponsor, then you may use a 624x80 instead of a 120x60.
InsaneGreen is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-16-2003, 02:20 PM   #2
caspuh
Registered User
 
Join Date: Oct 2003
Posts: 56
put your files in distinct folders. use multiple htaccess files, one for each directory that you need password protected. for instance:

/free (dont have an htaccess)
/teen (have one)
/gay (have one)
/free-movies (dont have one)

wherever you put the htaccess will affect all subdirectories.

Last edited by caspuh; 10-16-2003 at 02:22 PM..
caspuh is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-16-2003, 02:20 PM   #3
EZRhino
Confirmed User
 
EZRhino's Avatar
 
Industry Role:
Join Date: Jul 2003
Location: couch
Posts: 6,258
Set up a allow list for particular domains.
Read Oriley and Associates "Apache"
Good info there or do a google search for "htaccess+howto"
EZRhino is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-16-2003, 02:29 PM   #4
timboss
Confirmed User
 
Join Date: Sep 2003
Location: South Florida
Posts: 627
I think what your asking is how to allow access from a certain referring URL?

is that it? when you come from a certain URL, you would not be prompted for a password?

you need referrer type set up in your http.conf file
__________________
ICQ:
338637464
timboss is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-16-2003, 02:32 PM   #5
InsaneGreen
Confirmed User
 
Join Date: Aug 2003
Location: southern california
Posts: 996
Quote:
Originally posted by timboss
I think what your asking is how to allow access from a certain referring URL?

is that it? when you come from a certain URL, you would not be prompted for a password?

you need referrer type set up in your http.conf file
thats what i want, but if its not a url i specify i want it to prompt for a password...
__________________
SIG TOO BIG! Maximum 120x60 button and no more than 3 text lines of DEFAULT SIZE and COLOR. Unless your sig is for a GFY top banner sponsor, then you may use a 624x80 instead of a 120x60.
InsaneGreen is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-16-2003, 02:37 PM   #6
NetRodent
Confirmed User
 
Join Date: Jan 2002
Location: In the walls of your house.
Posts: 3,985
I trust you are aware that this is a massive security hole and will break most anti-password sharing scripts.
__________________
"Every normal man must be tempted, at times, to spit on his hands, hoist the black flag, and begin slitting throats."
--H.L. Mencken
NetRodent is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-16-2003, 02:43 PM   #7
InsaneGreen
Confirmed User
 
Join Date: Aug 2003
Location: southern california
Posts: 996
netrodent,
then how does everyone else do it? i just want my members to be able to access the member area to all 7 of my sites...
__________________
SIG TOO BIG! Maximum 120x60 button and no more than 3 text lines of DEFAULT SIZE and COLOR. Unless your sig is for a GFY top banner sponsor, then you may use a 624x80 instead of a 120x60.
InsaneGreen is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-16-2003, 03:46 PM   #8
myneid
Confirmed User
 
myneid's Avatar
 
Industry Role:
Join Date: Jan 2003
Location: Los Angeles
Posts: 736
if you have teh setenv module loaded which most apaches do by default you can do

SetEnvIf Referer "^http://www.mydomain.com" myrefallow

order deny,allow
deny from all
allow from env=myrefallow
Satisfy Any


and leave in there your other Auth lines and do the SetEnvIf line for each refering url you want to allow

this is a security hole as anybody can fake their referring url and they do.

the best way to do waht you want to do is to get a programmer or sysadmin set up your system the way you want
__________________
Tanguy 0x7a69 inc. Programmer/President/CEO
http://www.0x7a69.com
A Leader in Programming since 1996
PHP, Ruby on Rails, MySQL, PCI DSS, and any Technical Consulting
myneid is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-16-2003, 03:55 PM   #9
NetRodent
Confirmed User
 
Join Date: Jan 2002
Location: In the walls of your house.
Posts: 3,985
Quote:
Originally posted by InsaneGreen
netrodent,
then how does everyone else do it? i just want my members to be able to access the member area to all 7 of my sites...
There are a couple ways:
1. Use a common members area divided up so it looks ike multiple sites.
2. Use session based authentication (my personal favorite).
__________________
"Every normal man must be tempted, at times, to spit on his hands, hoist the black flag, and begin slitting throats."
--H.L. Mencken
NetRodent is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-16-2003, 04:03 PM   #10
tantalising
Registered User
 
Join Date: Sep 2003
Location: Amsterdam The Netherlands
Posts: 47
You can also try:


Satisfy Any
AuthType Basic
AuthName "Members Area"
AuthUserFile /path to your .htpasswdfile
AuthGroupFile /dev/null
<Limit GET POST>
require valid-user
order deny,allow
deny from all
allow from 64.62.200.131
</Limit>

In this case it would allow visitors coming from
arnoldschwarzenegger.com to visit your protected area

Still as previous poster said a security hole.


..
tantalising is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 10-16-2003, 06:29 PM   #11
PbG
Confirmed User
 
Join Date: May 2003
Posts: 1,025
This is your best bet.

Quote:
Originally posted by NetRodent


There are a couple ways:
1. Use a common members area divided up so it looks ike multiple sites.
2. Use session based authentication (my personal favorite).
PbG is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.