Professional Web Applications Themes

Problem with HTTP_REFERER - Macromedia Dreamweaver

Hi, I have some limited access pages which can only be accessed if the HTTP_REFERER is a specific page. This prevents access by scripts etc. It has been working well, but one client runs foul of the filter because his browser (IE) doesn't seem to pass the HTTP_REFERER variable. Normal requests look like this in the referer log: http://www.myserver.com/publicpage.php -> /restrictedpage.php the client in question shows as: - -> /restrictedpage.php which is what you see if you go directly to the page by typing te address into the address bar. Does anyone know if this is a browser configurable thing, ...

  1. #1

    Default Problem with HTTP_REFERER

    Hi,

    I have some limited access pages which can only be accessed if the
    HTTP_REFERER is a specific page. This prevents access by scripts etc.

    It has been working well, but one client runs foul of the filter because
    his browser (IE) doesn't seem to pass the HTTP_REFERER variable.

    Normal requests look like this in the referer log:

    http://www.myserver.com/publicpage.php -> /restrictedpage.php

    the client in question shows as:

    - -> /restrictedpage.php

    which is what you see if you go directly to the page by typing te address
    into the address bar.

    Does anyone know if this is a browser configurable thing, or could it be
    his Norton Internet Security thingy? Could it even be a web proxy problem.

    Thanks,
    Dave

    Dave Guest

  2. #2

    Default Re: Problem with HTTP_REFERER

     

    It's Norton Internet Security. He can test this by turning it off and seeing
    if he can now access the pages.

    Unfortunately, I can't tell you how to fix it; on the rare occasions it
    causes me problems, I either turn off NIS (only if I know the site inside
    out...), or I go to a different web site. Sorry!

    Regards,

    Pete.

    ----------
    Peter Connolly
    Acute Computing
    Derby
    UK


    Peter Guest

  3. #3

    Default Re: Problem with HTTP_REFERER

    Dave Millen wrote:
     

    In general it's a bad idea to rely on the HTTP referer, because ...
     

    .... at least Opera is capable of disabling referer submitting.
    And I'm sure there are some more browsers offering this feature.
     

    Could be possible as well.

    Micha
    Michael Guest

  4. #4

    Default Re: Problem with HTTP_REFERER

    maybe you can use a session variable instead, on a page they must pass
    through, or on all pages leading to your limited access pages

    Jason

    "Michael Fesser" <net> wrote in message
    news:com... 
    >
    > In general it's a bad idea to rely on the HTTP referer, because ...

    >
    > ... at least Opera is capable of disabling referer submitting.
    > And I'm sure there are some more browsers offering this feature.

    >
    > Could be possible as well.
    >
    > Micha[/ref]


    jason Guest

Similar Threads

  1. cgi.http_referer problem
    By dijana1081 in forum Macromedia ColdFusion
    Replies: 2
    Last Post: November 21st, 07:18 PM
  2. http_referer
    By Louie Miranda in forum ASP Database
    Replies: 6
    Last Post: February 24th, 09:48 PM
  3. [PHP] HTTP_REFERER
    By Eugene Lee in forum PHP Development
    Replies: 5
    Last Post: September 15th, 05:18 AM
  4. Getting HTTP_REFERER
    By lordpuma in forum PHP Development
    Replies: 0
    Last Post: July 21st, 02:41 PM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139