Skip to main content

This site requires you to update your browser. Your browsing experience maybe affected by not having the most up to date version.

We've moved the forum!

Please use forum.silverstripe.org for any new questions (announcement).
The forum archive will stick around, but will be read only.

You can also use our Slack channel or StackOverflow to ask for help.
Check out our community overview for more options to contribute.

Archive /

Our old forums are still available as a read-only archive.

Moderators: martimiz, Sean, Ed, biapar, Willr, Ingo

200 Success on an invalid URL


Go to End


1299 Views

Avatar
3dkiwi

Community Member, 18 Posts

30 April 2008 at 10:03am

Edited: 30/04/2008 10:04am

Guys

Doing my daily log scan and notice that some requests coming in (for nefarious purposes I am guessing) that look like this:

"GET /examples-of-family-trees/beckett/buck/beckett/beckett/beckett/buck/beckett/buck/beckett/beckett/buck/buck/beckett/buck/
beckett/buck/buck/buck/beckett/buck/beckett/buck/buck/buck/beckett/beckett/buck/beckett/buck/beckett/beckett/beckett/beckett/
beckett/beckett/buck/buck/buck/beckett/buck/buck/beckett/buck/beckett/beckett/buck/beckett/beckett/beckett/buck/buck/buck/
buck/buck/buck/beckett/beckett/buck/beckett/buck/buck/beckett/buck/beckett/buck/buck/buck/buck/beckett/buck/beckett/beckett/
buck/buck/beckett/buck/beckett/beckett/beckett/beckett/beckett/buck/buck/buck/buck/beckett/beckett/beckett/beckett/beckett/
beckett/buck/buck/beckett/beckett/beckett/buck/buck/buck/beckett/beckett/beckett/buck/buck/beckett/beckett/beckett/buck/beckett/
beckett/beckett/buck/buck/beckett/buck/beckett/buck/beckett/buck/beckett/buck/beckett/beckett/buck/beckett/beckett/buck/buck/
beckett/beckett/beckett/buck/beckett/beckett/buck/beckett/buck/buck/buck/buck/beckett/buck/buck/beckett/beckett/buck/buck/
buck/buck/beckett/beckett/buck/buck/beckett/buck/buck/buck/beckett/beckett/beckett/buck/beckett/beckett/buck/
beckett/ghtindex.html HTTP/1.1" 200 4848 "-" "Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.8.0.7) Gecko/20060909 Firefox/1.5.0.7"

You can see that the server responds with a 200 success even though there is no way I have a URL that matches this request.

I am guessing it might have something to do with the .htaccess but as this is the Silverstripe default:

### SILVERSTRIPE START ###
RewriteEngine On

RewriteCond %{REQUEST_URI} !(\.gif)|(\.jpg)|(\.png)|(\.css)|(\.js)|(\.php)$

RewriteCond %{REQUEST_URI} ^(.*)$
RewriteCond %{REQUEST_FILENAME} !-f
RewriteRule .* sapphire/main.php?url=%1&%{QUERY_STRING} [L]
### SILVERSTRIPE END ###

So is this a bug I see before me?

3d

FYI: The IP requesting this is registered to an ISP in South Korea