View Issue Details

IDProjectCategoryView StatusLast Update
0004596mantisbtsecuritypublic2004-11-06 06:50
Reportermahindra Assigned Tograngeway  
PrioritynormalSeverityblockReproducibilitysometimes
Status closedResolutionduplicate 
Product Version0.19.0 
Summary0004596: Firewall problems with headerlength and connections
Description

Our Firewall had problems with the header length from the filters and with the connections downloading Attachements.


We solved the Problem with change the values:

Max_http_header from 1000 to 2048 and

"http_allow_content_disposition" was setted to true.


Is it possible to get mantis in a more honest mode in the next version?

We have trouble with Firerwalls of our partners, too.

TagsNo tags attached.
Attached Files

Relationships

duplicate of 0004609 closedgrangeway 'one-off' Temporary Filters should store state in Database 

Activities

mahindra

mahindra

2004-09-22 12:27

reporter   ~0007688

Maybe this will solve other problems with filters and atachements from other users, because firewalls will block mantis if these variables are not serious.

mahindra

mahindra

2004-09-22 14:50

reporter   ~0007691

Tip:
Very long headers (problems with firewalls are possible) are also created from the queries in the summary.

eg:

http://bugs.mantisbt.org/view_all_bug_page.php?filter=a:28:{s:8:%22_version%22%3Bs:2:%22v5%22%3Bs:10:%22_view_type%22%3Bs:6:%22simple%22%3Bs:8:%22per_page%22%3Bi:50%3Bs:17:%22highlight_changed%22%3Bi:6%3Bs:4:%22sort%22%3Bs:12:%22last_updated%22%3Bs:3:%22dir%22%3Bs:4:%22DESC%22%3Bs:11:%22start_month%22%3Bs:2:%2209%22%3Bs:9:%22start_day%22%3Bi:1%3Bs:10:%22start_year%22%3Bs:4:%222004%22%3Bs:9:%22end_month%22%3Bs:2:%2209%22%3Bs:7:%22end_day%22%3Bs:2:%2222%22%3Bs:8:%22end_year%22%3Bs:4:%222004%22%3Bs:6:%22search%22%3Bs:0:%22%22%3Bs:16:%22and_not_assigned%22%3Bb:0%3Bs:17:%22do_filter_by_date%22%3Bb:0%3Bs:10:%22view_state%22%3Bs:3:%22any%22%3Bs:13:%22show_category%22%3Ba:1:{i:0%3Bs:3:%22any%22%3B}s:13:%22show_severity%22%3Ba:1:{i:0%3Bi:0%3B}s:11:%22show_status%22%3Ba:1:{i:0%3Bi:30%3B}s:11:%22reporter_id%22%3Ba:1:{i:0%3Bi:0%3B}s:10:%22handler_id%22%3Ba:1:{i:0%3Bs:3:%22any%22%3B}s:15:%22show_resolution%22%3Ba:1:{i:0%3Bi:0%3B}s:10:%22show_build%22%3Ba:1:{i:0%3Bs:3:%22any%22%3B}s:12:%22show_version%22%3Ba:1:{i:0%3Bs:3:%22any%22%3B}s:11:%22hide_status%22%3Ba:1:{i:0%3Bi:80%3B}s:16:%22fixed_in_version%22%3Ba:1:{i:0%3Bs:3:%22any%22%3B}s:12:%22user_monitor%22%3Ba:1:{i:0%3Bi:0%3B}s:13:%22custom_fields%22%3Ba:1:{i:1%3Ba:1:{i:0%3Bs:3:%22any%22%3B}}}

grangeway

grangeway

2004-09-25 09:38

reporter   ~0007739

I'm pretty confident that this is due to mantis passing long url's about for filters.

This seems to cause issues with different browsers / Servers / Firewalls, as the length of the meta-refresh/location header or URL exceeds the limit that is expected.

As it's likely that to fix this issue reliably, we'll need to store the filter data in the database temporarily, this is being resolved as a duplicate of 0004609.