• my site: https://www.balenaludens.it

    It’s a multisite installation of WP 4.8

    The site responds very well at

    https://www.balenaludens.it

    but at
    https://balenaludens.it

    redirect to:

    https://www.balenaludens.it/wp-signup.php?new=balenaludens.it

    this is my wp-config.php file

    
    
    /* Multisite */
    define('WP_ALLOW_MULTISITE', true);
    define('MULTISITE', true);
    define('SUBDOMAIN_INSTALL', true);
    define('DOMAIN_CURRENT_SITE', 'www.balenaludens.it');
    define('PATH_CURRENT_SITE', '/');
    define('SITE_ID_CURRENT_SITE', 1);
    define('BLOG_ID_CURRENT_SITE', 1);
    /* bug redirct
    define( 'NOBLOGREDIRECT', 'balenaludens.it' );
    bug redirect */
    /** fine aggiunte da angelo */
    
    /* Finito, interrompere le modifiche! Buon blogging. */
    
    /** Path assoluto alla directory di WordPress. */
    if ( !defined('ABSPATH') )
    define('ABSPATH', dirname(__FILE__) . '/');
    
    define('CONCATENATE_SCRIPTS', false ); // <---------- ADD THIS LINE per risolvere problema WP 4.5
    
    /** Imposta lle variabili di WordPress ed include i file. */
    require_once(ABSPATH . 'wp-settings.php');
    
    /** aggiunte da angelo */
    
    // ** FTP SETTINGS FOR AUTO-UPDATE ** //
    define('FTP_HOST', 'ftp.balenaludens.it');
    define('FTP_USER', '[email protected]');
    define('FTP_PASS', 'E2Nss/+-.TPBE');
    

    This is my .htacess file:

    
    # BEGIN iThemes Security
    	# BEGIN Ban Users
    		# Begin HackRepair.com Blacklist
    		RewriteEngine on
    		RewriteCond %{HTTP_USER_AGENT} ^[Ww]eb[Bb]andit [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^binlar [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^BlackWidow [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Bolt\ 0 [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Bot\ mailto:craftbot\@yahoo\.com [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^casper [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^ChinaClaw [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^cmsworldmap [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^comodo [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Custo [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Default\ Browser\ 0 [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^diavol [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^DIIbot [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^DISCo [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^dotbot [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Download\ Demon [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^eCatch [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^EirGrabber [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^EmailCollector [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^EmailSiphon [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^EmailWolf [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Express\ WebPictures [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^ExtractorPro [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^EyeNetIE [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^feedfinder [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^FlashGet [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^flicky [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^GetRight [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^GetWeb! [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Go-Ahead-Got-It [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Go!Zilla [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^GrabNet [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Grafula [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^HMView [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^ia_archiver [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Image\ Stripper [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Image\ Sucker [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^InterGET [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Internet\ Ninja [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^InternetSeer\.com [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^jakarta [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Java [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^JetCar [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^JOC\ Web\ Spider [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^kmccrew [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^larbin [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^LeechFTP [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Link [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Mass\ Downloader [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Maxthon$ [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^microsoft\.url [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^MIDown\ tool [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Mister\ PiX [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Mozilla\.*Indy [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Mozilla\.*NEWT [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^MSFrontPage [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Navroad [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^NearSite [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Net\ Vampire [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^NetAnts [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^NetSpider [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^NetZIP [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^nutch [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Octopus [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Offline\ Explorer [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Offline\ Navigator [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^PageGrabber [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Papa\ Foto [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^pavuk [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^pcBrowser [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^PeoplePal [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^planetwork [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^psbot [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^purebot [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^pycurl [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^RealDownload [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^ReGet [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Rippers\ 0 [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^SeaMonkey$ [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^sitecheck\.internetseer\.com [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^SiteSnagger [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^skygrid [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^SmartDownload [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^sucker [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^SuperBot [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^SuperHTTP [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Surfbot [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^tAkeOut [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Teleport\ Pro [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Toata\ dragostea\ mea\ pentru\ diavola [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^turnit [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^vikspider [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^VoidEYE [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Web\ Image\ Collector [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Web\ Sucker [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^WebAuto [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^WebCopier [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^WebFetch [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^WebGo\ IS [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^WebLeacher [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^WebReaper [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^WebSauger [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Website\ eXtractor [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Website\ Quester [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^WebStripper [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^WebWhacker [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^WebZIP [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Wget [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Widow [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^WWW-Mechanize [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^WWWOFFLE [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Xaldon\ WebSpider [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Zeus [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^zmeu [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^CazoodleBot [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^discobot [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^ecxi [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^GT::WWW [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^heritrix [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^HTTP::Lite [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^HTTrack [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^ia_archiver [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^id-search [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^id-search\.org [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^IDBot [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Indy\ Library [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^IRLbot [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^ISC\ Systems\ iRc\ Search\ 2\.1 [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^LinksManager.com_bot [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^linkwalker [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^lwp-trivial [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^MFC_Tear_Sample [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Microsoft\ URL\ Control [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Missigua\ Locator [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^panscient.com [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^PECL::HTTP [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^PHPCrawl [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^PleaseCrawl [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^SBIder [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Snoopy [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Steeler [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^URI::Fetch [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^urllib [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^User-Agent [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Web\ Sucker [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^webalta [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^WebCollage [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^Wells\ Search\ II [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^WEP\ Search [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^zermelo [NC,OR]
    		RewriteCond %{HTTP_USER_AGENT} ^ZyBorg [NC]
    		RewriteRule ^.* - [F]
    		
    		Order allow,deny
    		Deny from env=DenyAccess
    		Allow from all
    		SetEnvIF REMOTE_ADDR "^189\.234\.237\.103$" DenyAccess
    		SetEnvIF X-FORWARDED-FOR "^189\.234\.237\.103$" DenyAccess
    		SetEnvIF X-CLUSTER-CLIENT-IP "^189\.234\.237\.103$" DenyAccess
    		
    		SetEnvIF REMOTE_ADDR "^223\.217\.149\.80$" DenyAccess
    		SetEnvIF X-FORWARDED-FOR "^223\.217\.149\.80$" DenyAccess
    		SetEnvIF X-CLUSTER-CLIENT-IP "^223\.217\.149\.80$" DenyAccess
    		
    		SetEnvIF REMOTE_ADDR "^46\.4\.69\.143$" DenyAccess
    		SetEnvIF X-FORWARDED-FOR "^46\.4\.69\.143$" DenyAccess
    		SetEnvIF X-CLUSTER-CLIENT-IP "^46\.4\.69\.143$" DenyAccess
    		
    		SetEnvIF REMOTE_ADDR "^59\.147\.24\.119$" DenyAccess
    		SetEnvIF X-FORWARDED-FOR "^59\.147\.24\.119$" DenyAccess
    		SetEnvIF X-CLUSTER-CLIENT-IP "^59\.147\.24\.119$" DenyAccess
    		
    		SetEnvIF REMOTE_ADDR "^187\.105\.103\.230$" DenyAccess
    		SetEnvIF X-FORWARDED-FOR "^187\.105\.103\.230$" DenyAccess
    		SetEnvIF X-CLUSTER-CLIENT-IP "^187\.105\.103\.230$" DenyAccess
    		
    		
    	# END Ban Users
    	# BEGIN Hide Backend
    			# Rules to hide the dashboard
    			RewriteRule ^/logon/?$ /wp-login.php [QSA,L]
    		
    	# END Hide Backend
    	# BEGIN Tweaks
    		# Rules to block access to WordPress specific files
    		<files .htaccess>
    			Order allow,deny
    			Deny from all
    		</files>
    		<files readme.html>
    			Order allow,deny
    			Deny from all
    		</files>
    		<files readme.txt>
    			Order allow,deny
    			Deny from all
    		</files>
    		<files install.php>
    			Order allow,deny
    			Deny from all
    		</files>
    		<files wp-config.php>
    			Order allow,deny
    			Deny from all
    		</files>
    		
    		# Rules to disable directory browsing
    		Options -Indexes
    		
    		<IfModule mod_rewrite.c>
    			RewriteEngine On
    		
    			# Rules to protect wp-includes
    			RewriteRule ^wp-admin/includes/ - [F]
    			RewriteRule !^wp-includes/ - [S=3]
    			RewriteCond %{SCRIPT_FILENAME} !^(.*)wp-includes/ms-files.php
    			RewriteRule ^wp-includes/[^/]+\.php$ - [F]
    			RewriteRule ^wp-includes/js/tinymce/langs/.+\.php - [F]
    			RewriteRule ^wp-includes/theme-compat/ - [F]
    		
    			# Rules to help reduce spam
    			RewriteCond %{REQUEST_METHOD} POST
    			RewriteCond %{REQUEST_URI} ^(.*)wp-comments-post\.php*
    			RewriteCond %{HTTP_REFERER} !^(.*)balenaludens.it.* 
    			RewriteCond %{HTTP_REFERER} !^https://jetpack\.wordpress\.com/jetpack-comment/ [OR]
    			RewriteCond %{HTTP_USER_AGENT} ^$
    			RewriteRule ^(.*)$ - [F]
    		</IfModule>
    	# END Tweaks
    # END iThemes Security
    RewriteEngine On
    RewriteBase /
    RewriteRule ^index\.php$ - [L]
    # add a trailing slash to /wp-admin
    RewriteRule ^wp-admin$ wp-admin/ [R=301,L]
    RewriteCond %{REQUEST_FILENAME} -f [OR]
    RewriteCond %{REQUEST_FILENAME} -d
    RewriteRule ^ - [L]
    RewriteRule ^(wp-(content|admin|includes).*) $1 [L]
    RewriteRule ^(.*\.php)$ $1 [L]
    RewriteRule . index.php [L]
    php_flag apc.cache_by_default Off
    <IfModule mod_deflate.c>
    	<IfModule mod_filter.c>
    		AddOutputFilterByType DEFLATE text/plain text/html application/x-httpd-php-source
    		AddOutputFilterByType DEFLATE text/xml application/xml application/xhtml+xml application/xml-dtd
    		AddOutputFilterByType DEFLATE application/rdf+xml application/rss+xml application/atom+xml image/svg+xml
    		AddOutputFilterByType DEFLATE text/css text/javascript application/javascript application/x-javascript
    		AddOutputFilterByType DEFLATE font/truetype application/x-font-ttf font/opentype application/x-font-otf
    	</IfModule>
    </IfModule>
    
    # Wordfence WAF
    <IfModule mod_php5.c>
    	php_value auto_prepend_file '/home/balenang/public_html/wordfence-waf.php'
    </IfModule>
    <Files ".user.ini">
    <IfModule mod_authz_core.c>
    	Require all denied
    </IfModule>
    <IfModule !mod_authz_core.c>
    	Order deny,allow
    	Deny from all
    </IfModule>
    </Files>
    
    # END Wordfence WAF
    
    # forzare WWW.balenaludens.it
    
    RewriteEngine on
    RewriteBase /
    RewriteCond %{HTTP_HOST} ^balenaludens.it [NC]
    RewriteRule ^(.*)$ https://www.balenaludens.it/$1 [L,R=301,NC]
    
    # END forzare WWW.balenaludens.it
    

    Google console report this response:

    
    HTTP/1.1 302 Found
    Date: Thu, 13 Jul 2017 09:29:14 GMT
    Server: Apache
    X-Powered-By: PHP/5.5.38
    Location: https://www.balenaludens.it/wp-signup.php?new=balenaludens.it
    Content-Length: 0
    Keep-Alive: timeout=3, max=100
    Connection: Keep-Alive
    Content-Type: text/html
    
Viewing 4 replies - 1 through 4 (of 4 total)
  • Hi.
    Change your ftp password, since you have shared it in your wp-config.php and is a security hole now.
    Try moving this code at the top of the htaccess file:

    # forzare WWW.balenaludens.it
    
    RewriteEngine on
    RewriteBase /
    RewriteCond %{HTTP_HOST} ^balenaludens.it [NC]
    RewriteRule ^(.*)$ https://www.balenaludens.it/$1 [L,R=301,NC]
    
    # END forzare WWW.balenaludens.it
    Thread Starter balena

    (@balena)

    THankS!
    PAssword changed

    But the change you proposed doens’ work:
    `
    Internal Server Error

    Create a new htaccess file with this code only and try if it is fine then (save a backup of the other file of course).

    RewriteEngine on
    RewriteBase /
    RewriteCond %{HTTP_HOST} ^balenaludens.it$ [NC]
    RewriteRule (.*) https://www.balenaludens.it/$1 [R=301,L]
    
    RewriteEngine On
    RewriteBase /
    RewriteRule ^index\.php$ - [L]
    # add a trailing slash to /wp-admin
    RewriteRule ^wp-admin$ wp-admin/ [R=301,L]
    RewriteCond %{REQUEST_FILENAME} -f [OR]
    RewriteCond %{REQUEST_FILENAME} -d
    RewriteRule ^ - [L]
    RewriteRule ^(wp-(content|admin|includes).*) $1 [L]
    RewriteRule ^(.*\.php)$ $1 [L]
    RewriteRule . index.php [L]
    Thread Starter balena

    (@balena)

    Done!

    Sorry, doesn’t work

Viewing 4 replies - 1 through 4 (of 4 total)
  • The topic ‘redirect mysite.com/wp-signup.php?new=mysite.com’ is closed to new replies.