Understanding the the file uploads rule
-
I receive MS Word files through my contact form (.doc & .docx), and have been unsure about the file uploads settings in the Firewall Policies section of Ninja Firewall. It is currently set to the default (disallow uploads), and I have been able to both receive uploaded .doc/.docx files from clients, and also from my own tests through the contact form. These are then written to the log as uploads.
Today I saw a repeated attempt from the same IP address to upload a .doc file as a post request marked as level critical: POST /index.php – File upload attempt – [xxxxx.docx, 13,419 bytes]. No email was received.
When I check my logs for another site which has exactly the same Ninja Firewall setup and settings, I notice that a .docx file attachment to an email was also marked as level critical: POST /index.php – File upload attempt – [xxxxx.docx, 33,759 bytes]. But this time the email and .docx attachment were received.
I feel a little confused. Should I be allowing file uploads in my firewall options if I nee to receive all .doc and .docx attachments, and if so will I be exposing the sites to malicious uploads?
- The topic ‘Understanding the the file uploads rule’ is closed to new replies.