WPIntell

Source evidence

not working: authentication loop

HTTP Auth · support · 2019-07-07T00:34:00+00:00

complaintsentiment
mediumseverity
0.93relevance
6replies
Evidence linked to opportunitycommercial context

Proof Health

Open evidence

Commercial opportunities need traceable source links before they are treated as build-worthy.

4 / 20 rows with source links

20.0% of this page's analysis has direct source links.

0 build-decision rows missing links

0 rows here require auditable proof before promotion.

16 rows with no attached evidence

0 rows have source counts but still need direct links.

Conversation

support
ashs_au unresolved
hi, I’ve configured the plugin & it’s just in an authentication loop: challenge, enter user/pass, challenge reappears. On both ‘just admin’ and ‘whole site’ settings. Can you tell me whether the user & password is saved into the database (& where) or as a traditional .htpasswd file? (& where in relation to the site root) – in the latter case, there might be permissions issues with my hosting that I can resolve. thanks, Ash The page I need help with: [ log in to see the link] ah looks like the info is stored in the DB but still not working. Hi @ashs_au Yes, credentials are stored in the DB. What’s your Hosting server? Maybe, there is some issue with Hosting. Regards, Sami yep: quadra hosting on an AU server. These guys used to have some default http auth in place to protect against brute forcing wp-admin – which has since gone. But there might still be some global ‘Apache magic’ remaining on their hosting. I’ll contact their support & ask since the error log remains empty. A @ashs_au Let me know once you get a reply from the Hosting server. Hi, I installed http auth within an multisite, to pretect each multisite with different users and passwords. Settings are to protect whole page and activated. I can access the usual wordpress-login without http-auth. If I want to open frontend, http-auth occurs, but its not possible to enter the page, after sending passwort the http-login-form is back again. Does the plugin works in multisite? thanks, Rudi @rudolffiedler I hope that it works with multisite BUT never tested it with multisite.

Comments

6 shown
ashs_au 2019-07-07T01:22:00+00:00

ah looks like the info is stored in the DB but still not working.

Sami Ahmed Siddiqui 2019-07-07T20:44:00+00:00

Hi @ashs_au Yes, credentials are stored in the DB. What’s your Hosting server? Maybe, there is some issue with Hosting. Regards, Sami

ashs_au 2019-07-07T22:25:00+00:00

yep: quadra hosting on an AU server. These guys used to have some default http auth in place to protect against brute forcing wp-admin – which has since gone. But there might still be some global ‘Apache magic’ remaining on their hosting. I’ll contact their support & ask since the error log remains empty. A

Sami Ahmed Siddiqui 2019-07-08T06:35:00+00:00

@ashs_au Let me know once you get a reply from the Hosting server.

RudolfFiedler 2019-12-12T11:00:00+00:00

Hi, I installed http auth within an multisite, to pretect each multisite with different users and passwords. Settings are to protect whole page and activated. I can access the usual wordpress-login without http-auth. If I want to open frontend, http-auth occurs, but its not possible to enter the page, after sending passwort the http-login-form is back again. Does the plugin works in multisite? thanks, Rudi

Sami Ahmed Siddiqui 2019-12-12T16:28:00+00:00

@rudolffiedler I hope that it works with multisite BUT never tested it with multisite.