<?xml version="1.0" encoding="utf-8"?>

<rdf:RDF
  xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
  xmlns:dc="http://purl.org/dc/elements/1.1/"
  xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
  xmlns:admin="http://webns.net/mvcb/"
  xmlns:cc="http://web.resource.org/cc/"
  xmlns="http://purl.org/rss/1.0/">

<channel rdf:about="http://mt-hacks.com/">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html</link>
<description>Spam Firewall v1.2 - Updated Rules and Bug Fix Discussion at MT-Hacks.com</description>
<dc:language>en-us</dc:language>
<dc:creator>Mark</dc:creator>
<dc:date>2007-02-21T09:46:35-05:00</dc:date>
<admin:generatorAgent rdf:resource="http://www.movabletype.org/?v=4.25b2-en" />

<cc:license rdf:resource="http://creativecommons.org/licenses/by-nc-sa/1.0/" />


<items>
<rdf:Seq>
<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#211018" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#211025" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#211028" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#211061" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#211385" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#211408" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#211577" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#211582" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#212542" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#212590" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#212641" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#212744" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#212995" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#213045" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#213083" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#219615" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#219894" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#220250" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#220546" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#220614" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#223133" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#225331" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#226118" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#226800" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#232154" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#232370" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#238153" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#238183" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#242565" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#250421" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#267264" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#339890" />

<rdf:li rdf:resource="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#340672" />
</rdf:Seq>
</items>

</channel>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html</link>
<description><![CDATA[<p>Spam Firewall v1.2 is now available.  Version 1.2 has two changes:</p>

<ul><li>An updated "top 40" list of firewall rules</li>
<li>A bug fix that should address the "blank page" problem that some people experienced from time-to-time.  If you still have this problem with version 1.2, please let me know.</li></ul>

<p><strong>Download Now</strong></p>

<p><MTIfMemberLoggedIn><a href="/downloads/SpamFirewall.zip" target="_blank" title="Download Now" onclick="pushRating('spamfirewalldownloads',1,1,22,<$MTAjaxRatingTotalScore type="spamfirewalldownloads" id="1"$>,<$MTAjaxRatingVoteCount type="spamfirewalldownloads" id="1"$>,0);"><img src="/images/download.gif" alt="Download Now"/></a> <br />
<span class="downloads">Downloads: <$MTAjaxRatingVoteCount id="1" type="spamfirewalldownloads"$> (since 2/21/07)</span></MTIfMemberLoggedIn></p>

<p><strong>About Spam Firewall</strong></p>

<p>Spam Firewall is a plugin for Movable Type that can help reduce this load.  The goal of Spam Firewall is to block 80% of spam attempts before they reach MT's comment and trackback scripts.  As the name suggests, it acts like a firewall protecting your MT scripts.</p>

<p><strong>How Spam Firewall Works</strong></p>

<p>Spam Firewall creates a PHP script that acts as a firewall.  Once installed, when comments or trackbacks are posted, they get posted to the PHP firewall script.  The firewall script will then scan the the request against a "Top 40" list of common spam patterns.  If the request matches, things stop right there.  If the request passes the test, it gets forwarded to MT for processing in the normal manner.  Most spam is blocked quickly, without consuming large amounts of CPU and memory.</p>

<p><strong>The Top 40 List</strong></p>

<p>The key to Spam Firewall is a "Top 40" list of common spam patterns.  The 40 spam patterns (rules) released today represent 80% of the spam that I have received in the past 8 days.  Of a total of 14,405 spam attempts, this Top 40 list matches 11,541 of them (80.1%).  The list is based on real spam attempts from the past week.  I plan on updating the Top 40 list regularly.</p>

<p><strong>Requirements:</strong></p>

<ul><li>MT 3.2+</li>
<li>PHP (Note: you do <em>not</em> need to enable MT's dynamic publishing to use Spam Firewall, but your server must support PHP scripts -- most do)</li></ul>

<p><strong>Instructions:</strong></p>

<ol><li>Download the zip file and extract its contents.</li>
<li>Within the main 'Spam Firewall' directory, there are two folders, one names 'plugins' and one named 'php'.  Upload both of these folders (including sub folders and files) into the same directory as Movable Type (often /cgi-bin/mt).</li>
<li>Go to 'Settings' on the blog you want to setup, then choose 'Plugins', then choose the 'Settings' link under "Spam Firewall".  Then click the "Click here to install the Spam Firewall Template for this blog" link.  This will install the Spam Firewall index template and rebuild it.  Advanced users can change the Output File name if desired, but you should not change the Name of the template.</li>
<li>(Optional, but highly recommended) Rename your comment and trackback scripts [<a href="http://www.sixapart.com/pronet/comment_spam#commentscript" target="_blank">More Info</a>]. Because Spam Firewall hides the name of these MT scripts, now is a very good time to rename them.</li>
<li>To setup Spam Firewall for comments, you need to change the comments submission form to point to the firewall script.  Go to your Individual Archive Template and look for the following:

<p>action="&lt;$MTCGIPath$>&lt;$MTCommentScript$>"</p>

<p>and replace it with:</p>

<p>action="&lt;$MTBlogURL$>&lt;$MTFirewallCommentScript$>"</li><br />
<li>To setup Spam Firewall for trackbacks, look for the &lt;$MTEntryTrackbackData$> and replace it with &lt;$MTFirewallTrackbackData$>.  Also, look for the &lt;$MTEntryTrackbackLink$> and replace it with &lt;$MTFirewallTrackbackLink$>.</li><br />
<li>Rebuild all individual archives.</li></ol></p>

<p><strong>Download Spam Firewall</strong></p>

<p><strong><em>Non-commercial use</em></strong> - FREE  ( In exchange for the free use of this plugin, I ask that you install the <a href="http://www.mtpluginnetwork.com/2006/12/mt_plugin_network_v10.php" target="_blank">MT Plugin Network</a> plugin.  Plugin Network will help keep you up to date on the latest version (and rules) of Spam Firewall and other useful plugins. [<a href="http://www.mtpluginnetwork.com/2006/12/mt_plugin_network_v10.php" target="_blank">more info</a>]) </p>

<p>Also, donations are appreciated:<br />
<form action="https://www.paypal.com/cgi-bin/webscr" method="post"><input type="hidden" name="cmd" value="_xclick"><input type="hidden" name="business" value="payme@markcarey.com"><input type="hidden" name="item_name" value="Spam Firewall Plugin Donation"><input type="hidden" name="item_number" value="48804"><input type="hidden" name="no_shipping" value="2"><input type="hidden" name="no_note" value="1"><input type="hidden" name="currency_code" value="USD"><input type="hidden" name="shipping" value="0.00"><input type="hidden" name="no_shipping" value="1"><input type="hidden" name="tax" value="0"><input type="hidden" name="bn" value="PP-DonationsBF"><input type="image" src="https://www.paypal.com/en_US/i/btn/x-click-but21.gif" border="0" name="submit" alt="Make payments with PayPal - it's fast, free and secure!"><img alt="" border="0" src="https://www.paypal.com/en_US/i/scr/pixel.gif" width="1" height="1"></form></p>

<p><strong><em>Commercial use</em></strong> - <strong>$97.00</strong> </p>

<div><form action="https://www.paypal.com/cgi-bin/webscr" method="post">
<input type="hidden" name="cmd" value="_xclick">
<input type="hidden" name="business" value="payme@markcarey.com">
<input type="hidden" name="item_name" value="Spam Firewall Plugin - Commercial License">
<input type="hidden" name="item_number" value="48804">
<input type="hidden" name="amount" value="97.00">
<input type="hidden" name="shipping" value="0.00">
<input type="hidden" name="page_style" value="MT_Hacks">
<input type="hidden" name="no_shipping" value="1">
<input type="hidden" name="cancel_return" value="http://mt-hacks.com/spamfirewall.html">
<input type="hidden" name="no_note" value="1">
<input type="hidden" name="currency_code" value="USD">
<input type="hidden" name="lc" value="US">
<input type="hidden" name="bn" value="PP-BuyNowBF">
<input type="hidden" name="on0" value="affiliate">
<input type="hidden" name="os0" value="<?=$_REQUEST['affiliate'] ?>">
<input type="image" src="https://www.paypal.com/en_US/i/btn/x-click-but23.gif" border="0" name="submit" alt="Make payments with PayPal - it's fast, free and secure!">
<img alt="" border="0" src="https://www.paypal.com/en_US/i/scr/pixel.gif" width="1" height="1">
</form></div>

<p><strong>Download Now</strong></p>

<p><MTIfMemberLoggedIn><a href="/downloads/SpamFirewall.zip" target="_blank" title="Download Now" onclick="pushRating('spamfirewalldownloads',1,1,22,<$MTAjaxRatingTotalScore type="spamfirewalldownloads" id="1"$>,<$MTAjaxRatingVoteCount type="spamfirewalldownloads" id="1"$>,0);"><img src="/images/download.gif" alt="Download Now"/></a> <br />
<span class="downloads">Downloads: <$MTAjaxRatingVoteCount id="1" type="spamfirewalldownloads"$> (since 2/21/07)</span></MTIfMemberLoggedIn></p>

<p>As always, suggestions and feedback are appreciated.  Please reply to this entry.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Mark</dc:creator>
<dc:date>2007-02-21T09:46:35-05:00</dc:date>
</item>


<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#211018</link>
<description><![CDATA[<p>I updated to 1.2.   Noticing a weird thing.   I have a trackback going to the old post.  It seems to go through fine.  But when you check the individual post to look for the trackback, it doesn't show up.  It doesn't show in the trackbacks tab either in the admin section.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>darkmoon</dc:creator>
<dc:date>2007-02-24T14:20:59-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#211025</link>
<description><![CDATA[<p>darkmon, what do you mean by " I have a trackback going to the old post"?  What old post?  A ping from where to where?</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Mark Carey</dc:creator>
<dc:date>2007-02-24T15:04:48-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#211028</link>
<description><![CDATA[<p>So I'm writing a new post dated (today) and it's linking back to an older dated post on the same blog.  Thus, you should see a trackback that shows on the "older post" linking to the "newer post".</p>

<p>Same blog, just two different posts.   Unfortunately, on the new post, you see the ping go through, but it doesn't register on the trackback screen or the older individual post.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>darkmoon</dc:creator>
<dc:date>2007-02-24T15:17:50-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#211061</link>
<description><![CDATA[<p>The rules aren't catching posts of the kind "(very) good / nice / cool" + "site," and I'm really not sure why. The plugin is working otherwise, as test comments with other words in the rules are properly blocked.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Kate Nepveu</dc:creator>
<dc:date>2007-02-24T16:19:58-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#211385</link>
<description><![CDATA[<p>darkmon, now I understand.  Strange that there was no error...  I am not sure if I have tested this with "internal trackbacks" -- I will take a look.</p>

<p>Kate, the current rules in v1.2 should block all of the following, when a comment or trackback <em>starts</em> with:</p>

<p>good site. thank<br />
good site. thanks<br />
good site. thank you<br />
nice site. thank<br />
nice site. thanks<br />
nice site. thank you<br />
cool site. thank<br />
cool site. thanks<br />
cool site. thank you<br />
very good site. thank<br />
very good site. thanks<br />
very good site. thank you<br />
very nice site. thank<br />
very nice site. thanks<br />
very nice site. thank you<br />
very cool site. thank<br />
very cool site. thanks<br />
very cool site. thank you</p>

<p>Note that each of the above includes 'thank' -- does the one(s) that got through have this.  Admittedly, this rule does really neeed the 'thank' part, and I probably should remove it...</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Mark Carey</dc:creator>
<dc:date>2007-02-25T06:51:01-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#211408</link>
<description><![CDATA[<p>"good site. thank" gets through when it's the only thing in the comment; you can try it yourself on the link in the URL field.</p>

<p>Here's what spamw.php reads, minus the starting line:</p>

<p>if ($_SERVER['REQUEST_METHOD'] != "POST") { exit("must use POST"); }<br />
$fields = $_REQUEST['author'] . ' ' . $_REQUEST['blog_name'] . ' ' . $_REQUEST['title'] . ' ' . $_REQUEST['url']. ' ' . $_REQUEST['email'];<br />
$body = $_REQUEST['text'] . $_REQUEST['excerpt'];<br />
$all = $fields . ' ' . $body;<br />
if (!isset($_COOKIE['tk_commenter'])) {<br />
[snip first rules]<br />
if (preg_match('@^(very )?(good|nice|cool) site\. thank@i',$all)) { exit('Your comment has been blocked as spam; rephrase it or e-mail the administrator'); }</p>

<p>(Yes, I edited the rules to give a more lengthy response than "blocked.") </p>

<p>I can send you the whole file if you like.</p>

<p>Thanks very much--I really like this idea.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Kate Nepveu</dc:creator>
<dc:date>2007-02-25T08:28:29-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#211577</link>
<description><![CDATA[<p>Thanks for the details, Kate.  I tried it on you site, and it went through. Sorry for spamming you ;)  I found a bug in the rules file and fixed it in v1.21.  Use the download links above to grab the updated version.  Thanks for pointing this out.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Mark Carey</dc:creator>
<dc:date>2007-02-25T16:51:00-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#211582</link>
<description><![CDATA[<p>Thanks for looking into it so quickly! I really appreciate it.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Kate Nepveu</dc:creator>
<dc:date>2007-02-25T17:03:18-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#212542</link>
<description><![CDATA[<p>Mark... any luck in seeing if internal trackbacks work?  I'm still at a loss on my blog and I'm not sure any tbs are going through.  It's a very strange thing happening.</p>

<p>When I trackback from post A to post B,<br />
MT registers post A as a good ping and doesn't show any sign of a bad tb on the activity log.  But the tb doesn't show up on post B, nor does it show up under the tb tracker.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>darkmoon</dc:creator>
<dc:date>2007-02-28T05:41:05-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#212590</link>
<description><![CDATA[<p>darkmon, I just tested on my system and it worked okay.</p>

<p>Any chance your trackback was getting blocked by the firewall rules itself? If so, it wouldn't register as an error in MT. When the firewall blocks something, it doesn't send an error code back.  In some ways this is a feature, as spambot will get the impression that the spam was successful, so they won't try again.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Mark Carey</dc:creator>
<dc:date>2007-02-28T07:30:20-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#212641</link>
<description><![CDATA[<p>Is there any way to get a backlog or error log built in?   Right now, there's not really any way to tell where it gets stopped in the actual feed or if spamfirewall blocked it.   It just disappears which is pretty strange.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>darkmoon</dc:creator>
<dc:date>2007-02-28T10:23:46-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#212744</link>
<description><![CDATA[<p>Well, one way to tell is to manually create a "trackback form".  Similar to a comment form, but point it to SpamFW trackback URL, and then manually submit the following fields:</p>

<p>blog_name<br />
title<br />
url<br />
excerpt</p>

<p>A bit of pain to test this way, but it came in handy when I was developing this plugin.</p>

<p>By the way, which entry on you site was "sending" the trackback?  If you can provide a link, I might be able to guess if it might be tripping one of the firewall rules.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Mark Carey</dc:creator>
<dc:date>2007-02-28T14:41:14-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#212995</link>
<description><![CDATA[<p>This is the link that the tb originated from:<br />
<a href="http://life.firelace.com/2007/02/tjx_security_breach_could_be_b_1.html">http://life.firelace.com/2007/02/tjx_security_breach_could_be_b_1.html</a></p>

<p>Another idea is if you could run a whitelist for sites that spamfw will ignore.   If that can be managed, then you would skip the rules if they existed from such site.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>darkmoon</dc:creator>
<dc:date>2007-03-01T05:54:50-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#213045</link>
<description><![CDATA[<p>darkmoon, thanks for the link. Based on that, it seems unlikey that the trackback was blocked by the firewall -- it shouldn't have triggered any rules.  Maybe it timed out, hard to tell for sure.</p>

<p>Your whitelist idea is a good one, though I am not sure if it would help in this case, as I think the problem lies elsewhere.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Mark Carey</dc:creator>
<dc:date>2007-03-01T09:31:35-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#213083</link>
<description><![CDATA[<p>yeah....  I can't figure it out.  Nothing has changed, and the trackbacks work fine from the original configuration.   Only difference is the spamfw install.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>darkmoon</dc:creator>
<dc:date>2007-03-01T11:37:08-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#219615</link>
<description><![CDATA[<p>Installed this on a friend's blog and get "premature end of script headers" errors in the server logs. Permissions are at 644 (also tried 755) on spamfw.php. Have double-checked installation and tag changes, rebuilt everything several times, etc. </p>

<p>Any thoughts? Got this running fine on my own blog, but can't get it to work on the friend's blog.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Gary</dc:creator>
<dc:date>2007-03-21T21:20:42-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#219894</link>
<description><![CDATA[<p>Gary,</p>

<p>Is the error on the spamfw.php file itself, or when the spam firewall script tries to post to the comment script.  The different may not be immediately obvious, but it important. To test this, and easy way is to post a comment with a 'bad word' in the name field. (examples: the name of that blue pill, or the place where people go to gamble).  If the firewall is working, you should get a "blocked" message.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Mark Carey</dc:creator>
<dc:date>2007-03-23T09:43:29-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#220250</link>
<description><![CDATA[<p>Mark,<br />
The error is on spamfw.php. Showed up during the rebuild (Movable Type), thus digging into the error logs to figure out why the server error page showed up. </p>

<p>I've got in uninstalled at the moment, but can reinstall if you have some ideas on things to try.</p>

<p>Thanks,<br />
Gary<br />
BTW, on the various messages i've posted here, I've never received an email notification of new posts, even though I've checked "subscribe to this comment" each time! Just FYI.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Gary</dc:creator>
<dc:date>2007-03-24T22:56:50-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#220546</link>
<description><![CDATA[<p>Gary,</p>

<p>Thanks for the detail.  If I understand you correctly, you get the 500 error when inside the MT admin area while trying to <em>rebuild</em> the spam firewall template.  This is much different than getting the error on the spamfw.php itself.  In this case, it is the MT admin script that is triggering the error during the rebuild.  </p>

<p>Since you mention that you tried change permissions of the spamfw.php file itself, this suggests that the rebuild of the template was successful (otherwise the file wouldn't get built and wouldn't exist). As such I am confused.</p>

<p>What version of MT?  What version of perl?  When you get the internal server error, does it happen right away, or does it take a while before showing the error?  Have you tried submitting a comment to the firewall (if so, does it work)?</p>

<p>Ps.  I know about that "email subscription" problem.  I have used that feature in a long time, and I need to remove the checkbox.  My bad.  Sorry for the confusion.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Mark Carey</dc:creator>
<dc:date>2007-03-26T09:38:13-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#220614</link>
<description><![CDATA[<p>Mark,</p>

<p>Let me reinstall this and run some tests, noting exactly what happens and when. I'll get back to you with those details. I've been preoccupied with other stuff, and I admit I'm fuzzy on the exact steps to the error!</p>

<p>Back to you soon. </p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Gary</dc:creator>
<dc:date>2007-03-26T15:00:56-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#223133</link>
<description><![CDATA[<p>This sounded like a good idea, but the two times I've tried using Spam Firewall, commenting ceases to work.  After logging in to Typekey, I try leaving a test comment, and I get the "Comment Error" page telling me I need to be registered to leave a comment.  After changing the plugin template codes back to the MT commenting script, I'm able to leave the comment.</p>

<p>I have MT 3.34 with the commenting on FastCGI and my blog on a subdomain, if that helps.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Curtis Gale Weeks</dc:creator>
<dc:date>2007-04-07T03:59:33-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#225331</link>
<description><![CDATA[<p>Hi Curtis, sorry for delayed response.  When you say "my blog on a subdomain", do you mean that your blog is on a different subdomain than the MT application?  If so, this could be causing the issue.</p>

<p>That particular case is currently a limitation. The PHP firewall script has access to the cookies on blog domain but not on the MT domain. So when the blog domain is different that the MT domain, there's no easy way to pass those TypeKey cookies across. One way to work around is to build the Spam Firewall template as you normally would, and then manually move (or copy) the built PHP file over to a location on the MT domain. Then, update the comment form on your Individual Archive template to point to the new location of of the firewall script.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Mark Carey</dc:creator>
<dc:date>2007-04-16T20:18:42-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#226118</link>
<description><![CDATA[<p>Mark, in dynamic templates the following error message appears: "Smarty error: [in mt:100 line 73]: syntax error: unrecognized tag 'MTFirewallCommentScript' (Smarty_Compiler.class.php, line 580)"</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>DrÃ©</dc:creator>
<dc:date>2007-04-20T05:49:59-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#226800</link>
<description><![CDATA[<p>Mark,</p>

<p>I've tried your suggestions, but I'm still not getting this to work properly for comments.</p>

<p>I have MT set up under cgi-bin on one domain, <a href="http://phaticcommunion.com," rel="nofollow">http://phaticcommunion.com,</a> and a blog on that domain.  I have another blog on a subdomain, <a href="http://fifthgeneration.phaticcommunion.com." rel="nofollow">http://fifthgeneration.phaticcommunion.com.</a>  The second blog (where I spend 90% of my time blogging) is causing the problem.</p>

<p>I copied the script file that was created under the subdomain to phaticcommunion.com and pointed the commenting script there.  When I did, regular commenting on the subdomain's blog worked, but when I tested out a blocked comment, it also published.</p>

<p>Then, I pointed the commenting form to <a href="http://fifthgeneration.phaticcommunion.com/[script]," rel="nofollow">http://fifthgeneration.phaticcommunion.com/[script],</a> and a test spam comment caused a page to load that said, "blocked!", but a real comment received the error I mentioned before ("Registration required").</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Curtis Gale Weeks</dc:creator>
<dc:date>2007-04-23T06:43:21-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#232154</link>
<description><![CDATA[<p>Hi Mark,</p>

<p>On one of my blogs a person tried to leave a legitimate trackback and was met with the text "must use POST". I think that person is using Blogger, which I remember didn't have the ability to send trackbacks on its own but needed third party support for that. Is there a way to accept these kinds of trackbacks?</p>

<p>FYI - I'm running MT3.34 with Spam Firewall 1.2. </p>

<p>Thanks!</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>roderick</dc:creator>
<dc:date>2007-05-16T11:03:46-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#232370</link>
<description><![CDATA[<p>roderick,</p>

<p>The spam firewall script does require that TBs be sentt via an HTTP POST.  This requirement is also true for the built-in TB script. As such, the problem seems to lie with Blogger, or 3rd party solution they are using, that is using a GET instead of a POST.  This requirement is important to protect against server load, and even more spam attempts.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Mark Carey</dc:creator>
<dc:date>2007-05-17T10:56:11-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#238153</link>
<description><![CDATA[<p>Has anyone tried this with MT4.0?</p>

<p>I am currently running the beta and before attempting to use it wanted to make sure it was going to work. I guess there's nothing else to do but try it.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Richard</dc:creator>
<dc:date>2007-06-25T10:36:00-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#238183</link>
<description><![CDATA[<p>Hi Richard,</p>

<p>I haven't tested Spam Firewall with MT4 yet, so I am not sure whether it will work, or whether it will require an update to work with MT4.  I will definitely be updating (if necessary) for the final release of MT4.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Mark Carey</dc:creator>
<dc:date>2007-06-25T13:32:41-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#242565</link>
<description><![CDATA[<p>Is there a way to use this to require people to fill in the "name" field? I don't see that option in MT natively, and it would be a very simple way of bouncing a lot of spam for me.</p>

<p>Thanks.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>Kate Nepveu</dc:creator>
<dc:date>2007-07-25T07:33:30-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#250421</link>
<description><![CDATA[<p>Just curious... does this work with MT4 yet?  I haven't updated my blog yet due to the template changes for spamfirewall, and wasn't sure if anyone had tested it on MT4 yet.   Hopefully it's an easy upgrade without too much hassle.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>darkmoon</dc:creator>
<dc:date>2007-09-23T23:53:14-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#267264</link>
<description><![CDATA[<p>Hiya </p>

<p>I thought I'd give this plugin a try in Movable Type 4, having never used it before.</p>

<p>Unfortunately I have hit a problem from the word go.  Everything is installed but when I try passing a comment through the PHP page, what I get presented with is a 404 for my comment script.  </p>

<p>The script is there - no problem with that.  However I just can't get to it :(</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>bods</dc:creator>
<dc:date>2008-01-07T17:52:30-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#339890</link>
<description><![CDATA[<p>Comment</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>شات صوتي</dc:creator>
<dc:date>2010-01-20T07:47:32-05:00</dc:date>
</item>

<item rdf:about="http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html">
<title>Spam Firewall v1.2 - Updated Rules and Bug Fix</title>
<link>http://mt-hacks.com/20070221-spam-firewall-v12-updated-rules-and-bug-fix.html#340672</link>
<description><![CDATA[<p>I really do need one of these.</p>]]></description>
<dc:subject>SpamFirewall</dc:subject>
<dc:creator>online research papers</dc:creator>
<dc:date>2010-02-06T07:25:38-05:00</dc:date>
</item>


</rdf:RDF>