#65 entering git.teknik.io on some browsers brings the user to a 403

Closed
opened 2 years ago by jimmybot · 7 comments
jimmybot commented 2 years ago

I have experienced entering git.teknik.io to a browser and being sent to http://git.teknik.io, which is a 403.

I suspect connections on http:// were not expected. However, this means if users simply type git.teknik.io the browser may format it to http:// every time leading them to get a 403 when they try to visit this site.

I have experienced entering git.teknik.io to a browser and being sent to http://git.teknik.io, which is a 403. I suspect connections on http:// were not expected. However, this means if users simply type git.teknik.io the browser may format it to http:// every time leading them to get a 403 when they try to visit this site.
Uncled1023 added the
Bug
label 2 years ago
Uncled1023 commented 2 years ago
Owner

That is definitely not intended! Will look into why it isn’t redirecting.

That is definitely not intended! Will look into why it isn't redirecting.
Ghost commented 2 years ago

I confirm this happens when using Firefox set to not remember history/cookies/cache or private browsing always enabled. If set to remember until Firefox closes, SSL redirections work correctly.

I reported it here but I wasn’t sure what caused it, then.

I confirm this happens when using Firefox set to not remember history/cookies/cache or private browsing always enabled. If set to remember until Firefox closes, SSL redirections work correctly. I reported it [here](https://git.teknik.io/Teknikode/Teknik/issues/39) but I wasn't sure what caused it, then.
Ghost commented 2 years ago

Strangely, now I was able to reproduce this only on Linux Ubuntu, with both Firefox (normal privacy settings set to remember everything) and Chromium. Related issue.

Strangely, now I was able to reproduce this only on **Linux Ubuntu**, with both Firefox (normal privacy settings set to remember everything) and Chromium. Related [issue](https://git.teknik.io/Teknikode/Teknik/issues/68).
Uncled1023 commented 1 year ago
Owner

@dmz76, @jimmybot, still an issue?

@dmz76, @jimmybot, still an issue?
Ghost commented 1 year ago

This is definitely not an issue with Teknik. It only happens in Linux Ubuntu (on Windows and OS X, redirections work OK).

In Linux, if I open the browser for the first time and enter mail.teknik.io it doesn’t redirect to https but the page is accessed. If I enter git.teknik.io it also doesn’t redirect to https and I get a 403 error page.

Then, without closing the browser, if I go to upload.teknik.io or simply teknik.io, it redirects to https correctly. From then on, if I access again git.teknik.io or mail.teknik.io it redirects to https correctly.

I would close this. @jimmybot doesn’t usually respond and he can always re-open the issue.

This is definitely not an issue with Teknik. It only happens in Linux Ubuntu (on Windows and OS X, redirections work OK). In Linux, if I open the browser for the first time and enter `mail.teknik.io` it doesn't redirect to https but the page is accessed. If I enter `git.teknik.io` it also doesn't redirect to https and I get a 403 error page. Then, without closing the browser, if I go to `upload.teknik.io` or simply `teknik.io`, it redirects to https correctly. From then on, if I access again `git.teknik.io` or `mail.teknik.io` it redirects to https correctly. I would close this. @jimmybot doesn't usually respond and he can always re-open the issue.
Ghost commented 1 year ago

@Uncled1023 A couple of days ago (27 december, around 1am), Teknik was offline for some time.

Today (29 december), http://mail.teknik.io and http://git.teknik.io are not redirecting to a secure connection. I didn’t change any browser settings.

Try cleaning all cookies, quitting and relaunching the browser to replicate the issue.
Tested on OS X 10.11.6, Safari 11.0.1.

Related issue: #68

@Uncled1023 A couple of days ago (27 december, around 1am), Teknik was offline for some time. Today (29 december), [http://mail.teknik.io](http://mail.teknik.io) and [http://git.teknik.io](http://git.teknik.io) **are not** redirecting to a secure connection. I didn't change any browser settings. Try cleaning all cookies, quitting and relaunching the browser to replicate the issue. Tested on **OS X 10.11.6, Safari 11.0.1**. Related issue: https://git.teknik.io/Teknikode/Teknik/issues/68
Ghost commented 1 year ago

OK, I think I nailed it…

  1. Clean all cookies and restart browser
  2. Access http://mail.teknik.io or http://git.teknik.io - doesn’t redirect to secure connection
  3. Access http://teknik.io - redirects to secure connection, deploys cookie
  4. Try step 2 again - redirects to secure connection
OK, I think I nailed it... 1. Clean all cookies and restart browser 2. Access [http://mail.teknik.io](http://mail.teknik.io) or [http://git.teknik.io](http://git.teknik.io) - doesn't redirect to secure connection 3. Access [http://teknik.io](http://teknik.io) - redirects to secure connection, deploys cookie 4. Try step 2 again - redirects to secure connection
Sign in to join this conversation.
No Milestone
No Assignees
3 Participants
Due Date

No due date set.

Dependencies

This issue currently doesn't have any dependencies.

Loading…
Cancel
Save
There is no content yet.