Ask Question Forum:
Model Library:2025-02-08 Updated:A.I. model including DeepSeek is online for auto reply question page
C
O
M
P
U
T
E
R
2
8
Show
#
ASK
RECENT
25-06-28 16:30:14
Wilson Edwards
Reply:3
Post_ID:829370google adsense
as TitlePlease advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-06-28 16:00:17
Wilson Edwards
Reply:0
Post_ID:829369googles adsense
As TitlePlease advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-06-27 11:44:47
Wilson Edwards
Reply:2
Post_ID:829367googleads;drive traffic;adsense
I read some outside third-party company to prompt driving web traffic to my website to increase my google adsense revenue.How are they able to do ?During driving traffice to my website, it will create google adsense impression or not ?Google will treat that impression is invalid ?Please advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-06-27 11:02:02
Wilson Edwards
Reply:0
Post_ID:829368googleads;invalid traffic
I read some outside third-party company to prompt driving web traffic to my website to increase my google adsense revenue.How are they able to do ?During driving traffice to my website, it will create google adsense impression or not ?Google will treat that impression is invalid ?Please advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-05-05 20:08:11
test test
Reply:3
Post_ID:829366googlebot;crawler;cloudflare
Accept
How my website can use cloudflare with"Under Attack Mode" and be able to allow goolge bot, crawler to crawl my website pages at the same time ?Please advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-04-17 16:26:31
Wilson Edwards
Reply:1
Post_ID:829365css;html
Accept
as title Please advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-04-14 19:42:56
Wilson Edwards
Reply:5
Post_ID:829364javascript
Accept
Please adviseThanks
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-04-14 01:47:39
Wilson Edwards
Reply:2
Post_ID:829363javascript
I have set iframe addEventListener with mousedown event, it works becoz the iframe source is same domain ofthe current page..For example<iframe id=''myiframe" src='https://samedomian.com//test.html'></iframe><script>document.getElementById("myiframe").addEventListener('mousedown, function () {console.log('mousedown event detected');});</script>But when I change iframe src to external domain or cross-domin such as https://example.comit doesn't work, the reason it is blocked by cross-dmain policyAny mothed to solve this issue, how to detect mousedown event on iframe ?
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-04-14 01:22:51
Wilson Edwards
Reply:2
Post_ID:829362javascript
For example, I have a link in DIV-A tag now I can not click the link in DIV-A because it is covered by DIV-B I want to click the link DIV-A anyway. I tried this example, it work at https://computer28.com/learn/pointer-events.php Any other good example or other method to achieve this ? Please advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-03-28 09:26:04
Wilson Edwards
Reply:5
Post_ID:829361google_drive;php;centos8
I would like to download all my google_drive files by using php program code onmy linux centos 8 system server, how to it ?How to get the google API key to start download for php program ?Since the download file size is very huge, how can I speed up the download the file ifits size is more 100G size ?Please advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-03-12 23:38:28
Wilson Edwards
Reply:1
Post_ID:829360javascript;html;css
Accept
I would like to create child node inside of body tag and enclosing all elements inside body tagby javascript code;For example:Before:<html><body><div></div><a></a><span></span></body></html>After, if I would like to see this reuslt, creating new div tag enclose everything inside of body tag, new div tag 's id is new_child_nodeAfter:<html><body><div id='new_child_node'><div></div><a></a><span></span></div></html></body>Please advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-03-03 21:46:28
test test
Reply:4
Post_ID:829359cloudflare;proxy;socket;python;centos 8;apache
I am using cloudflare to protect my website recently,but I have a page which is using python socket to send streaming data to visitor with 5000 portsuch as http://mywbesite.com:5000.Before using clouldflare, visitor can get data from port 5000, now after usingcloudflare, all visitors to my website can not get any data from port 5000.Now I pause cloudflare, the python socket port is working back again..The question is I would to like to keep all cloudflare service such as proxy but python socket port need to work for exception by cloudflare, how can I do that ?My Simple python socket code:from flask import Flask, render_template, request, session,jsonifyfrom flask_sse import ssefrom flask_socketio import SocketIO, emit, join_roomimport platformimport loggingfrom flask_cors import CORSimport socket....if __name__ == "__main__": app.run(host="0.0.0.0",debug=False, port=5000, ssl_context=("mycert")
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-03-02 21:19:15
test test
Reply:3
Post_ID:829358cloudflare;VPN;proxy;linux;apache
My website is using cloudflare internt traffic protection.I am using php code to monitor all internet ip through chrome browser to my websitefor example, monitoring $_SERVER['HTTP_X_FORWARDED_FOR'] and$_SERVER['REMOTE_ADDR'];I try it in those different computers with different ISP ip, I found the result as followsCase-1 Computer A,$_SERVER['HTTP_X_FORWARDED_FOR']="51.58.202.19";$_SERVER['REMOTE_ADDR']="172.64.0.0"where51.58.202.19 is my Compuer A ISP ip and172.64.0.0 is cloudflare use proxy server to get the webpage for Computer A.Case-2 Computer B,$_SERVER['HTTP_X_FORWARDED_FOR']="61.85.102.11";$_SERVER['REMOTE_ADDR']="61.85.102.11"where61.85.102.11is my Compuer B ISP ip and$_SERVER['HTTP_X_FORWARDED_FOR']=$_SERVER['REMOTE_ADDR']My question is Why in case-1 Cloudflare will use proxy to get webapge for computer A butcloudfare don't use proxu to get wbepage for computer B in which both php ip is same from$_SERVER['HTTP_X_FORWARDED_FOR']=$_SERVER['REMOTE_ADDR'] ?Second question, in what condition ro when Cloudflare use proxy or not use proxy to get webpage for browser visitor?Final question isIf cloudflare use proxy , it mean visitors of Computer A, ISP IP maybe bot or maliciousor suspected IP , Can I release Google Ads on my webste and allow the vistior of Computer A to click the ads ? If the visitors click the ads, it mean the click is excuted from Computer A, ISP IP or from Cloudflare 's proxy IP ?Please advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-03-02 12:50:13
test test
Reply:2
Post_ID:829357cloudflare;google chrome;apache
Question 1- Cloudflare show warning, too may redirect on chrome solvedAnswer: solved by removing all redirect from http to https since cloudflare will handleall redirect from http.Since in apahce httpd.conf, we added the following for http to https and except some directorybased on this linkhttps://stackoverflow.com/questions/5818146/how-to-force-rewrite-to-https-except-for-a-few-pages-in-apache#RewriteEngine on#RewriteCond %{SERVER_NAME} =computer28.com [OR]#RewriteCond %{SERVER_NAME} =www.computer28.com#RewriteRule ^https://%{SERVER_NAME}%{REQUEST_URI}[END,NE,R=permanent]#RewriteEngine on#RewriteCond %{HTTPS} =off#RewriteCond %{REQUEST_URI} !^\/local\/#RewriteCond %{REQUEST_URI} !^\/world\/#RewriteRule (.*)https://%{HTTP_HOST}/$1[L,R=301]#RewriteCond %{HTTPS} =on#RewriteCond %{REQUEST_URI} \/fid\/ [OR]#RewriteCond %{REQUEST_URI} \/php\/#RewriteRule (.*)http://%{HTTP_HOST}/$1[L,R=301]Comment it all, it works nowQuestion-2:How to Fix ERR_QUIC_PROTOCOL_ERROR Message in Chrome Browserwhen using cloudflareAnswer-2https://kinsta.com/knowledgebase/err_quic_protocol_error/https://www.hostinger.com/tutorials/how-to-fix-err-quic-protocol-errorchrome://net-internals/#dnsHTTP/3 Cheker:https://http3check.net/?host=computer28.comhttps://kinsta.com/knowledgebase/flush-dns/on Window 10:ipconfig /flushdns //clear all DNS cachingFinal, if still can not solve question-2, delete cloudflare account and then re-create new other account using other gmail accout to see any help from resetting all cloudflare default setting.Need to wait 1-day or 2-day. to see theERR_QUIC_PROTOCOL_ERROR will be sovledor not...If above answer can not be solved, any suggestion or solution to solve those those bothquestions,Please advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-03-01 19:03:13
Wilson Edwards
Reply:2
Post_ID:829356centos 8
as title for the question, I read the link,https://devco.re/blog/2014/06/19/client-ip-detection/ it works , for php as following code., Any other method besides php code, to dectect the ip is real ip not VPN not TOR IP not proxy IP?<?php if(!empty($_SERVER['HTTP_CLIENT_IP'])){ $myip = $_SERVER['HTTP_CLIENT_IP']; }else if(!empty($_SERVER['HTTP_X_FORWARDED_FOR'])){ $myip = $_SERVER['HTTP_X_FORWARDED_FOR']; }else{ $myip= $_SERVER['REMOTE_ADDR']; } echo $myip; ?>
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-03-01 17:56:38
Wilson Edwards
Reply:2
Post_ID:829355google ads;cloudflare
Google Ads can be shown if my website is using cloudflare protection ? and next question isCloudflare can protect my websie from Bot Fraud Click on my website Google Ads.My Cloudflare account is free version Cloudflare.Please advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-28 00:17:59
Wilson Edwards
Reply:4
Post_ID:829354google;reCAPTCHA
I just created reCAPCHA fromg google site athttps://www.google.com/recaptcha/admin/createand following his instruction, created my first reCAPCHA html page such as follows<!DOCTYPE html><html lang="en"><head><script async defer src="https://www.google.com/recaptcha/api.js"></script></head><body><div class="g-recaptcha" data-sitekey="6LcIhOQqAAAAAGbMD-QaT-xjh9VYF87D7w6uMw4n"></div></body></html>The page is successful and show google reCAPCHA, but it will ask me to do image testCan I bypass the image test, just tick the I am not a rebot box only ?Please advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-26 04:32:58
Ty Yt
Reply:1
Post_ID:829353Linux apache
As tilte
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-25 04:28:14
Wilson Edwards
Reply:2
Post_ID:829352centos;linux
I am using linux command, host, to check the revserse ip , some is not found but if I am using, online tool, that IP is normal, not abusive ipHow to check the IP is abusive ?
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-23 19:30:17
Wilson Edwards
Reply:3
Post_ID:829351香港樓市;Hongkong housing price
Accept
香港樓市, 現在買 Okay ?
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-23 17:06:22
Wilson Edwards
Reply:4
Post_ID:829348google adsense
Accept
my website server is new or small server, recently, just start up my server width Google Adsense ads into my site.DUring, these past 7-day, I get page view not much, but have 50 impression and 20 click dailyI check all my apache log file, those access to my wbesite is not too freqently, butToday Google banned my Google Adsense Account, including this time, Google already banned my site for 5-time.The reason is invalid traffic, I have already followed all rules from GooglePlease advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-20 15:15:06
su e
Reply:1
Post_ID:829347excel vba 技術趨勢圖陰陽燭
excel vba 技術趨勢圖陰陽燭
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-18 17:05:47
w kk
Reply:3
Post_ID:829345葵芳地鐵站葵涌廣場鋪位
葵芳地鐵站葵涌廣場鋪位
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-18 16:46:59
w kk
Reply:1
Post_ID:829344why we use
as tile
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-18 16:43:41
w kk
Reply:1
Post_ID:829343bitcoin
as title
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-18 16:33:55
w kk
Reply:2
Post_ID:829342as title
Accept
as title
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-15 21:18:40
Wilson Edwards
Reply:7
Post_ID:829340google;adsense;crawler
Accept
I just want disallow Google search indexing engine to access all my files and all my directories except some files such as index.php and music.png and let ads.txt can be crawled by Google Adsense Crawler Please advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-12 00:53:08
Norton Alex
Reply:1
Post_ID:829260javascript
my question is same as the title And, I search it on internet, the closer one is this link https://stackoverflow.com/questions/3538021/why-do-we-use-base64 Any good article about this topic Regards
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-12 00:48:17
Wilson Edwards
Reply:2
Post_ID:829290window10/11;apache;centos;php;html
Accept
After clicking some Googe Ads and leave the ads site or delete the tab, your browser may forwards you to other site which may give you message such as "Congrulation,! You Get Prize, Bonus, Coupon.etc" Probably your browser is infected by virus and the Congurlation site is hacker /attacker virus site.. I will think the following methods to solve my problem, Please advise those methods are correct 1- Right away or now, remove the forwars site(Congrulation site) or delete such browser Tab 2- Look at this image: https://computer28.com/image/deletecache.jpg Delete or clean your chrome browser data At Chrome browser, Click Sitting->Privacy Security->Delete Browser Data, it will pop up window, in that window, Click Advanced->Select Time Range(All Time)->Tick all box below Time range such as Browsering History..etc. Click Delete Data button 3-If using Window 10, Turn on Microsoft Defender Virus Protection System, always turn it on https://carleton.ca/its/help-centre/how-to-enable-windows-defender-on-personal-pc/ You are better to install Microsoft Window 11 if u are using WIndow 10 4- Add X-Content-Type-Options: nosniff on header at my apache server
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-12 00:32:47
Norton Alex
Reply:3
Post_ID:829339centos;apache;php;html
Accept
as title with the topic tag
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-11 17:12:06
test test
Reply:2
Post_ID:829338centos;linux;A.I.
I would like to stop all A.I. access my website through VPN or TOR browser,How I know the A.I. is accesing into my website pagesPlease advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-11 17:07:11
Wilson Edwards
Reply:1
Post_ID:829291javscript;google_cookie
For latest browser, u can only read cookie value by javascript code. Remove and Update cookie by javascript is very difficult...To read all cookie, u can go to devtool, Mouse Right-click->inspect->Application->Cookieu can see all website cookie u are accessing..You can remove all cookie for the website..by php codingFor example:<?phpif(isset($_SERVER['HTTP_COOKIE'])&&stripos("#".$_SERVER['QUERY_STRING'],'gt=3')>0){$cookies = explode(';', $_SERVER['HTTP_COOKIE']);foreach($cookies as $cookie) {$parts = explode('=', $cookie);$name = trim($parts[0]);setcookie($name, '', time()-1000,'computer28.com');setcookie($name, '', time()-1000, '/','computer28.com');setcookie($name, '', time()-1000,'.computer28.com');setcookie($name, '', time()-1000, '/','.computer28.com');}}if(stripos("#".$_SERVER['QUERY_STRING'],'gt=3')>0){header("location:https://computer28.com"); }?>On address bar with gt=3, it will forward to the main domain site,For update cookie,justsetcookie($name, ''', "the time you want for expire",'computer28.com');Hope it help
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-11 16:38:06
Wilson Edwards
Reply:1
Post_ID:829337google search;SEO
I would like to set requirement to let google seach engine to index all my website pages, just allow some pages of my website can be indexed by Google..How I can setup the system or requirement for the pages selected to be indexed from robots.txt or sitemap ?Please advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-11 11:25:10
Wilson Edwards
Reply:5
Post_ID:829335hongkong food
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-10 21:49:16
Wilson Edwards
Reply:4
Post_ID:829336centos; bash
Accept
I am using bash linux shell, running ollama serve on CLI console is working, but when it can not work on cron job scheduler, why
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-10 14:17:47
Wilson Edwards
Reply:5
Post_ID:829333php; html;javascript
Accept
In php script, if echo "<a></a>" it render as html elementas we understand it, but when doing in php, $str=htmlentities("<a></a>"); then $str=html_entity_decode($str); $str is not equal to "<a></a>", $str is string. why that is not HTML element
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-09 20:46:03
Wilson Edwards
Reply:3
Post_ID:829332javascript;html5;css
Accept
as title with topic tagPlease advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-09 10:49:51
Wilson Edwards
Reply:1
Post_ID:829325chrome;curl;php;python3.9
Accept
I would like to distinguish between those vistors are A.I. or real human to access my website.For example, some A.I. will use VPN and automaticlly access my website through, for example, curl or other methdos, I would like to block those A.I. auto crwaling IP and trafficPlease advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-09 10:32:17
Wilson Edwards
Reply:1
Post_ID:829324javascript;html5;css
Accept
as title and topic tagPlease advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-07 01:07:31
Wilson Edwards
Reply:0
Post_ID:829299gcc;linux
When upgrade gcc or lib, it will cause issue, and may cause reboot is not working for exmaple: https://blog.csdn.net/qq_39295044/article/details/86685789 su root Password: node: /lib64/libc.so.6: version `GLIBC_2.18' not found (required by /lib64/libstdc++.so.6) nvm is not compatible with the npm config "prefix" option: currently set to "" Run `nvm use --delete-prefix v16.20.2 --silent` to unset it. For example, running ------------------- node node: /lib64/libc.so.6: version `GLIBC_2.18' not found (required by /lib64/libstdc++.so.6) Or php php: /lib64/libc.so.6: version `GLIBC_2.18' not found (required by /lib64/libstdc++.so.6) after re-install glibc at /usr/local and run nvm use --delete-prefix v16.20.2 --silent` //for node other issue now ok, php and node but got some error when install python3.9 version rm -f /usr/local/glibc-2.18/build/stubs.h /usr/local/glibc-2.18/build/elf/sln /usr/local/glibc-2.18/build/elf/symlink.list rm -f /usr/local/glibc-2.18/build/elf/symlink.list test ! -x /usr/local/glibc-2.18/build/elf/ldconfig || LC_ALL=C LANGUAGE=C \ /usr/local/glibc-2.18/build/elf/ldconfig \ /lib64 /usr/lib64 LD_SO=ld-linux-x86-64.so.2 CC="gcc -B/usr/bin/" /usr/bin/perl scripts/test-insta llation.pl /usr/local/glibc-2.18/build/ /usr/lib/gcc/x86_64-redhat-linux/4.8.5/../../../../lib64/libm.so: undefined refe rence to `__strtod_nan@GLIBC_PRIVATE' /usr/lib/gcc/x86_64-redhat-linux/4.8.5/../../../../lib64/libm.so: undefined refe rence to `__strtof128_nan@GLIBC_PRIVATE' /usr/lib/gcc/x86_64-redhat-linux/4.8.5/../../../../lib64/libm.so: undefined refe rence to `__strtof_nan@GLIBC_PRIVATE' /usr/lib/gcc/x86_64-redhat-linux/4.8.5/../../../../lib64/libm.so: undefined refe rence to `__strtold_nan@GLIBC_PRIVATE' collect2: error: ld returned 1 exit status Execution of gcc -B/usr/bin/ failed! The script has found some problems with your installation! Please read the FAQ and the README file and check the following: - Did you change the gcc specs file (necessary after upgrading from Linux libc5)? - Are there any symbolic links of the form libXXX.so to old libraries? Links like libm.so -> libm.so.5 (where libm.so.5 is an old library) are wrong, libm.so should point to the newly installed glibc file - and there should be only one such link (check e.g. /lib and /usr/lib) You should restart this script from your build directory after you've fixed all problems! Btw. the script doesn't work if you're installing GNU libc not as your primary library! make[1]: *** [install] Error 1 make[1]: Leaving directory `/usr/local/glibc-2.18' make: *** [install] Error 2 Change libm.so link to 2.18 version Make sure glibc, libc.so libm.so is same version
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-07 00:06:18
Wilson Edwards
Reply:6
Post_ID:829297python3;centos;deepseek
Accept
Could not install ollama from python3 install ollama...so try alternative ,using python3 install openai , but easy example python script still not working, , the error is such as AttributeError: module 'ollama' has no attribute 'chat' import ollam //or improt openai response = ollama.chat(model="deepseek-r1", messages=[ { "role":"user", "content":"how center a tag in a div tag by javascript" }, ]) print(response["message"]["content"]) OR next example: import os import openai openai.api_key = ("key") openai.ChatCompletion.create( model="gpt-3.5-turbo", messages=[ {"role": "user", "content": "Hello!"} ] ) print(completion.choices[0].message) // Error AttributeError: module 'ollama' has no attribute 'ChatCompletion' if use comand line ollama, it works > ollama server //need enable port 127.0.0.1:11434 > ollam run deepseek-r1 >>>>"chat" Any Advise ? Try to list all module : print(dir(ollama)) //No any moduel name, chat... Error: Command '['/home/..../venv/bin/python3.x', '-Im', 'ensurepip', '--upgrade', '--default-pip']' returned non-zero exit status 1 https://stackoverflow.com/questions/24123150/pyvenv-3-4-returned-non-zero-exit-status-1 Reference: https://cristianzsh.medium.com/installing-and-using-deepseek-ai-c7fd97332e0f https://stackoverflow.com/questions/2927993/where-are-the-python-modules-stored https://pypi.org/project/ollama/ https://python.langchain.com/docs/integrations/chat/ollama/ https://ollama.com/search https://hungchienhsiang.medium.com/error-could-not-find-a-version-that-satisfies-the-requirement-from-pip-install-f542143e705d https://ywctech.net/ml-ai/ollama-first-try/ https://github.com/ollama/ollama-python https://github.com/ollama/ollama
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-05 00:23:20
Wilson Edwards
Reply:1
Post_ID:829298python
Accept
I try to upgrade my python version from 3.6 to 3.9 I also get ,glibc error /lib64/libm.so: undefined reference to `__strtod_nan@GLIBC_PRIVATE' and solved it ....just checked all glibc, libm , libc, all version is matched to , for exmaple.2.18version relink, ln -sfn /lib64/libm-2.18.so libm.so.6 //before is libm-2.31.so not matched https://stackoverflow.com/questions/59578152/undefined-reference-to-strtof128-nanglibc-private after the above error solved, I get other errorat make altinstall, got the errorerror _testembed.c:1767: undefined reference to `__gcov_indirect_call_profiler'just following the instruction as reference link Installation python 3.9 reference: https://phoenixnap.com/kb/how-to-install-python-3-centos-7 https://blog.csdn.net/liuruiaaa/article/details/130890408
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-02 21:48:44
Wilson Edwards
Reply:0
Post_ID:829296virtualbox;macOS;window11
Read this link https://computer28.com/hk/article/install-macos-virtualbox.doc.php
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-01 22:06:35
Wilson Edwards
Reply:0
Post_ID:829288python;javascript;simulation
Basic Concept: https://www.youtube.com/watch?v=IrbJYsep45E&t=663s https://www.youtube.com/watch?v=JOJ5zihcd6Q Google 's Willow Chip for quantum computing: https://www.youtube.com/watch?v=G3o4sPpGWFI https://www.youtube.com/watch?v=FgZ-8NFSysA&t=134s https://www.youtube.com/watch?v=CMO1MEeUcXg Shor's Algorithm: https://www.youtube.com/watch?v=FRZQ-efABeQ https://www.geeksforgeeks.org/shors-factorization-algorithm/ Simulator quantum computing by python: https://github.com/lvillasen/Quantum-Computer-Simulator IBM quantum simulator/platform for public: https://en.wikipedia.org/wiki/IBM_Quantum_Platform (Some region is blocked by IBM,u can use VPN from Chrome VPN Extension) Basic GCD, greatest common divisor: https://en.wikipedia.org/wiki/Greatest_common_divisor How it works: https://www.youtube.com/watch?v=g_IaVepNDT4&t=63s https://www.youtube.com/watch?v=c0D8X4eN_Cg&list=PLnK6MrIqGXsJfcBdppW3CKJ858zR8P4eP https://www.youtube.com/watch?v=XuN6sF8UGSw
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-01 21:42:42
Norton Alex
Reply:1
Post_ID:829295javascript
Accept
my html page calling many javascript file, I worry, some function name will be double or over-written by each other. Any method to prevent this .Please advise;
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-02-01 21:15:33
Norton Alex
Reply:2
Post_ID:829294javascript
Accept
I have seen a lot javascript file whcih starting with "!" character before functionWhat is the purpose of that ?For example;!function(x){a=x}()Please advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-01-29 21:04:40
Wilson Edwards
Reply:4
Post_ID:829293javascript;python3;chrome
Visitors or users may open many page of website to get streaming data ,and they want to open many browser tabs to read different data. That will depend on your Laptop or mobile capiblity how can handle many new socket.io to run on multiple tab at the same time, If limited computer resouce or memory, you will be limited for number of browser tabs display.If u use socket with Redis /stream event that allow display directly into html page tab (just type https://yourdomain:5051/stream on address bar) or throught javascript parse data into html page but it may only allow 3 tabs running on the same time.How you can run it on many tabs ?-----------------------------------------------1-You can use localStorage(getItem or setItem) to share information between browser tabOr...you can use2-window.addEventListener('blur', notstream);window.addEventListener('focus', stream);When the user not read or not focus the tag, close the streaming socketio, then Whenthat users want to read it again and focus the tag, reconnect the socket. We know users only can read 1 tag at a time only,function notstrem(){souce.close();//close the socket.io}function stream(){//user focus the tab againrefresh();// re-run that funation u can stream data before}function refresh(){//Redisvar source = new EventSource("https://yourdomainsocket-site.com"+":5051/stream"); source.addEventListener('publish', function(event) {dataextract(event.data);if (typeof ws=='function')ws(event.data);if (typeof updatechart=='function')updatechart(event.data); }, false); source.addEventListener('error', function(event) { }, false);return source;}let source=null;jQuery(document).ready(function($) {console.log("onload");source=refresh();});
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
25-01-23 19:49:42
Wilson Edwards
Reply:5
Post_ID:829292javascript;jquery;php
$(document).click(function(e) { // ####Check for left button if (e.button == 0) { // alert('clicked'); console.log('page......clicking'); checkhitrate('ads_hitrate');//check the document.activeElememnt source such as ifram or <a> tag }else {}});it works but can not detect mouse right click or mouse left click;so try to other code such as followsvar mouseleft=null;document.addEventListener('mousedown', function(event) { switch (event.button) { case 0: mouseleft=1; checkhitrate('ads_hitrate'); console.log('mouse Left button clicked.'); break; case 1: mouseleft=0; console.log('mouse Middle button clicked.'); break; case 2: mouseleft=0; console.log('mouse Right button clicked.'); break; case 3: mouseleft=0; console.log('mouse Browser Back button clicked.'); break; case 4: console.log('Browser Forward button clicked.'); break; default: console.log('Unknown button clicked.'); }});*/it is working ok, but not work if the content area with iframe...so we need use blur as followswindow.addEventListener('blur', notFocused);function notFocused() { localStorage.setItem('focus','0');setTimeout(()=>{$(window).focus();},200);checkhitrate('ads_hitrate');console.log('NOT focused',ia2++);return 0;}and check whether visitor leave current page to forward to other site, use this function becoz we can not idenity it is right or left click.if .onbeforeunload even is triggered it mean it is from left clickwindow.onbeforeunload=function(e){ console.log('hist-onbeforeunload'); localStorage.removeItem("stateHistoryonbeforeunload"); localStorage.setItem("stateHistoryonbeforeunload", 1);}event onbeforeunload should be earlier than checkrate();function checkhitrate(hitrate){ if (hitrate=='ads_hitrate')sendclick();}function sendclick(){if (document.activeElement.src) var tmp=document.activeElement.src ; else tmp=""if (document.activeElement.tagName === "IFRAME"){if (tmp.indexOf('client=ca-pub-')>0){setTimeout(()=>{console.log('notfocused _post3',"stateHistoryonbeforeunload",localStorage.getItem("stateHistoryonbeforeunload"));document.activeElement.blur(); if (localStorage.getItem("stateHistoryonbeforeunload")=="1"){_post3(url,JSON.stringify(obj),fun);localStorage.removeItem("stateHistoryonbeforeunload")}},200);}}Note: every click then clear last document.activeElement by document.activeElement.blur() so next check click will be working again
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
24-12-31 23:06:18
Wilson Edwards
Reply:0
Post_ID:829289economy
https://www.investopedia.com/terms/t/trilemma.asp https://en.wikipedia.org/wiki/Trilemma Example Video: https://www.youtube.com/watch?app=desktop&v=pNlUmPZ1UC4 Any region is only able to do 2 options from the following 3 choices for itseconomy system at the same time, 3 choices: A=Independent monetary policy(獨立自主貨幣政策), B=fixed Exchange Rate(固定匯率) ,C=Free Flow of Capitial(資本自由流動)For example:USA: ACHongkong: BCChina:AB
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
24-11-27 13:34:32
Wilson Edwards
Reply:2
Post_ID:829287yoututbe
Accept
as the title, which online site is the bestPlease advise
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
←
- Underline
- Bold
- Italic
- Indent
- Step
- Bullet
- Quote
- Cut
- Copy
- Paste
- Table
- Spelling
- Find & Replace
- Undo
- Redo
- Link
- Attach
- Clear
- Code
Below area will not be traslated by Google,you can input code or other languages
Hint:If find spelling error, You need to correct it,1 by 1 or ignore it (code area won't be checked).
X-position of the mouse cursor
Y-position of the mouse cursor
Y-position of the mouse cursor
Testcursor
caretPos
Attachment:===
Curl access https/ssl site with password encryption
Asked by duncanb7
at 2024-02-14 14:55:47

Point:500 Replies:9 POST_ID:828884USER_ID:11059
Topic:
PHP Scripting Language;Apache Web Server;Secure Socket Layer (SSL) & HTTPS
During these two years, I've used the following php curl code to access https/ssl site that is successful and no issue at all, I could collect anything I want after logged into https site.
In the code, I have extracted all hidden keys and cookie info from login form and then
post submit with those key to final https security check sites with my login name and password. The key/query string for https site setup by php code is matched to what I see
on one of proxy debugger such as Chales or Fidder. And cookie transfer from one
site to next https site is also okay and saved it into one cookie file in my code.
But Now today, I could not access the https site, finally found the reason from proxy debugger,the password is encryption with 128bit . At the beginning or last two days, the password is not encrypted that is why I could access the site in last two days.
The question is what I should do:
Question-1: Who is responsible to do client password encryption on https site? Is it
from browser (Chrome or IE) with the trusted ssl cert or from javascript code in the login form ?
Question-2: How can I do the exact password encryption on my php code at my server
that is exactly same as it is done my browser so that I could pass the
security check for https site through php curl code
Question-3: there is a lots of option for curl_setopt about ssl option setup such as
CURLOPT_CAINFO, CURLOPT_SSLKEY, CURLOPT_SSH_HOST_PUBLIC_KEY_MD5, CURLOPT_SSH_PUBLIC_KEYFILE, CURLOPT_SSH_PRIVATE_KEYFILE ,etc... from http://hk1.php.net/curl_setopt. Those option is helpful to set password
encryption on my server ? Do I need to copy my https trusted ssl cert on my browser
and then used it with curl code ? How ?
I have read similar article at
http://www.experts-exchange.com/Web_Development/Web_Languages-Standards/PHP/Q_25111542.html
but that article is not dealing for the case when the password is with 128-bit encryption on https site, any other similar and good article is suggest and now I don't know what I should do next
Please advise
Duncan
In the code, I have extracted all hidden keys and cookie info from login form and then
post submit with those key to final https security check sites with my login name and password. The key/query string for https site setup by php code is matched to what I see
on one of proxy debugger such as Chales or Fidder. And cookie transfer from one
site to next https site is also okay and saved it into one cookie file in my code.
But Now today, I could not access the https site, finally found the reason from proxy debugger,the password is encryption with 128bit . At the beginning or last two days, the password is not encrypted that is why I could access the site in last two days.
The question is what I should do:
Question-1: Who is responsible to do client password encryption on https site? Is it
from browser (Chrome or IE) with the trusted ssl cert or from javascript code in the login form ?
Question-2: How can I do the exact password encryption on my php code at my server
that is exactly same as it is done my browser so that I could pass the
security check for https site through php curl code
Question-3: there is a lots of option for curl_setopt about ssl option setup such as
CURLOPT_CAINFO, CURLOPT_SSLKEY, CURLOPT_SSH_HOST_PUBLIC_KEY_MD5, CURLOPT_SSH_PUBLIC_KEYFILE, CURLOPT_SSH_PRIVATE_KEYFILE ,etc... from http://hk1.php.net/curl_setopt. Those option is helpful to set password
encryption on my server ? Do I need to copy my https trusted ssl cert on my browser
and then used it with curl code ? How ?
I have read similar article at
http://www.experts-exchange.com/Web_Development/Web_Languages-Standards/PHP/Q_25111542.html
but that article is not dealing for the case when the password is with 128-bit encryption on https site, any other similar and good article is suggest and now I don't know what I should do next
Please advise
Duncan
<?phpchdir(dirname(__FILE__));error_reporting(E_ALL);$cookiefile="cookiefile.txt";@unlink($cookiefile);$handle=fopen($cookiefile, 'w+');login($cookiefile);function login($cookiefile){$url="https://example.com/login.htm?lang=en_US"; //-login-form$file_url=open_https_url($url,$cookiefile,0,0); //curl and its setup;while($file_url==false){echo "Login Form-1 again....";$file_url=open_https_url($url,$cookiefile,0,0);}//-Extract all hidden key or cookie from the login form first before submit$data=explode("requestId = '",$file_url);$r=substr($data[1],0,stripos($data[1],"'"));$data=explode('name="t" value="',$file_url);$t=substr($data[1],0,stripos($data[1],'"'));$data=explode('name="s" value='."'",$file_url);$s=substr($data[1],0,stripos($data[1],"'"));//-Setup postfields for the new https site$postfields="lang=en_US&username=mylogin&password=mypassword";$postfields=$postfields."&r=".$r."&t=".$t."&s=".$s;//-Submit the form to next new https site with all key and cookie ready$url="https://example.com/securitycheck.htm";$file_url=open_https_url($url,$cookiefile,$postfields,1);$temp=stripos($file_url,"Welcome mylogin");while ($temp==false ||$temp==0 ){echo "Submit https site-2 again......";$file_url=open_https_url($url,$cookiefile,$postfields,1);$temp=stripos($file_url,"Welcome mylogin");}echo "Success Login initiation";//if the page has "Welcome mylogin" word that proved https access from curl is successful, otherwise looping;return "success";}function open_https_url($url,$cookiefile,$postfields,$postenable) {$ch = curl_init();curl_setopt($ch, CURLOPT_URL, $url);$header[] = "Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5";$header[] = "Cache-Control: max-age=0";$header[] = "Connection: keep-alive";$header[] = "Keep-Alive: 300";$header[] = "Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.7";$header[] = "Accept-Language: en-us,en;q=0.5";$header[] = "Pragma: ";curl_setopt( $ch, CURLOPT_URL, $url );curl_setopt( $ch, CURLOPT_USERAGENT, 'Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.1.6) Gecko/20091201 Firefox/3.5.6' );curl_setopt( $ch, CURLOPT_HTTPHEADER, $header );curl_setopt( $ch, CURLOPT_REFERER, 'http://www.google.com' );curl_setopt( $ch, CURLOPT_ENCODING, 'gzip,deflate' );curl_setopt( $ch, CURLOPT_AUTOREFERER, TRUE );if ($postenable==1){curl_setopt($ch, CURLOPT_POST, 1);curl_setopt($ch, CURLOPT_POSTFIELDS,$postfields);}curl_setopt($ch, CURLOPT_CAINFO, getcwd() . "/ca.p7b");curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);curl_setopt($ch, CURLOPT_SSL_VERIFYHOST, 2);curl_setopt($ch, CURLOPT_HEADER, 0);curl_setopt($ch, CURLOPT_COOKIEJAR, $cookiefile);curl_setopt($ch, CURLOPT_COOKIEFILE, $cookiefile);curl_setopt($ch, CURLOPT_RETURNTRANSFER,1);curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 1);$result =curl_exec($ch);$err = curl_errno($ch);$inf = curl_getinfo($ch);//print_r($inf);if ($result === FALSE){echo " curl fail: $url CURL_ERRNO=$err ";var_dump($inf);}curl_close ($ch);return $result;}?>
1:2:3:4:5:6:7:8:9:10:11:12:13:14:15:16:17:18:19:20:21:22:23:24:25:26:27:28:29:30:31:32:33:34:35:36:37:38:39:40:41:42:43:44:45:46:47:48:49:50:51:52:53:54:55:56:57:58:59:60:61:62:63:64:65:66:67:68:69:70:71:72:73:74:75:
Expert: Ray Paseur replied at 2024-02-15 08:05:35
Thanks for the points and best of luck with the project, ~Ray
Author: duncanb7 replied at 2024-02-15 07:28:25
Thanks for your detailed reply in this thread.
I will try Node.js first on my server.
If it is not successful, I will switch to do it on my PC browser
for data collection daily to remote https site with using VBA code
that must work but it is not good to do it on my PC instead of my remoter server
Memo for me: And third party SSL cert , its encyrption, public or private keys are other issues and not related to this thread topic
Have a nice day
Duncan
I will try Node.js first on my server.
If it is not successful, I will switch to do it on my PC browser
for data collection daily to remote https site with using VBA code
that must work but it is not good to do it on my PC instead of my remoter server
Memo for me: And third party SSL cert , its encyrption, public or private keys are other issues and not related to this thread topic
Have a nice day
Duncan
Expert: Ray Paseur replied at 2024-02-15 07:12:11
The first part is certainly correct. Not sure what node.js can do for you (I have not seen the login web page) but I'll take that on faith :-)
Author: duncanb7 replied at 2024-02-15 06:55:57
Dear Ray,
thanks for your reply and attached articles.
Now it seem It is better for me. if the following what I said it is correct.
php curl request or client PC browser request for https is nothing special and they
don't do any data info encryption during transmission. The transmission
encryption on the request data is done by SSL engine, for example, on
my server, Apache/2.2.23 (Unix) mod_ssl/2.2.23 OpenSSL/1.0.0-fips mod_bwlimited/1.4 PHP/5.3.21,
the request data encryption is done by my server openSSL enginner or module (not by php curl code) when https request is enabled. And the remote site of https , pulishers'
server will de-crypte the data (encrypted from my server) from pubishers' SSL engine or module. Last words, both algorithm for encryption from my server and decryption from publisher https site are recognized and is one of standard of SSL engine with cryption algorithm. In othe words, there is no doubt my server could communicate with the
https site with SSL data encryption at both sides(my server and remote https site)
I will close this thread if what I said in this post is correct or close to correct
And the additional password encryption API javascript function is found on the remote site
login form page mentioned at top post , and probably I need Node.js help on my server to do the additional password encryption before curl https request on my server
that will simulate the same API action on login form with https request on my local PC browser such as on Chrome.
Please advise
Duncan
thanks for your reply and attached articles.
Now it seem It is better for me. if the following what I said it is correct.
php curl request or client PC browser request for https is nothing special and they
don't do any data info encryption during transmission. The transmission
encryption on the request data is done by SSL engine, for example, on
my server, Apache/2.2.23 (Unix) mod_ssl/2.2.23 OpenSSL/1.0.0-fips mod_bwlimited/1.4 PHP/5.3.21,
the request data encryption is done by my server openSSL enginner or module (not by php curl code) when https request is enabled. And the remote site of https , pulishers'
server will de-crypte the data (encrypted from my server) from pubishers' SSL engine or module. Last words, both algorithm for encryption from my server and decryption from publisher https site are recognized and is one of standard of SSL engine with cryption algorithm. In othe words, there is no doubt my server could communicate with the
https site with SSL data encryption at both sides(my server and remote https site)
I will close this thread if what I said in this post is correct or close to correct
And the additional password encryption API javascript function is found on the remote site
login form page mentioned at top post , and probably I need Node.js help on my server to do the additional password encryption before curl https request on my server
that will simulate the same API action on login form with https request on my local PC browser such as on Chrome.
Please advise
Duncan
Accepted Solution
Expert: Ray Paseur replied at 2024-02-15 06:10:10
500 points EXCELLENT
The transmission is encrypted. The clear-text data is presented to the script (just as it is presented to the browser). This explanation from the security firm, Symantec, seems to be on point:
http://www.symantec.com/business/support/index?page=content&id=TECH180521
Nothing special is required by either the browser client or the cURL client. Please see http://www.laprbass.com/RAY_curl_get_example.php where we read the Twitter web site over HTTPS.
http://www.symantec.com/business/support/index?page=content&id=TECH180521
Nothing special is required by either the browser client or the cURL client. Please see http://www.laprbass.com/RAY_curl_get_example.php where we read the Twitter web site over HTTPS.
<?php // RAY_curl_get_example.phperror_reporting(E_ALL);// DEMONSTRATE THE BASICS OF CURL// SOMETHING LIKE RAY_curl_get_example.php?url=http://twitter.com// YOU COULD HAVE SOMETHING LIKE THIS$url = isset($_GET["url"]) ? $_GET["url"] : 'http://twitter.com';// BUT SINCE IT IS ON MY SERVER, I HAVE HARD-CODED THIS$url = 'https://twitter.com/RayPaseur';// TRY THE REMOTE WEB SERVICE$htm = my_curl($url);// SHOW THE WORK PRODUCT OR BARK OUT ERROR MESSAGESecho "<pre>";echo PHP_EOL . '<strong>' . $url . '</strong>';echo PHP_EOL . htmlentities($htm);echo PHP_EOL;// A FUNCTION TO RUN A CURL-GET CLIENT CALL TO A FOREIGN SERVERfunction my_curl( $url, $timeout=5, $error_report=TRUE){ $curl = curl_init(); // HEADERS AND OPTIONS APPEAR TO BE A FIREFOX BROWSER REFERRED BY GOOGLE $header[] = "Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5"; $header[] = "Cache-Control: max-age=0"; $header[] = "Connection: keep-alive"; $header[] = "Keep-Alive: 300"; $header[] = "Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.7"; $header[] = "Accept-Language: en-us,en;q=0.5"; $header[] = "Pragma: "; // BROWSERS USUALLY LEAVE THIS BLANK // SET THE CURL OPTIONS - SEE http://php.net/manual/en/function.curl-setopt.php curl_setopt( $curl, CURLOPT_URL, $url ); curl_setopt( $curl, CURLOPT_USERAGENT, 'Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.1.6) Gecko/20091201 Firefox/3.5.6' ); // ANCIENT HISTORY curl_setopt( $curl, CURLOPT_USERAGENT, 'Mozilla/5.0 (Windows NT 6.1; rv:22.0) Gecko/20100101 Firefox/22.0' ); curl_setopt( $curl, CURLOPT_HTTPHEADER, $header ); curl_setopt( $curl, CURLOPT_REFERER, 'http://www.google.com' ); curl_setopt( $curl, CURLOPT_ENCODING, 'gzip,deflate' ); curl_setopt( $curl, CURLOPT_AUTOREFERER, TRUE ); curl_setopt( $curl, CURLOPT_RETURNTRANSFER, TRUE ); curl_setopt( $curl, CURLOPT_FOLLOWLOCATION, TRUE ); curl_setopt( $curl, CURLOPT_TIMEOUT, $timeout ); // RUN THE CURL REQUEST AND GET THE RESULTS $htm = curl_exec($curl); // ON FAILURE HANDLE ERROR MESSAGE if ($htm === FALSE) { if ($error_report) { $err = curl_errno($curl); $inf = curl_getinfo($curl); echo "CURL FAIL: $url TIMEOUT=$timeout, CURL_ERRNO=$err"; var_dump($inf); } curl_close($curl); return FALSE; } // ON SUCCESS RETURN XML / HTML STRING curl_close($curl); return $htm;}
1:2:3:4:5:6:7:8:9:10:11:12:13:14:15:16:17:18:19:20:21:22:23:24:25:26:27:28:29:30:31:32:33:34:35:36:37:38:39:40:41:42:43:44:45:46:47:48:49:50:51:52:53:54:55:56:57:58:59:60:61:62:63:64:65:66:67:68:69:70:71:72:73:74:75:
Author: duncanb7 replied at 2024-02-15 04:56:24
Dear Ray,
I have No question on the publisher for additional encryption on password by javascript
API code in login form page.
But my concept to curl on HTTPS/SSL is still confusing even it seems simple.
1. There is nothing about HTTPS/SSL that will interfere with cURL. A cURL request is just like a browser request. It can be made over HTTP or HTTPS and both will work correctly.
if you said correct on pt-1, so the info sent by curl request is NOT encrypted/protected ? Is it dangerous ?
As I know when I access https/SSL site on my Chrome browser, the information
I submitted will be encrypted by the browser with the trusted SSL cert before
sending the info data to remote https site. Right ? and the pulisher will do
de-cryption on those info to collect final data at its side. If so, why we don't
need to do the same encryption for curl request on my server to achieve
the same action ?
Hope you understand what I am confusing on difference between curl request
and client browser request for HTTPS site
Duncan
I have No question on the publisher for additional encryption on password by javascript
API code in login form page.
But my concept to curl on HTTPS/SSL is still confusing even it seems simple.
1. There is nothing about HTTPS/SSL that will interfere with cURL. A cURL request is just like a browser request. It can be made over HTTP or HTTPS and both will work correctly.
if you said correct on pt-1, so the info sent by curl request is NOT encrypted/protected ? Is it dangerous ?
As I know when I access https/SSL site on my Chrome browser, the information
I submitted will be encrypted by the browser with the trusted SSL cert before
sending the info data to remote https site. Right ? and the pulisher will do
de-cryption on those info to collect final data at its side. If so, why we don't
need to do the same encryption for curl request on my server to achieve
the same action ?
Hope you understand what I am confusing on difference between curl request
and client browser request for HTTPS site
Duncan
Expert: Ray Paseur replied at 2024-02-15 04:33:49
1. There is nothing about HTTPS/SSL that will interfere with cURL. A cURL request is just like a browser request. It can be made over HTTP or HTTPS and both will work correctly.
2. "Why the company needs to do two times encryption on password..." That is a question you should direct to the publisher of the web site. My answer can only be speculative, but it would be "To reduce the risk of unwanted automated access to the web site."
2. "Why the company needs to do two times encryption on password..." That is a question you should direct to the publisher of the web site. My answer can only be speculative, but it would be "To reduce the risk of unwanted automated access to the web site."
Author: duncanb7 replied at 2024-02-15 04:01:31
Dear Ray,
thanks for your reply. I am getting confusing with https/SSL access. There is a few question
for two cases. Hope you can kindly answer this that I am appreciated
Case-1: successful logged in last years
=======================================
Supposed on browser will do information encryption according to the site SSL cert for https/SSL access, Right ? but why I could access that https site without password encryption in last two years on my server in which I just input php code for postfield as $postfields="lang=en_US&username=mylogin&password=mypassword"; ?
Whether php curl code NO need to do any encryption on password or login username for accessing https site succesfully ?
Like the case or code in
http://www.experts-exchange.com/Web_Development/Web_Languages-Standards/PHP/Q_25111542.html in which there is NO any password
encryption on php curl code for accessing http/SSL site, Why if it is https site ?
Case-2 Fail logged today
========================
On Charles proxy debugger, I just only found the password is encrypted but
other query string or form hidden key or username all are NOT encrypted. So
you might be right there is API javascript code in the login form to encrypt
password to 128 bit before accessing https. Why the company needs to do
two times encryption on passsword ? one from API javascript code on login page and second is from origin SSL browser encryption
Please help to point out my concept mistake if any , thanks
Duncan
thanks for your reply. I am getting confusing with https/SSL access. There is a few question
for two cases. Hope you can kindly answer this that I am appreciated
Case-1: successful logged in last years
=======================================
Supposed on browser will do information encryption according to the site SSL cert for https/SSL access, Right ? but why I could access that https site without password encryption in last two years on my server in which I just input php code for postfield as $postfields="lang=en_US&username=mylogin&password=mypassword"; ?
Whether php curl code NO need to do any encryption on password or login username for accessing https site succesfully ?
Like the case or code in
http://www.experts-exchange.com/Web_Development/Web_Languages-Standards/PHP/Q_25111542.html in which there is NO any password
encryption on php curl code for accessing http/SSL site, Why if it is https site ?
Case-2 Fail logged today
========================
On Charles proxy debugger, I just only found the password is encrypted but
other query string or form hidden key or username all are NOT encrypted. So
you might be right there is API javascript code in the login form to encrypt
password to 128 bit before accessing https. Why the company needs to do
two times encryption on passsword ? one from API javascript code on login page and second is from origin SSL browser encryption
Please help to point out my concept mistake if any , thanks
Duncan
Expert: Ray Paseur replied at 2024-02-15 03:22:54
I got a neglected question alert on this one, and I have a bad feeling about the approach you were using. It looks like you may have been "cut off." Here is what I would do:
The first thing I would do is contact the publisher of the web site and tell them about the trouble you are having because of their change. They may have a formal API that you can use to get the data you want, and if they do, that will be a better solution than trying to use an automated login. APIs are typically licensed, metered and versioned, so the publisher has a "contract" with the audience and will not break an API without formal notice, probably including deprecation. When you access a web site without an API, the "scraper scripts" often get broken by even small changes in the HTML document, so an API is the way to go. You may be required to pay a license fee to use the API.
It is possible that the publisher made this change to prevent automated access to its data. A few years ago, Google made a change like this, loading the DOM with JavaScript instead of producing clear-text HTML documents. This frustrated a lot of people who had been scraping Google pages (without permission) but it helped Google keep control of its data and preserve the value in its web service.
The first thing I would do is contact the publisher of the web site and tell them about the trouble you are having because of their change. They may have a formal API that you can use to get the data you want, and if they do, that will be a better solution than trying to use an automated login. APIs are typically licensed, metered and versioned, so the publisher has a "contract" with the audience and will not break an API without formal notice, probably including deprecation. When you access a web site without an API, the "scraper scripts" often get broken by even small changes in the HTML document, so an API is the way to go. You may be required to pay a license fee to use the API.
It is possible that the publisher made this change to prevent automated access to its data. A few years ago, Google made a change like this, loading the DOM with JavaScript instead of producing clear-text HTML documents. This frustrated a lot of people who had been scraping Google pages (without permission) but it helped Google keep control of its data and preserve the value in its web service.