Forum Replies Created

Viewing 11 replies - 1 through 11 (of 11 total)
  • Thread Starter awack

    (@awack)

    Moved to Cloudflare Zara, its a far better option and stops the isseu at the edge. I would not have discovered Zara if it were not for your scanner with its isseu of not really scanning wp sites !!!!

    So anyone that needs GDPR Cookies Scans Look at Zara
    Cloudflare Zaraz includes a Consent Management Platform (CMP) that helps you meet GDPR requirements, though it works a bit differently than a standalone “scanner.”

    Instead of scanning your site like a bot to find cookies, it lets you govern the scripts you’ve already added to Zaraz so they don’t fire until a user gives permission.

    How Zaraz Helps with GDPR:

    • Consent Modal: You can enable a built-in popup that asks visitors for their tracking preferences (e.g., “Analytics,” “Marketing”).
    • Opt-in by Default: Zaraz automatically disables non-essential trackers for first-time visitors until they click “Accept”.
    • No Data Loss: Unlike other banners that might miss the first pageview, Zaraz “holds” that data and sends it to your tools only after the user gives consent.
    • Data Masking (DLP): It can automatically strip out PII (Personally Identifiable Information) like email addresses or IP addresses before they reach third-party servers.

    Important Distinction: “Scanning” vs. “Managing”

    While many GDPR tools (like CookieBot or OneTrust) provide a “scanner” that generates a report of all cookies found on your site, Zaraz is a manager.

    1. You identify the tools you are using in the Zaraz dashboard.
    2. You assign a “Purpose” to each tool (e.g., Google Analytics = “Performance”).
    3. Zaraz blocks those tools until the user consents to that specific purpose

    BUMP!!!!! WTF is going on with this will you respond?

    Thread Starter awack

    (@awack)

    yes as i said your plugin is worthless as WP does create cookies via Java. The issue is you are allowing users to think they are actually following the Regs. Do not use this Plugin. they are just fishing for data. and also want your $$.

    • This reply was modified 2 months, 3 weeks ago by awack.
    Thread Starter awack

    (@awack)

    Peter, i feel like my question is just not going to get an answer?
    “So Should I leave it at remote then? Or Run it as X forward?”
    The False positives seem to be undercontrolled now assuming i can believe what WF is telling me about the Ips its seeing.

    Thank you !

    Thread Starter awack

    (@awack)

    even though we have had extensive discussion with LW, i think they are “Something is setting the correct IP address for the site already, which is why your IP is shown under REMOTE_ADDR.” So Should I leave it at remote then? Or Run it as X forward?

    Life Traffic False Positives, looks like most are bots scanning for content.

    Thread Starter awack

    (@awack)

    Peter, Remote is in use because WF defaults to that after each scan,. Unless i tell it to ignore it. “Configured but not valid”, happens after a scan and the system then defaults back to remote. Yes it seems to run on x-forward for . we were just trying to make sure they were setup as WF wants it with CF header. But it does seem like Word fence is the issue here as it is being given the CF header from the Host. Yes all of the CF Proxy IPs are added per Word Fence Docs. The Ips come from Cloud flare. is there a reason not to add those to the proxy list?.. The Word fence Presets has no option for Cloudflare.

    WE have just followed the Word fence help best practices.. When its running as X-forward- i still see false positives. But less.. I have set all 3 sites back to x-forward as that is the only thing wordfence seems to like. But i do think Wordfence has a bug that needs to be corrected. It should be able to see the CF-Header that Clod Flare is sending. Any thing else we shoudl try here ? IT will keep bugging us at every scan like this.. 🙁
    Thanks for looking.

    • This reply was modified 6 months, 3 weeks ago by awack.
    Thread Starter awack

    (@awack)

    TY Peter, I have sent it from one of the sites, this is happening on 3 sites we run via Liquid Web VPS. They tell us that WF is not configured correctly some how and that they are sending CF header etc.. So they simply want us to keep it on X-Forward. As you will see WF does sense ip and seems to want x-forward. This only happens on the WP sites i have at Liquid Web.
    Thank you very much!

    awack

    (@awack)

    yes, agree. And we were about to buy into the Premium version. I am glad we did not.

    awack

    (@awack)

    “smellycat3, awack, Karen_R, whether you think you have the same issue or not, please start you own threads. Describe your situation in as much detail as possible in your first messages.”

    Umm that seems silly when we are all talking about your plugin Crashing our sites. And we all have Time issues here so we are all searching the web for answers.
    Tell you what ill just Take what Network Solutions says as Fact and that your plug in is not Stable or even worth the issue. Thus NSI is removing it from all NSI sites.

    Later!.

    awack

    (@awack)

    Any idea whats going on with NSI ? and Word Fence There techs tell us they have been removing it from NSI sites and they think it does not really offer any security anyway. I am not sure about that but do find it odd that NSI knows WordFence and its servers are now having a DOA issue after the last WF update. I to no longer have it running and now have the site back. :(. FYI the site was on PHP 5.2 and MYsql 5.0 Now that i have it back up I have updated to PHP 7 and Mysql5.6 .

    awack

    (@awack)

    This Update has also broken our site hosted at NSI. NSI says they are seeing an issue with Wordfence now stopping Backups and Restores .. In my case WF did its auto update yesterday and then broke the site and DataBase. NSI is now working to stop WF .. Whats going on with WordFence and Network Solutions and this Patch!.

    It does seem to affect the File permission.. Sadly as it did this it has forced us to try to restore the backups. as soon as we do it tries to Auto update and then Breaks the site and DB.

Viewing 11 replies - 1 through 11 (of 11 total)