Quantcast
Channel: Discourse Meta - Latest topics
Viewing all 60739 articles
Browse latest View live

Avatars.discourse.org returning Server 500 error

$
0
0

@cpradio wrote:

Not sure if this is related to the recent ImageMagick security issue, or just a server having a hard time, but we're getting Server 500 errors on random images on our hosted instance.

Example:
https://avatars.discourse.org/v2/letter/c/8dc957/120.png

Request:

Request URL:https://avatars.discourse.org/v2/letter/c/8dc957/120.png
Request Method:GET
Status Code:500 Internal Server Error
Response Headers
view source
Connection:keep-alive
Content-Length:77
Date:Wed, 04 May 2016 17:51:13 GMT
Server:NetDNA-cache/2.2
Request Headers
view source
Accept:image/webp,image/*,*/*;q=0.8
Accept-Encoding:gzip, deflate, sdch
Accept-Language:en-US,en;q=0.8
Connection:keep-alive
DNT:1
Host:avatars.discourse.org
User-Agent:Mozilla/5.0 (Windows NT 6.1; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/50.0.2661.94 Safari/537.36

Response:

An unhandled lowlevel error occurred. The application logs may have details.

Posts: 3

Participants: 2

Read full topic


Possible to unlist old topics in bulk?

$
0
0

@jpalermo wrote:

I spent some time searching this site looking for an answer this question, but I've only seen where other people have asked for the feature here and here without any real resolution to unlisting old topics in bulk.

My organization opens various annual categories for our members throughout year that get hundreds of replies (if not thousands), so it would really, really be beneficial to us if Discourse provided this feature.

Is there a workaround for this, or even a timeline as to when the next Discourse update will include an option for bulk unlisting of topics?

Posts: 15

Participants: 6

Read full topic

"Topic can't be blank" message when "no user selected" for private mesage

$
0
0

@DeanMarkTaylor wrote:

Steps to Reproduce

  1. Select New Message button from https://meta.discourse.org/my/messages
  2. Enter topic title / subject as "Testing"
  3. Enter into the body text "The quick brown fox jumps over the lazy dog"
  4. Select Message button

Expected Result

A simple clear message indicating a user must be selected.

Actual Result

Note the following about the message box contents:

  • "Topic can't be blank" is incorrect.
  • "no_user_selected" - is not a full English sentence.

Posts: 4

Participants: 3

Read full topic

Forgotten password link problem

$
0
0

@tomspilman wrote:

Our Discourse site only uses 3rd-party authentication... we disabled the "local logins" feature. I got a complaint from a user that they couldn't find the forgotten password link... which was surprising because we don't use "local logins".

It turns out that the account creation page suggests this when an email is already registered:

This made them think there was some link they were not finding on the site leading to confusion and frustration.

It would be better for this tip not to suggest the forgotten password link when "local logins" is disabled.

Posts: 1

Participants: 1

Read full topic

YouTube videos aren't displayed

$
0
0

@thomasschmit wrote:

On our Discourse instance, the YouTube videos aren't displayed anymore.

When I've a look to the source code, I see the following, but no iframe:

<div class="lazyYT" data-youtube-id="ja-U_F3CCcA" data-youtube-title="#ScoutCom" data-width="480" data-height="270" data-parameters="feature=oembed&amp;wmode=opaque"></div>

That's strange. Can you help me?

Posts: 3

Participants: 3

Read full topic

Uploads broken after moving to subfolder

$
0
0

@BaButtons wrote:

We followed this guide to forward from a subdomain to a subfolder, and for the most part it's working very well. However, all of my post uploads are 404ing, even after the remap command, for both /uploads and /forum/uploads.

I noticed that when I try to ls -l public/forum/uploads I get public/forum/uploads -> ../uploads, but trying ls -l public/uploads yields cannot access ../uploads: No such file or directory.

Posts: 1

Participants: 1

Read full topic

Has anyone else had complaints of latency recently?

$
0
0

@charleswalter wrote:

I havent noticed problems personally, but I have received a few comments from heavy users about our performance. Trying to get more info, but thought I would ask here.

"Hola que estara pasando con los foros las paginas se tardan en cargarse y cuando uno quiere opinar en los temas se tarde mucho en abri el tema y no se dia para contestar y mis cookies estan limpias y no es mi compu que en otras paginas internet esta super rapidas es imposible andar asi por los foros es mucha lentitud. esto ya tiene 2 semanas . platicando con una forista ella tambie tiene el mismo problema. espero respuestas gracias."

Posts: 5

Participants: 3

Read full topic

Discourse Installation can't be viewed in Desktop but fine in Mobile

$
0
0

@Rodelio_Lagahit wrote:

This was running last night, until now, but only viewable thru mobile. you can't see anything on desktop, it's not also down. i can get it /admin /upgrade but not the front end.

:frowning:

Posts: 3

Participants: 2

Read full topic


Upgrade fails while compiling CSS due to "killed"

$
0
0

@Rodelio_Lagahit wrote:

Continuing the discussion from Upgrade failed due to process terminating:

I've been trying to upgrade each one but to not avail:

Purging temp files
I, [2016-05-04T23:56:10.215843 #11813]  INFO -- : Writing /var/www/discourse/public/assets/desktop-819a8ece133cdd7b9507232d8d21de569b78af87fa5af0b4bfd0c85375ac8935.css
I, [2016-05-04T23:56:44.587312 #11813]  INFO -- : Writing /var/www/discourse/public/assets/mobile-717ae1f3f9ac5e6fd6c653ff0c10c184c120942d33ee6ce42b77c647e5c17b95.css
I, [2016-05-04T23:57:02.087450 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/da-579bf568bc4158bb76355ddfb97798419d079d5eaa9c8b59b416f10787120861.js
I, [2016-05-04T23:57:02.627940 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/he-fbd8cabc9d72af34b887f75b3995b95a72aa98c97361b5da3f467ec6fd94d652.js
I, [2016-05-04T23:57:03.116752 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/ar-3a51224fcec8cee3facd4eb4b00d9b46a59ce92412eb08ae1a02bcc822212f43.js
I, [2016-05-04T23:57:03.628319 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/ro-dd7975433fb445605262445a8f892f3179724b3e49e910d0b78f04c3b665fa7d.js
I, [2016-05-04T23:57:03.987300 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/sv-2145dd411f80322c11bbc0136bee2fbf7473273edb9ce1141df56a3c802d4315.js
I, [2016-05-04T23:57:04.371591 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/te-9f92e1c9f15c9ea782600c34941a29aae56d60df765bf1db938ff362dd49f700.js
I, [2016-05-04T23:57:04.811555 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/sq-048598eb009ab2517ae78377acdfeca5677cbd4e10cb0e1bce6d0eb5b88836a6.js
I, [2016-05-04T23:57:05.505012 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/pt-f593ce59e41384e1f084fc2fb60ca695fd627a576aa040ecb11851d283f5f319.js
I, [2016-05-04T23:57:05.868594 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/it-dc8db3b75e9580be121ac6de75927eec3afce33e2be0b3ee1f17bfce656e04f7.js
I, [2016-05-04T23:57:06.272424 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/bs_BA-bd9b097e0a08842be8ae30f84296935bb3bebc95aaf47631fce07bef66b45ddf.js
I, [2016-05-04T23:57:07.740820 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/ko-486a8c6ec36797dd5c5c4baa4a7012bde7f7275d60ecce342fb129f4b9300760.js
I, [2016-05-04T23:57:08.387619 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/tr_TR-6047556fb483aad08e34046bd060b3d4ee11d3171f3b2d8161546768c9d398c7.js
I, [2016-05-04T23:57:08.766794 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/pl_PL-c04fa380e8ccbc693b200f92f2c3ca2535c2f752c74aae42d1d5e9b4276659e4.js
I, [2016-05-04T23:57:08.900992 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/en-c7a369f2184f7db9380b32a9d172f6fa6871f9f20f7a01f4419eea9bf184eee2.js
I, [2016-05-04T23:57:09.513830 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/fi-7e7f154b2ca1c72a9f6bb82b8307707f125ca393f7c42183d801533cc18614d9.js
I, [2016-05-04T23:57:10.018447 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/sk-c5f8c31661204ff6c2e01ccc00d3baffed837a6a54a6434cc1cb3fc811f81e66.js
I, [2016-05-04T23:57:11.155561 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/de-765373bcf66cc67ecfd7ca5a9d3996be2518b35e975b0fa9c586377c176ee9b2.js
I, [2016-05-04T23:57:11.999306 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/nb_NO-adeadbd2ae66890d85b81af816bf68cf58ecf3b8830e09ddd1f03c15dac85ab1.js
I, [2016-05-04T23:57:12.761347 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/gl-820b6a5e2bc830256aa4943212fc16d21f921c407ffbbb3b3bbc8316ec285c57.js
I, [2016-05-04T23:57:13.498071 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/ru-4d76d8b196c2ebb44863e3f4145582cc4a035effa7827223cd81cb8fb377d39e.js
I, [2016-05-04T23:57:14.005269 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/vi-fcac291814779ae1496b38ff7f10051c824405a0123a7b777eb55d17a99e1b78.js
I, [2016-05-04T23:57:14.570783 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/cs-081f39f1329d2255f82d683e914ebfee22a83eade28664c1807da36b775659b3.js
I, [2016-05-04T23:57:15.145530 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/nl-51339af21ac6d02a2d431536473a2583dde8bc21ef944c85fc0b9e05efeb041c.js
I, [2016-05-04T23:57:15.717447 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/pt_BR-788cf889e05f6a2e58aa00b756c21352fd27aa5dfa281c9b8ab4e004c53740f8.js
I, [2016-05-04T23:57:16.386889 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/ja-565a03ba74d3ed814617b5540184b5a8f42248eba7574af05e2f34f9de9c6464.js
I, [2016-05-04T23:57:16.682283 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/uk-7997e88ee788b1508b0101a178a65cf067bf06dc48197cfadfc5724703f5316d.js
I, [2016-05-04T23:57:17.127827 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/zh_TW-87c6f4b20ee675e79bff1f5d8051531b02ed5fc88d7ecd1860c0d6c8b7b1874d.js
I, [2016-05-04T23:57:17.625116 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/zh_CN-03ddac3755542f63fc652f7b52d9c93ae5248076c477a0f2e8d846fa0cb80c18.js
I, [2016-05-04T23:57:18.194194 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/fa_IR-e52d378361818379e79d070574984df26c8adbc76ab2bde783b8d8976f183bc5.js
I, [2016-05-04T23:57:19.184543 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/es-bfecfba48aae196feaf6d0814c0381f9e309a612c0c7d85cdd7a7ecf27f0f4d7.js
I, [2016-05-04T23:57:19.373772 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/id-0a12f1654a7158b439040ef257a379e4210c7d12d69a798f3416d9101f23954d.js
I, [2016-05-04T23:57:19.936551 #11813]  INFO -- : Writing /var/www/discourse/public/assets/locales/fr-6a5bbe9fe31d96975c0e84469291e4f23009c93bc913e94d431cd5c533d5107a.js
I, [2016-05-04T23:58:06.040843 #11813]  INFO -- : Writing /var/www/discourse/public/assets/application-5f806f8f145d063112df197a73bfbeb6433f1862aae78b879a823f328c271f42.js
Start compiling CSS: 2016-05-04 23:58:07 UTC
Compiling css for default
Killed

Posts: 3

Participants: 2

Read full topic

My discourse has either been hacked or catfished (?) how to stop it?s

$
0
0

@mrdiscourse wrote:

I noticed bing webmaster telling me I had a backlink from somewhere. I investigated to find to my surprise someone had stole my discourse based site!

I deactivated 'allow same origin' plugin but its still somehow appearing on this fake site.

My site is http://www.aibuapp.com/ and the catfish is http://labthi.ng/

Has my discourse been hacked?

Posts: 2

Participants: 2

Read full topic

Display reason for System bans

$
0
0

@TimeDoctor wrote:

I've got a user who just messaged me because he was banned. Here's what the logs page says about him: (bottom entry)

Nothing shows up in screened emails or screened ips for why this user might be banned. What cases are there where a reason wouldn't show up in one of these places?

From my searching it looks like the only one is that they copy and pasted text from another document to insert into a post too quickly.

Posts: 9

Participants: 4

Read full topic

Emojis followed by period

$
0
0

@charleswalter wrote:

This is such a small issue, and I would imagine has been brought up before. But is there a reason why some emoji shortcuts dont work followed by period?
:).
:(.
:wink:.

Posts: 1

Participants: 1

Read full topic

RSpec search_spec.rb RateLimiter LimitExceeded problems

$
0
0

@Mittineague wrote:

Continuing the discussion from Search within topic is omitting results:

I was getting things set up to do a PR - Pull Request - and figured it might be nice to include a test.

So I ran
bundle exec rspec spec/components/search_spec.rb
and got "38 examples, 30 failures" - Ouch!
* my change didn't add any Fails, but then it didn't remove any either :sadpanda:

After running

RAILS_ENV=development bundle exec rake db:migrate
RAILS_ENV=development bundle exec rspec spec/components/search_spec.rb

Much better, only 7 Fails. Some "expecting _ got 5" etc. and some "RateLimiter LimitExceeded"

I was under the impression that testing was exempt from rate limits.

Am I missing a command option?

TBH, I'm not all that sure that I'll be able to write some good test code, but I'd rather not be timed out between attempts.

Posts: 7

Participants: 3

Read full topic

Admin Restrictions?

$
0
0

@Overmind wrote:

Anyway to restrict admin privileges rather than giving them access to everything? For example in most other platforms you can add a user to the admin panel solely for the design permissions without having to give them access to every feature or allow people administrator access for the vast majority of features but prevent a complete forum backup from being downloaded or created, major system settings from being changed, etc.

At the very least on Discourse official hosted installations I'd highly prefer the "Account Management" section not be open to every administrator as it contains payment information and the ability to modify subscription settings for the hosting.

I know it's been mentioned in similar topics before "don't make someone an admin/mod if you don't trust them" -- in some communities it's harder than others to do that. For example ones run by volunteers compared to paid staff. However that argument isn't the main point, if someone's account is compromised (Could be anything from their email address being social engineered, their password being captured by malicious software, they reuse a password from another breached site, etc) which isn't all that difficult without multi-factor authentication in place, then they'd have a whole lot of access.

In designing the security architecture we go by the popular principle of least privilege being the safest way to operate and to always assume a breach is possible so do your best to mitigate the fallout as well, not just look only at preventing the breach from happening. That way you're more prepared. So by that principle you want users to have access only to the abilities they need to perform their job. (You don't need a retail clerk to be able to download software to the POS system, they should only have access to the actions necessary for their job)

Once the forum settings have been decided, they rarely need to be changed/updated, so it's not a privilege most administrators would need on a regular basis, once a design is implemented and tested it's unlikely to change often so not a setting either that people would need often, payment details (especially last four digits and expiration date which are sensitive records, and enough to social engineer accounts with) are also not something every administrator would need access to. Could go on and on I'm sure.

An example of what we'd do in Xenforo would be have a super administrator account, set the privileges to each admin suited to their roles, even for the main ones that normally would have full access, if it's not being updated we disabled access for any administrator to it, including myself. Then disabled the super admin access (it is something you had to update in the config.php on the server) so it could not be changed via the admin panel. That way, even in the event of a an admin's account being breached, it wouldn't have huge repercussions as they wouldn't get full access to everything. They'd need to compromise the server as well to make themselves a super admin, and at that point they'd have access to the database anyway so it's the worst case scenario there.

On Discourse though if any administrator is compromised (at least how I understand it, haven't added an administrator since I last used it a year ago, current one still waiting on migration) then they'd be able to do a full backup of the forum, install a test version of Discourse, and compromise all the users. Disable SSL, change the CSS/templates to capture login information of members. Cancel subscription, disable the site.

Granted, keeping recent backups would mitigate data loss, but having administrator restrictions in place would help limit the scope of the damage greatly. These aren't all hypothetical situations, it's based breaches that have occurred on many forums in the past, both big and small.

Posts: 1

Participants: 1

Read full topic

Add data to Post query

$
0
0

@Andrew_Byrne wrote:

ok so I got a lovely query from @tgxworld some time ago.

posts = Post.where('user_id IN (?) OR topic_id IN (?) OR raw LIKE (?)', uid, tid, '%@everyone%' )
			 			.order(created_at: :desc)
			                 	.limit(params["total"])
						.offset(params["start"])

and it is quite useful, but I ain't sure how to go adding more data to this.
What I'm really looking for is a request like above that returns:

  • username
  • avatar_template
  • like_count

pretty much what you would find in:

https://meta.discourse.org/t/19157/1.json

Any Ideas?

Posts: 2

Participants: 2

Read full topic


How to pin post to the top of forum homepage?

Discourse users page not loading on mobile

"options" for search not available in full-page

$
0
0

@Tom_Newsom wrote:

In the search drop-down, you can click "options" to get a help page for advanced search.

This link does not exist in the full-page search, where you might expect it to be more useful. "I'm doing an important search so I'll do it full-page. Oh, now what was the syntax for date filters? Let me just look it up...."

Posts: 3

Participants: 2

Read full topic

Wrong sending domain used

$
0
0

@stadja wrote:

Hello guys,
I know it's a common problem,
but I am searching everywhere and I can't find any answer !!!

So here is the deal:

  • I am running v1.6.0.beta1 +394
  • My email configuration is:
    address smtp.sparkpostmail.com
    port 2525
    domain ltn.io
    user_name SMTP_Injection
    authentication plain
    enable_starttls_auto true
  • when I try to send an email with the test button, all I have is:
    [Sender] 550 5.7.1 Unconfigured Sending Domain <gmail.com>

My discourse.conf is:

db_name = bitnami_discourse
db_host = /home/ltn/discourse/postgresql
db_port = 5432
db_pool = 25
hostname = "discourse.ltn.io"
db_username = ******
db_password = "*******"
redis_port = 6379
redis_path = ******

smtp_address = "smtp.sparkpostmail.com"
smtp_port = 2525
smtp_domain = 'ltn.io'
smtp_user_name = 'SMTP_Injection'
smtp_password = '******'
smtp_enable_start_tls = true
developer_email = "*****@ltn.io"

Anyone can see a problem ? An explaination ? I have been trying to correct this for 2 days now !

Please help ? :slight_smile:

Posts: 4

Participants: 2

Read full topic

Cannot Directly Access Discourse

$
0
0

@Shukaze wrote:

Hey all,

I've finally got discourse working on SSL and all but when anyone tries to access the discourse forum directly it come up with SSL_ERROR_RX_UNEXPECTED_NEW_SESSION_TICKET. I'm not sure why this is happening...maybe something to do within the container? It works when you first visit the home site then click on forum or go to the forums page.

Posts: 1

Participants: 1

Read full topic

Viewing all 60739 articles
Browse latest View live




Latest Images