HTTP redirect detection breaks connection in some (corporate) networks
See original GitHub issueDescribe the bug
I want to use one of my NC bookmark app server folders on my company PC. Since a few weeks syncing is not possible any more with the error: Syncing failed with E033: Redirect detected.
( I guess: https://github.com/floccusaddon/floccus/commit/6946fc96c13b108e42af66474d6f1981398416b8)
I’m aware that there is a zscaler proxy which fiddles with the connection. Sync outside of the company network is as expected.
I was not sure whether to label it a bug or feature request. But since it broke a working setup I went with bug.
Expected behavior
For this it would be good to have an option, which is default on, to deactivate this redirect check.
Desktop
- OS: Windows 10
- Browser chrome, firefox, brave
- Floccus version: 4.6.1
- Floccus sync method: nextcloud bookmarks
Server
- OS: [Raspberry Pi OS buster]
- Nextcloud version: [21.0]
- Bookmarks app version: [4.1.0]
Debug log
- Debug log provided
2021-04-08T09:10:50.208Z Starting sync process for account user@domain
2021-04-08T09:10:50.212Z Using "merge default" strategy (no cache available)
2021-04-08T09:10:50.221Z Overriding title of built-in node 1 Bookmarks => Bookmarks Bar
2021-04-08T09:10:50.543Z Syncing failed with E033: Redirect detected. Please install the Bookmarks app on your nextcloud and make sure the nextcloud URL you entered doesn't redirect to a different location.
Issue Analytics
- State:
- Created 2 years ago
- Comments:9 (5 by maintainers)
Top Results From Across the Web
3 Ways to Prevent a URL Redirect Attack - SiteLock
Cybercriminals use these URL redirection attacks to take advantage of users' trust. They do this by redirecting traffic to a malicious web page ......
Read more >Redirections in HTTP - MDN Web Docs - Mozilla
In HTTP, redirection is triggered by a server sending a special redirect response to a request. Redirect responses have status codes that start ......
Read more >Open redirects: real-world abuse and recommendations ...
Open URL redirection is a class of web application security problems that makes it easier for attackers to direct users to malicious resources....
Read more >HTTP Redirects with DNS, and Why HTTPS Redirects are So
What are redirects? Redirects are commonly used to tell website visitors and search engines which URL is the one you want them to...
Read more >How to Solve This Webpage has a Redirect Loop Problem
When you redirect one URL to another —this should be a linear flow. ... modern browsers are able to detect such redirect loops...
Read more >Top Related Medium Post
No results found
Top Related StackOverflow Question
No results found
Troubleshoot Live Code
Lightrun enables developers to add logs, metrics and snapshots to live code - no restarts or redeploys required.
Start FreeTop Related Reddit Thread
No results found
Top Related Hackernoon Post
No results found
Top Related Tweet
No results found
Top Related Dev.to Post
No results found
Top Related Hashnode Post
No results found
Top GitHub Comments
It’s hard for me to tell how special my case is for your user base. I would be out of options when you choose a).
I don’t know how much effort it would be, but
c) to create a GUI (or even more hidden) option: Allow redirects
By default you would block them.
From Firefox (and Chrome) I get a 307 from the company proxy:
Request:
Response: