Bobcares

Access Denied – Sucuri Website Firewall error : How we resolve?

by | Dec 21, 2019

Trying to resolve the website error ‘Access Denied by Sucuri Website Firewall’? We can help you with it.

The Sucuri Firewall is a cloud-based web application firewall. It blocks any hack or attack attempts on the website instantly.

At Bobcares, we often get requests from our customers to fix this error as a part of our Server Management Services.

Today, let’ see how our Support Engineers fix this error.

 

Why does ‘Access Denied – Sucuri Website Firewall’ error occur?

Sucuri Firewall is one of the best Web Application Firewall. Moreover, it works well in protecting WordPress websites in the server.

Also, it protects the website from external attacks keeping it safe.

However, if the website blocks the Sucuri IP addresses unknowingly, then access denied errors show up on the website.

For instance, the error message appears as shown below.

Access Denied Sucuri Website Firewall WordPress

 

How we fix Sucuri error easily?

At Bobcares, where we have more than a decade of expertise in managing servers, we see many customers facing problems with Sucuri.

Now, let’s see how our Support Engineers fix this error.

Recently, one of our customers approached us with the error ‘Access Denied – Sucuri Website Firewall‘. He received this error while accessing his website.

On checking, we found that the user had a Sucuri firewall set on his WordPress. And this was blocking its own IP address. Thus it was displaying access denied error on the website.

So, we whitelisted the Sucuri IP addresses by adding them to the .htaccess file.

Here is the code that we used in the .htaccess file.

<FilesMatch ".*">
Order deny,allow
Deny from all
Allow from 192.88.134.0/23
Allow from 185.93.228.0/22
Allow from 66.248.200.0/22
Allow from 208.109.0.0/22
Allow from 2a02:fe80::/29
</FilesMatch>

 

Whitelisting with IPtables

In addition, we also whitelist the IP addresses in the server according to the firewall used. In case, if we are using IPTables, then we will whitelist the IP addresses of Sucuri in IPTables firewall.

For example, we assisted to whitelist the range of IP addresses in IPTables as follows.

Initially, we logged into the server via SSH.

Thereafter, we allowed incoming connections from 192.88.134.0/23

iptables -A INPUT -i eth1 -s 192.88.134.0/23 -j ACCEPT

Then allowed outgoing connections to 192.88.134.0/23

iptables -A OUTPUT -i eth1 -d 192.88.134.0/23 -j ACCEPT

Thus, we whitelisted the range of IP addresses. Finally, the Sucuri error was resolved.

 

[Need any assistance in fixing Sucuri related errors? – We’ll help you]

 

Conclusion

In short, the website shows the ‘Access Denied – Sucuri Website Firewall’ message when the Sucuri IP addresses are blocked in the server. Today, we saw how our Support Engineers fixed this error by whitelisting the Sucuri IP addresses.

PREVENT YOUR SERVER FROM CRASHING!

Never again lose customers to poor server speed! Let us help you.

Our server experts will monitor & maintain your server 24/7 so that it remains lightning fast and secure.

GET STARTED

var google_conversion_label = "owonCMyG5nEQ0aD71QM";

8 Comments

  1. dymond C

    I work for 211 and need access tot his site, I had it before not sure why I don’t now.

    Reply
    • Arya MA

      Hi there,

      Can you please confirm if your IP addresses are whitelisted at the server end? If you still find problems, we’ll be happy to talk to you on chat (click on the icon at right-bottom).

      Reply
  2. Angelina Mateo

    I want to unblock Webex can you’ll help me please

    Reply
    • Maheen Aboobakkar

      We’ll be happy to talk to you on chat (click on the icon at right-bottom).

      Reply
  3. Deepak

    in order to activate my elementor pro account its showing error( forbidden). i dont know why this issue is showing for me

    Reply
    • Hiba Razak

      Please contact our support team via live chat

      Reply
  4. Jill f

    I keep getting this error when i try to go to roxytube:

    Access Denied – Sucuri Website Firewall

    I have no idea what sucuti is

    Reply
    • Hiba Razak

      Hi Jill,
      Please contact our support team through live chat (click on the icon at right-bottom).

      Reply

Submit a Comment

Your email address will not be published. Required fields are marked *

Never again lose customers to poor
server speed! Let us help you.

Privacy Preference Center

Necessary

Necessary cookies help make a website usable by enabling basic functions like page navigation and access to secure areas of the website. The website cannot function properly without these cookies.

PHPSESSID - Preserves user session state across page requests.

gdpr[consent_types] - Used to store user consents.

gdpr[allowed_cookies] - Used to store user allowed cookies.

PHPSESSID, gdpr[consent_types], gdpr[allowed_cookies]
PHPSESSID
WHMCSpKDlPzh2chML

Statistics

Statistic cookies help website owners to understand how visitors interact with websites by collecting and reporting information anonymously.

_ga - Preserves user session state across page requests.

_gat - Used by Google Analytics to throttle request rate

_gid - Registers a unique ID that is used to generate statistical data on how you use the website.

smartlookCookie - Used to collect user device and location information of the site visitors to improve the websites User Experience.

_ga, _gat, _gid
_ga, _gat, _gid
smartlookCookie
_clck, _clsk, CLID, ANONCHK, MR, MUID, SM

Marketing

Marketing cookies are used to track visitors across websites. The intention is to display ads that are relevant and engaging for the individual user and thereby more valuable for publishers and third party advertisers.

IDE - Used by Google DoubleClick to register and report the website user's actions after viewing or clicking one of the advertiser's ads with the purpose of measuring the efficacy of an ad and to present targeted ads to the user.

test_cookie - Used to check if the user's browser supports cookies.

1P_JAR - Google cookie. These cookies are used to collect website statistics and track conversion rates.

NID - Registers a unique ID that identifies a returning user's device. The ID is used for serving ads that are most relevant to the user.

DV - Google ad personalisation

_reb2bgeo - The visitor's geographical location

_reb2bloaded - Whether or not the script loaded for the visitor

_reb2bref - The referring URL for the visit

_reb2bsessionID - The visitor's RB2B session ID

_reb2buid - The visitor's RB2B user ID

IDE, test_cookie, 1P_JAR, NID, DV, NID
IDE, test_cookie
1P_JAR, NID, DV
NID
hblid
_reb2bgeo, _reb2bloaded, _reb2bref, _reb2bsessionID, _reb2buid

Security

These are essential site cookies, used by the google reCAPTCHA. These cookies use an unique identifier to verify if a visitor is human or a bot.

SID, APISID, HSID, NID, PREF
SID, APISID, HSID, NID, PREF