WR844N v1: Remote management option enabled, but http 403 forbidden error for javascript/css

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

WR844N v1: Remote management option enabled, but http 403 forbidden error for javascript/css

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
WR844N v1: Remote management option enabled, but http 403 forbidden error for javascript/css
WR844N v1: Remote management option enabled, but http 403 forbidden error for javascript/css
2023-09-14 13:38:36 - last edited 2023-09-15 09:18:14
Model: TL-WR844N  
Hardware Version: V1
Firmware Version: V1_211011

Hello.

 

I have a problem with the model's remote management option.

 

As of 14.09.2023 the latest firmware V1_211011 available is on the router (it came with the version already from the box).

 

Here is the setup:

 

On main router I have a static dhcp lease to the tplink wr844n so that it always get ip: 192.168.100.2

On main router I have also port forwarding setup from main router to tplink wr844n:

 

protocol: tcp

external port: 8080

internal port: 8080

device ip: 192.168.100.2

 

Here is how the management option is enabled on tplink wr844n:

 

 

 

When I access 123.123.123.123:8080 I expect to be able to open the tplink web management panel.

 

Unfortunately I get a blank screen on firefox/chrome, when I inspect the web development tools console I get http status code 403 forbidden errors for resources:

 

 

 

From the devtools I can see that the initial http content gets loaded (123.123.123.123:8080 status code 200): 

 

But then all the embedded resources such as javascript or css gets rejected with http status code 403 forbidden.

 

Any ideas why is that? In the remote management settings for tplink wr844n there are not restrictions in place, but http 403 forbidden indicates it was blocked.

 

Thanks.

  0      
  0      
#1
Options
1 Accepted Solution
Re:WR844N v1: Remote management option enabled, but http 403 forbidden error for javascript/css-Solution
2023-09-15 09:16:51 - last edited 2023-09-15 09:19:00

  @terziyski 
  @woozle

 

Thank you for the replies. The "problem" is indeed caused by the "HTTP Referer Head Check" option that is by default enabled in the remote management settings.

 

the solution in this double-nat setup is to uncheck it.

 

Recommended Solution
  0  
  0  
#4
Options
3 Reply
Re:WR844N v1: Remote management option enabled, but http 403 forbidden error for javascript/css
2023-09-14 17:29:28

  @candie 

 

Hi,

 

The first troubleshooting step would be to connect your client device to the "main router" (either via LAN cable or wireless), open your web browser and type the address http://192.168.100.2:8080

 

If that doesn't work either, then there is a problem with the WR844N.

 

However, if the above works fine, then the problem is with the "main router".
 

  2  
  2  
#2
Options
Re:WR844N v1: Remote management option enabled, but http 403 forbidden error for javascript/css
2023-09-14 18:19:24 - last edited 2023-09-14 23:57:29

  @candie 

 

Execute the test that @woozle suggested. If it's successful the problem could still be with the WR844N - check this story.

This could be due to the network protection against cross-site request forgery (CSRF) attacks.

If this was helpful click once on the arrow pointing upward. If this solves your issue, click once the star to mark it as a "Recommended Solution".
  3  
  3  
#3
Options
Re:WR844N v1: Remote management option enabled, but http 403 forbidden error for javascript/css-Solution
2023-09-15 09:16:51 - last edited 2023-09-15 09:19:00

  @terziyski 
  @woozle

 

Thank you for the replies. The "problem" is indeed caused by the "HTTP Referer Head Check" option that is by default enabled in the remote management settings.

 

the solution in this double-nat setup is to uncheck it.

 

Recommended Solution
  0  
  0  
#4
Options

Information

Helpful: 0

Views: 1577

Replies: 3

Related Articles