GET https://kbin.spritesserver.nl/u/@UnsyllabledQuickies@lemmy.world/threads/newest/%E2%88%9E/all

Security

Token

There is no security token.

Firewall

main Name
Security enabled
Stateless

Configuration

Key Value
provider security.user.provider.concrete.app_user_provider
context main
entry_point App\Security\KbinAuthenticator
user_checker App\Security\UserChecker
access_denied_handler (none)
access_denied_url (none)
authenticators
[
  "two_factor"
  "remember_me"
  "App\Security\KbinAuthenticator"
  "App\Security\FacebookAuthenticator"
  "App\Security\GoogleAuthenticator"
  "App\Security\GithubAuthenticator"
  "App\Security\KeycloakAuthenticator"
]

Listeners

Listener Duration Response
Symfony\Component\Security\Http\Firewall\ChannelListener {#723
  -map: Symfony\Component\Security\Http\AccessMap {#722 …}
  -logger: Monolog\Logger {#783 …}
  -httpPort: 80
  -httpsPort: 443
}
0.00 ms (none)
Symfony\Component\Security\Http\Firewall\ContextListener {#706
  -tokenStorage: Symfony\Component\Security\Core\Authentication\Token\Storage\TokenStorage {#1017 …}
  -sessionKey: "_security_main"
  -logger: Monolog\Logger {#783 …}
  -userProviders: Symfony\Component\DependencyInjection\Argument\RewindableGenerator {#705 …}
  -dispatcher: Symfony\Component\EventDispatcher\Debug\TraceableEventDispatcher {#747 …}
  -registered: false
  -trustResolver: Scheb\TwoFactorBundle\Security\Authentication\AuthenticationTrustResolver {#780 …}
  -sessionTrackerEnabler: Symfony\Component\Security\Core\Authentication\Token\Storage\UsageTrackingTokenStorage::enableUsageTracking(): void {#703 …}
}
0.26 ms (none)
Symfony\Component\Security\Http\Firewall\AuthenticatorManagerListener {#584
  -authenticatorManager: Symfony\Component\Security\Http\Authentication\AuthenticatorManager {#595 …}
}
0.00 ms (none)
Scheb\TwoFactorBundle\Security\Http\Firewall\TwoFactorAccessListener {#582
  -twoFactorFirewallConfig: Scheb\TwoFactorBundle\Security\TwoFactor\TwoFactorFirewallConfig {#842 …}
  -tokenStorage: Symfony\Component\Security\Core\Authentication\Token\Storage\UsageTrackingTokenStorage {#1018 …}
  -twoFactorAccessDecider: Scheb\TwoFactorBundle\Security\Authorization\TwoFactorAccessDecider {#581 …}
}
0.05 ms (none)
Symfony\Component\Security\Http\Firewall\AccessListener {#579
  -tokenStorage: Symfony\Component\Security\Core\Authentication\Token\Storage\UsageTrackingTokenStorage {#1018 …}
  -accessDecisionManager: Symfony\Component\Security\Core\Authorization\TraceableAccessDecisionManager {#937 …}
  -map: Symfony\Component\Security\Http\AccessMap {#722 …}
}
0.00 ms (none)
Symfony\Component\Security\Http\Firewall\LogoutListener {#786
  -tokenStorage: Symfony\Component\Security\Core\Authentication\Token\Storage\UsageTrackingTokenStorage {#1018 …}
  -options: [
    "csrf_parameter" => "_csrf_token"
    "csrf_token_id" => "logout"
    "logout_path" => "app_logout"
  ]
  -httpUtils: Symfony\Component\Security\Http\HttpUtils {#841 …}
  -csrfTokenManager: Symfony\Component\Security\Csrf\CsrfTokenManager {#1015 …}
  -eventDispatcher: Symfony\Component\EventDispatcher\Debug\TraceableEventDispatcher {#747 …}
}
0.00 ms (none)

Authenticators

No authenticators have been recorded. Check previous profiles on your authentication endpoint.

Access Decision

affirmative Strategy
# Voter class
1
"Symfony\Component\Security\Core\Authorization\Voter\AuthenticatedVoter"
2
"Scheb\TwoFactorBundle\Security\Authorization\Voter\TwoFactorInProgressVoter"
3
"Symfony\Component\Security\Core\Authorization\Voter\RoleHierarchyVoter"
4
"Symfony\Component\Security\Core\Authorization\Voter\ExpressionVoter"
5
"App\Security\Voter\EntryCommentVoter"
6
"App\Security\Voter\EntryVoter"
7
"App\Security\Voter\MagazineVoter"
8
"App\Security\Voter\MessageThreadVoter"
9
"App\Security\Voter\MessageVoter"
10
"App\Security\Voter\NotificationVoter"
11
"App\Security\Voter\OAuth2UserConsentVoter"
12
"App\Security\Voter\PostCommentVoter"
13
"App\Security\Voter\PostVoter"
14
"App\Security\Voter\UserVoter"

Access decision log

# Result Attributes Object
1 DENIED ROLE_USER
null
"Scheb\TwoFactorBundle\Security\Authorization\Voter\TwoFactorInProgressVoter"
ACCESS ABSTAIN
"Symfony\Component\Security\Core\Authorization\Voter\RoleHierarchyVoter"
ACCESS DENIED
"App\Security\Voter\EntryCommentVoter"
ACCESS ABSTAIN
"App\Security\Voter\EntryVoter"
ACCESS ABSTAIN
"App\Security\Voter\MagazineVoter"
ACCESS ABSTAIN
"App\Security\Voter\MessageThreadVoter"
ACCESS ABSTAIN
"App\Security\Voter\MessageVoter"
ACCESS ABSTAIN
"App\Security\Voter\NotificationVoter"
ACCESS ABSTAIN
"App\Security\Voter\OAuth2UserConsentVoter"
ACCESS ABSTAIN
"App\Security\Voter\PostCommentVoter"
ACCESS ABSTAIN
"App\Security\Voter\PostVoter"
ACCESS ABSTAIN
"App\Security\Voter\UserVoter"
ACCESS ABSTAIN
Show voter details
2 DENIED moderate
App\Entity\Entry {#1585
  +user: App\Entity\User {#261 …}
  +magazine: Proxies\__CG__\App\Entity\Magazine {#1721 …}
  +image: null
  +domain: Proxies\__CG__\App\Entity\Domain {#1687 …}
  +slug: "What-can-we-do-about-major-sites-blocking-VPN-providers"
  +title: "What can we do about major sites blocking VPN providers?"
  +url: null
  +body: """
    I use ProtonVPN for everything, and I’ve started noticing more and more sites simply blocking me if I try to connect to them through ProtonVPN. As much as it sucks, I’ve more or less become acclimated to having to deal with an increased number of captchas while using a VPN; but I’m pretty angry about being blocked outright. There are at least two broad blocking tactics. First, some sites will say that my network traffic looks suspicious and/or that they simply block traffic from certain IP addresses. But second, and far more maddeningly, some sites tell me that my username and password combo are *incorrect* when I’m using a VPN. But I know this to be a blatant lie because (1) I use a password manager that auto-fills login forms with credentials that match the domain name, and (2) such sites accept my credentials when I visit them without the VPN connection.\n
    \n
    What the hell can we do about this shit? Do I have to run my own VPN to avoid sharing an IP address with other people and thus getting blocked? I *really* don’t want to do that because I have neither the time nor expertise, and I like that connecting through a VPN provider makes my IP address much less significant. I’m aware that this is connected to the broader conversation about WEI and other methods for determining whether requests are legitimate or not, and I’m sure that businesses of all sizes are reeling from massive increases in bot and AI activity. But solutions that end up punishing legitimate users are not good or valid solutions.
    """
  +type: "article"
  +lang: "en"
  +isOc: false
  +hasEmbed: false
  +commentCount: 14
  +favouriteCount: 13
  +score: 0
  +isAdult: false
  +sticky: false
  +lastActive: DateTime @1699941700 {#1424
    date: 2023-11-14 07:01:40.0 +01:00
  }
  +ip: null
  +adaAmount: 0
  +tags: null
  +mentions: null
  +comments: Doctrine\ORM\PersistentCollection {#1680 …}
  +votes: Doctrine\ORM\PersistentCollection {#1686 …}
  +reports: Doctrine\ORM\PersistentCollection {#1795 …}
  +favourites: Doctrine\ORM\PersistentCollection {#1718 …}
  +notifications: Doctrine\ORM\PersistentCollection {#1724 …}
  +badges: Doctrine\ORM\PersistentCollection {#2447 …}
  +children: []
  -id: 12730
  -titleTs: "'block':8 'major':6 'provid':10 'site':7 'vpn':9"
  -bodyTs: "'1':125 '2':145 'accept':148 'acclim':38 'activ':263 'address':90,181,217 'ai':262 'and/or':81 'angri':57 'auto':133 'auto-fil':132 'avoid':177 'awar':223 'becom':37 'blatant':122 'block':16,60,68,85,188 'bot':260 'broad':67 'broader':230 'busi':250 'captcha':48 'certain':88 'combo':106 'connect':22,158,209,227 'convers':231 'credenti':138,150 'deal':42 'determin':238 'domain':142 'end':267 'everyth':5 'expertis':204 'far':94 'fill':134 'first':70 'form':136 'get':187 'good':274 'hell':161 'incorrect':108 'increas':45,258 'ip':89,180,216 'know':117 'least':65 'legitim':242,270 'less':36,219 'lie':123 'like':207 'login':135 'look':79 'm':55,111,222,247 'madden':96 'make':214 'manag':130 'massiv':257 'match':140 'method':236 'much':28,218 'name':143 'neither':200 'network':77 'notic':10 'number':46 'outright':61 'password':105,129 'peopl':184 'pretti':56 'protonvpn':3,26 'provid':213 'punish':269 'realli':190 'reel':255 'request':240 'run':172 'say':74 'second':92 'share':178 'shit':167 'signific':220 'simpli':15,84 'site':14,72,98,147 'size':253 'solut':265,277 'start':9 'suck':31 'sure':248 'suspici':80 'tactic':69 'tell':99 'thus':186 'time':202 'traffic':78,86 'tri':20 'two':66 'use':2,50,112,127 'user':271 'usernam':103 'valid':276 've':8,33 'visit':153 'vpn':52,114,157,175,212 'want':193 'wei':233 'whether':239 'without':155"
  +cross: false
  +upVotes: 0
  +downVotes: 0
  +ranking: 1699730067
  +visibility: "visible             "
  +apId: "https://lemmy.world/post/8075487"
  +editedAt: null
  +createdAt: DateTimeImmutable @1699643667 {#1647
    date: 2023-11-10 20:14:27.0 +01:00
  }
}
"Scheb\TwoFactorBundle\Security\Authorization\Voter\TwoFactorInProgressVoter"
ACCESS ABSTAIN
"App\Security\Voter\EntryCommentVoter"
ACCESS ABSTAIN
"App\Security\Voter\EntryVoter"
ACCESS DENIED
"App\Security\Voter\MagazineVoter"
ACCESS ABSTAIN
"App\Security\Voter\MessageThreadVoter"
ACCESS ABSTAIN
"App\Security\Voter\MessageVoter"
ACCESS ABSTAIN
"App\Security\Voter\NotificationVoter"
ACCESS ABSTAIN
"App\Security\Voter\OAuth2UserConsentVoter"
ACCESS ABSTAIN
"App\Security\Voter\PostCommentVoter"
ACCESS ABSTAIN
"App\Security\Voter\PostVoter"
ACCESS ABSTAIN
"App\Security\Voter\UserVoter"
ACCESS ABSTAIN
Show voter details
3 DENIED edit
App\Entity\Entry {#1585
  +user: App\Entity\User {#261 …}
  +magazine: Proxies\__CG__\App\Entity\Magazine {#1721 …}
  +image: null
  +domain: Proxies\__CG__\App\Entity\Domain {#1687 …}
  +slug: "What-can-we-do-about-major-sites-blocking-VPN-providers"
  +title: "What can we do about major sites blocking VPN providers?"
  +url: null
  +body: """
    I use ProtonVPN for everything, and I’ve started noticing more and more sites simply blocking me if I try to connect to them through ProtonVPN. As much as it sucks, I’ve more or less become acclimated to having to deal with an increased number of captchas while using a VPN; but I’m pretty angry about being blocked outright. There are at least two broad blocking tactics. First, some sites will say that my network traffic looks suspicious and/or that they simply block traffic from certain IP addresses. But second, and far more maddeningly, some sites tell me that my username and password combo are *incorrect* when I’m using a VPN. But I know this to be a blatant lie because (1) I use a password manager that auto-fills login forms with credentials that match the domain name, and (2) such sites accept my credentials when I visit them without the VPN connection.\n
    \n
    What the hell can we do about this shit? Do I have to run my own VPN to avoid sharing an IP address with other people and thus getting blocked? I *really* don’t want to do that because I have neither the time nor expertise, and I like that connecting through a VPN provider makes my IP address much less significant. I’m aware that this is connected to the broader conversation about WEI and other methods for determining whether requests are legitimate or not, and I’m sure that businesses of all sizes are reeling from massive increases in bot and AI activity. But solutions that end up punishing legitimate users are not good or valid solutions.
    """
  +type: "article"
  +lang: "en"
  +isOc: false
  +hasEmbed: false
  +commentCount: 14
  +favouriteCount: 13
  +score: 0
  +isAdult: false
  +sticky: false
  +lastActive: DateTime @1699941700 {#1424
    date: 2023-11-14 07:01:40.0 +01:00
  }
  +ip: null
  +adaAmount: 0
  +tags: null
  +mentions: null
  +comments: Doctrine\ORM\PersistentCollection {#1680 …}
  +votes: Doctrine\ORM\PersistentCollection {#1686 …}
  +reports: Doctrine\ORM\PersistentCollection {#1795 …}
  +favourites: Doctrine\ORM\PersistentCollection {#1718 …}
  +notifications: Doctrine\ORM\PersistentCollection {#1724 …}
  +badges: Doctrine\ORM\PersistentCollection {#2447 …}
  +children: []
  -id: 12730
  -titleTs: "'block':8 'major':6 'provid':10 'site':7 'vpn':9"
  -bodyTs: "'1':125 '2':145 'accept':148 'acclim':38 'activ':263 'address':90,181,217 'ai':262 'and/or':81 'angri':57 'auto':133 'auto-fil':132 'avoid':177 'awar':223 'becom':37 'blatant':122 'block':16,60,68,85,188 'bot':260 'broad':67 'broader':230 'busi':250 'captcha':48 'certain':88 'combo':106 'connect':22,158,209,227 'convers':231 'credenti':138,150 'deal':42 'determin':238 'domain':142 'end':267 'everyth':5 'expertis':204 'far':94 'fill':134 'first':70 'form':136 'get':187 'good':274 'hell':161 'incorrect':108 'increas':45,258 'ip':89,180,216 'know':117 'least':65 'legitim':242,270 'less':36,219 'lie':123 'like':207 'login':135 'look':79 'm':55,111,222,247 'madden':96 'make':214 'manag':130 'massiv':257 'match':140 'method':236 'much':28,218 'name':143 'neither':200 'network':77 'notic':10 'number':46 'outright':61 'password':105,129 'peopl':184 'pretti':56 'protonvpn':3,26 'provid':213 'punish':269 'realli':190 'reel':255 'request':240 'run':172 'say':74 'second':92 'share':178 'shit':167 'signific':220 'simpli':15,84 'site':14,72,98,147 'size':253 'solut':265,277 'start':9 'suck':31 'sure':248 'suspici':80 'tactic':69 'tell':99 'thus':186 'time':202 'traffic':78,86 'tri':20 'two':66 'use':2,50,112,127 'user':271 'usernam':103 'valid':276 've':8,33 'visit':153 'vpn':52,114,157,175,212 'want':193 'wei':233 'whether':239 'without':155"
  +cross: false
  +upVotes: 0
  +downVotes: 0
  +ranking: 1699730067
  +visibility: "visible             "
  +apId: "https://lemmy.world/post/8075487"
  +editedAt: null
  +createdAt: DateTimeImmutable @1699643667 {#1647
    date: 2023-11-10 20:14:27.0 +01:00
  }
}
"Scheb\TwoFactorBundle\Security\Authorization\Voter\TwoFactorInProgressVoter"
ACCESS ABSTAIN
"App\Security\Voter\EntryCommentVoter"
ACCESS ABSTAIN
"App\Security\Voter\EntryVoter"
ACCESS DENIED
"App\Security\Voter\MagazineVoter"
ACCESS ABSTAIN
"App\Security\Voter\MessageThreadVoter"
ACCESS ABSTAIN
"App\Security\Voter\MessageVoter"
ACCESS ABSTAIN
"App\Security\Voter\NotificationVoter"
ACCESS ABSTAIN
"App\Security\Voter\OAuth2UserConsentVoter"
ACCESS ABSTAIN
"App\Security\Voter\PostCommentVoter"
ACCESS ABSTAIN
"App\Security\Voter\PostVoter"
ACCESS ABSTAIN
"App\Security\Voter\UserVoter"
ACCESS ABSTAIN
Show voter details
4 DENIED moderate
App\Entity\Entry {#1585
  +user: App\Entity\User {#261 …}
  +magazine: Proxies\__CG__\App\Entity\Magazine {#1721 …}
  +image: null
  +domain: Proxies\__CG__\App\Entity\Domain {#1687 …}
  +slug: "What-can-we-do-about-major-sites-blocking-VPN-providers"
  +title: "What can we do about major sites blocking VPN providers?"
  +url: null
  +body: """
    I use ProtonVPN for everything, and I’ve started noticing more and more sites simply blocking me if I try to connect to them through ProtonVPN. As much as it sucks, I’ve more or less become acclimated to having to deal with an increased number of captchas while using a VPN; but I’m pretty angry about being blocked outright. There are at least two broad blocking tactics. First, some sites will say that my network traffic looks suspicious and/or that they simply block traffic from certain IP addresses. But second, and far more maddeningly, some sites tell me that my username and password combo are *incorrect* when I’m using a VPN. But I know this to be a blatant lie because (1) I use a password manager that auto-fills login forms with credentials that match the domain name, and (2) such sites accept my credentials when I visit them without the VPN connection.\n
    \n
    What the hell can we do about this shit? Do I have to run my own VPN to avoid sharing an IP address with other people and thus getting blocked? I *really* don’t want to do that because I have neither the time nor expertise, and I like that connecting through a VPN provider makes my IP address much less significant. I’m aware that this is connected to the broader conversation about WEI and other methods for determining whether requests are legitimate or not, and I’m sure that businesses of all sizes are reeling from massive increases in bot and AI activity. But solutions that end up punishing legitimate users are not good or valid solutions.
    """
  +type: "article"
  +lang: "en"
  +isOc: false
  +hasEmbed: false
  +commentCount: 14
  +favouriteCount: 13
  +score: 0
  +isAdult: false
  +sticky: false
  +lastActive: DateTime @1699941700 {#1424
    date: 2023-11-14 07:01:40.0 +01:00
  }
  +ip: null
  +adaAmount: 0
  +tags: null
  +mentions: null
  +comments: Doctrine\ORM\PersistentCollection {#1680 …}
  +votes: Doctrine\ORM\PersistentCollection {#1686 …}
  +reports: Doctrine\ORM\PersistentCollection {#1795 …}
  +favourites: Doctrine\ORM\PersistentCollection {#1718 …}
  +notifications: Doctrine\ORM\PersistentCollection {#1724 …}
  +badges: Doctrine\ORM\PersistentCollection {#2447 …}
  +children: []
  -id: 12730
  -titleTs: "'block':8 'major':6 'provid':10 'site':7 'vpn':9"
  -bodyTs: "'1':125 '2':145 'accept':148 'acclim':38 'activ':263 'address':90,181,217 'ai':262 'and/or':81 'angri':57 'auto':133 'auto-fil':132 'avoid':177 'awar':223 'becom':37 'blatant':122 'block':16,60,68,85,188 'bot':260 'broad':67 'broader':230 'busi':250 'captcha':48 'certain':88 'combo':106 'connect':22,158,209,227 'convers':231 'credenti':138,150 'deal':42 'determin':238 'domain':142 'end':267 'everyth':5 'expertis':204 'far':94 'fill':134 'first':70 'form':136 'get':187 'good':274 'hell':161 'incorrect':108 'increas':45,258 'ip':89,180,216 'know':117 'least':65 'legitim':242,270 'less':36,219 'lie':123 'like':207 'login':135 'look':79 'm':55,111,222,247 'madden':96 'make':214 'manag':130 'massiv':257 'match':140 'method':236 'much':28,218 'name':143 'neither':200 'network':77 'notic':10 'number':46 'outright':61 'password':105,129 'peopl':184 'pretti':56 'protonvpn':3,26 'provid':213 'punish':269 'realli':190 'reel':255 'request':240 'run':172 'say':74 'second':92 'share':178 'shit':167 'signific':220 'simpli':15,84 'site':14,72,98,147 'size':253 'solut':265,277 'start':9 'suck':31 'sure':248 'suspici':80 'tactic':69 'tell':99 'thus':186 'time':202 'traffic':78,86 'tri':20 'two':66 'use':2,50,112,127 'user':271 'usernam':103 'valid':276 've':8,33 'visit':153 'vpn':52,114,157,175,212 'want':193 'wei':233 'whether':239 'without':155"
  +cross: false
  +upVotes: 0
  +downVotes: 0
  +ranking: 1699730067
  +visibility: "visible             "
  +apId: "https://lemmy.world/post/8075487"
  +editedAt: null
  +createdAt: DateTimeImmutable @1699643667 {#1647
    date: 2023-11-10 20:14:27.0 +01:00
  }
}
"Scheb\TwoFactorBundle\Security\Authorization\Voter\TwoFactorInProgressVoter"
ACCESS ABSTAIN
"App\Security\Voter\EntryCommentVoter"
ACCESS ABSTAIN
"App\Security\Voter\EntryVoter"
ACCESS DENIED
"App\Security\Voter\MagazineVoter"
ACCESS ABSTAIN
"App\Security\Voter\MessageThreadVoter"
ACCESS ABSTAIN
"App\Security\Voter\MessageVoter"
ACCESS ABSTAIN
"App\Security\Voter\NotificationVoter"
ACCESS ABSTAIN
"App\Security\Voter\OAuth2UserConsentVoter"
ACCESS ABSTAIN
"App\Security\Voter\PostCommentVoter"
ACCESS ABSTAIN
"App\Security\Voter\PostVoter"
ACCESS ABSTAIN
"App\Security\Voter\UserVoter"
ACCESS ABSTAIN
Show voter details