Hi, UA could be something unique similar to “Cygwin mirror/0.01” and I can whitelist then, but having “python-urlli will definitely trigger the WAF.
While I can completely disable the check without issues, if you want to carry a specific UA feel free to do it and I will then white list based on UA. Let me know when you are ready. Sent from my iPhone > On Mar 26, 2024, at 1:40 PM, Jon Turney <jon.tur...@dronecode.org.uk> wrote: > > On 26/03/2024 14:10, Christopher Meng via Cygwin wrote: >> Hi, This mirror is actually behind CDN which is "global", so I'm not sure if >> you can handle such of mirror on your end for redirect. > > OK, I'll leave the location unspecified. > > I gave it a brief test with our setup program and things seem to work > correctly (which shouldn't be surprising since it just uses the wininet > API to fetch files). > > However, it seem our mirror checking script seems to get told "403 Forbidden" > when it tries to check if you are up to date. > > Can you tell me (privately, if you like) what User-Agent: it should present? > Or suggest another mechanism to allow it access? > -- Problem reports: https://cygwin.com/problems.html FAQ: https://cygwin.com/faq/ Documentation: https://cygwin.com/docs.html Unsubscribe info: https://cygwin.com/ml/#unsubscribe-simple