1001 Freelance Projects
Latest Projects from Freelance Marketplaces
Today is: 29-Apr-2024 00:36 GMT
View Project
View this project in detail (Note: you will be redirected to external marketplace)
Project title: FIle download website with URL protection
Posted by: External project from PeoplePerHour
Started: 13-Dec-2022 09:25 GMT
Description: ---Project Brief---
I run a firmware download utility, this comprises on a Windows application, a PHP based website for non-windows users and a php based admin backend for management.

I was recently notified that users are using a feature in Edge that I was unaware of and are able to see the URL that my files are stored at, allowing them to bypass limitations on what files they can access by right clicking the file whilst it is downloading and selecting “Copy URL”. The app hosts just over 3,000 files with only around 800 supposed to be accessible to normal users, however by altering the URL, they are able to gain access to the other files if they know the file name (all files follow a pattern, so guessing is easy).

The main concern is the web-based version. This is comprised of a 4-level selection box where users must select their drones Brand, then Model, then desired Firmware Version & finally the Category. This takes them to a page which displays some details about the file such as file size and release notes and also contains two download buttons. The URL on the download buttons is ‘hidden’ by using a form, the submit URL of the form is the actual download link and using the download page, this is served to the user as a file, the idea being that the file URL is kept secret.

The page also has integration with Fingerprint Pro (a user analytics system) and also allows the user to enter a user ID (this can also be supplied in the URL string) to see some semi-hidden files.

The ultimate goal is to protect these files!! The database system runs on MariaDB 10.1.

I would like for a system to be developed that looks and feels exactly like I have now, users are familiar with this design and trust it. However, using whatever method fits the job, the URL must be masked and not be susceptible to URL manipulation to serve additional files. I am open to creating new tables in the database to use session ID’s or anything that fits the job. I do NOT have root access to either server.

Code can be developed locally on your system, or remotely on the servers with FTP access. I am happy either way as long as I am able to validate the system works 100% as described before releasing payment.

As an important note, the files are on a physically separate server to the website server, this is done for cost reasons as the web host gives good servers with low disk space, the file host gives less well spec’d servers, but with much more disk space. All development has to happen on the web hosts servers.

I am happy with you reusing and tidying up my original code if this works, or a full rewrite (with code comments).

This is a very important system to me and my users so its vital that we get this right and it works for all users.

---Task Goals---
- Maintain current style and feel of pages. Small visual alterations are fine.
- Maintain support for Fingerprint Pro (code is implemented on the ddd_check.php page and stored in the database in download.php, I have documented this in comments as much as I can).
- Maintain support for the user entering a code on index.php & for this same code to be able to be passed in via the URL e.g “index.php?user_code=1e2fab1c-a371-4x48-974f-1844161f41t1” (this code is mature and can simply be re-used).
- Protect the source URL of the firmware files at all times
- Protect against a user manipulating the URL to download additional files
- Be HTTPS from start to finish (Domain has a wildcard SSL Certificate applied via Cloudflare)

---Starting Point---
Current codebase will be provided as a starting point, including access to a mirror of the current live database as required for development, this will allow you to see how the current system works and ultimately its flaws.

The system is several years old at this point and could do with a little clean-up, I am not a PHP developer by trade so my code is very much function over form, but the code works and commented as much as possible.
Project ID: 3299503
Project category:
Project budget:
View this project in detail (Note: you will be redirected to external marketplace)
Last Projects / Browse Projects
  Project Started
Architecture tutoring. Need to start now
Category: Autodesk, Building Architecture, Civil Engineering, Education & Tutoring, Structural Engineering
Budget: $2 - $8 USD
28-Apr-2024
22:04 GMT
Social Media Sales Rep Needed
Category: Email Marketing, Marketing, Sales, Social Media Marketing
Budget: $250 - $750 USD
28-Apr-2024
22:02 GMT
Custom Cbot Development for Forex Trading
Category: C#, Programming, C++, Software Architecture, Software Development
Budget: $10 - $30 USD
28-Apr-2024
22:01 GMT
Tech Consulting Sales Expert Needed
Category: Compliance, Sales
Budget: $5000 - $10000 USD
28-Apr-2024
22:01 GMT
Inventor Industrial Design Innovation
Category: 3D Modelling, 3D Rendering, CAD / CAM, Manufacturing Design, Product Design
Budget: $10 - $30 USD
28-Apr-2024
22:01 GMT
Vibrant Abstract T-Shirt Graphic Design
Category: Graphic Design, Logo Design, Photoshop, Photoshop Design, T Shirts
Budget: $250 - $750 CAD
28-Apr-2024
21:59 GMT
Health & Fitness Articles for General Public
Category: Article Rewriting, Article Writing, Content Writing, Ghostwriting, Health
Budget: £10 - £15 GBP
28-Apr-2024
21:58 GMT
Woodworking E-Commerce Website with Etsy & Amazon Integration
Category: ECommerce, Graphic Design, HTML, User Interface / IA, Web Design
Budget: £20 - £250 GBP
28-Apr-2024
21:56 GMT
Informational Website for Professionals
Category: Graphic Design, HTML, HTML5, PHP, Web Design
Budget: $30 - $250 USD
28-Apr-2024
21:55 GMT
Création de logo
Category: 3D Design, Graphic Design, Illustration, Logo Design, Photoshop
Budget: $30 - $250 USD
28-Apr-2024
21:55 GMT
rediseñar tienda web wordpress
Category: Graphic Design, HTML, PHP, Web Design, WordPress
Budget: €8 - €30 EUR
28-Apr-2024
21:54 GMT
Convert 2D Images into Realistic 3D Renderings
Category: 3D Animation, 3D Modelling, 3D Rendering, 3ds Max, Maya
Budget: £250 - £750 GBP
28-Apr-2024
21:53 GMT
Afinador para instrumentos musicales
Category: AI Mobile App Development, Mobile Development
Budget: $10 - $30 USD
28-Apr-2024
21:52 GMT
Modern & Minimalistic Nut Pouch Design
Category: Brochure Design, Corporate Identity, Covers & Packaging, Graphic Design, Logo Design
Budget: ₹1500 - ₹12500 INR
28-Apr-2024
21:52 GMT
Laravel and CodeIgniter System Menu Removal
Category: Codeigniter, Laravel, MySQL, PHP, Web Design
Budget: ₹600 - ₹1500 INR
28-Apr-2024
21:52 GMT
Browse All Projects
Projects by Skills ...
Projects for 'android'
Projects for 'ajax'
Projects for 'asp'
Projects for 'aspnet'
Projects for 'cms'
Projects for 'cpp'
Projects for 'csharp'
Projects for 'css'
Projects for 'delphi'
Projects for 'design'
Projects for 'drupal'
Projects for 'excel'
Projects for 'facebook'
Projects for 'flash'
Projects for 'html'
Projects for 'java'
Projects for 'javascript'
Projects for 'joomla'
Projects for 'iphone'
Projects for 'mysql'
Projects for 'photoshop'
Projects for 'php'
Projects for 'python'
Projects for 'ruby'
Projects for 'seo'
Projects for 'sql'
Projects for 'sysadm'
Projects for 'translate'
Projects for 'typing'
Projects for 'twitter'
Projects for 'vbnet'
Projects for 'xml'
Projects for 'wordpress'
Projects for 'writing'
Read RSS feeds ... New!
RSS feed for 'android'
RSS feed for 'ajax'
RSS feed for 'asp'
RSS feed for 'aspnet'
RSS feed for 'cms'
RSS feed for 'cpp'
RSS feed for 'csharp'
RSS feed for 'css'
RSS feed for 'delphi'
RSS feed for 'design'
RSS feed for 'drupal'
RSS feed for 'excel'
RSS feed for 'facebook'
RSS feed for 'flash'
RSS feed for 'html'
RSS feed for 'java'
RSS feed for 'javascript'
RSS feed for 'joomla'
RSS feed for 'iphone'
RSS feed for 'mysql'
RSS feed for 'photoshop'
RSS feed for 'php'
RSS feed for 'python'
RSS feed for 'ruby'
RSS feed for 'seo'
RSS feed for 'sql'
RSS feed for 'sysadm'
RSS feed for 'translate'
RSS feed for 'typing'
RSS feed for 'twitter'
RSS feed for 'vbnet'
RSS feed for 'xml'
RSS feed for 'wordpress'
RSS feed for 'writing'
New!
Проекты на русском
(Projects in Russian)

Short URL:
1001fp.com
Mobile version:
m.1001freelanceprojects.com
Copyright © 2005-2022 1001 Freelance Projects