Page 2 of 2 FirstFirst 12
Results 11 to 15 of 15
  1. #11
    Join Date
    Sep 2005
    Posts
    26
    Plugin Contributions
    1

    Default Re: Checkout Problems

    Another note: If i click the title of the "Shopping Cart [more]" sidebox, I'm taken to an UNSECURE version of the shopping cart. The unsecure vers. has the correct contents.

    Dont know if this is a problem, or by design... I could change the module myself and post the update if necessary...

  2. #12
    Join Date
    Sep 2005
    Posts
    26
    Plugin Contributions
    1

    Default Re: Checkout Problems

    Another Another note: If I refresh the "Security Check" page, i get the "Whoops! Your session has expired" page. Then I click "home" then try and login again, and I again get the "Security Check" page. Some minutes pass between these page presses (I am writing this message for one thing) but definetly not 24 minutes.

    Is it possible to make the login page always come up HTTPS??
    Last edited by theodin; 13 Aug 2006 at 09:31 PM.

  3. #13
    Join Date
    Jan 2004
    Posts
    66,446
    Plugin Contributions
    81

    Default Re: Checkout Problems

    You stated earlier that you have this:
    Check SSL Session ID True

    Change it to false.
    .

    Zen Cart - putting the dream of business ownership within reach of anyone!
    Donate to: DrByte directly or to the Zen Cart team as a whole

    Remember: Any code suggestions you see here are merely suggestions. You assume full responsibility for your use of any such suggestions, including any impact ANY alterations you make to your site may have on your PCI compliance.
    Furthermore, any advice you see here about PCI matters is merely an opinion, and should not be relied upon as "official". Official PCI information should be obtained from the PCI Security Council directly or from one of their authorized Assessors.

  4. #14
    Join Date
    Sep 2005
    Posts
    26
    Plugin Contributions
    1

    Default Re: Checkout Problems

    ok: I then have:

    Cookie Domain True
    Force Cookie Use False
    Check SSL Session ID False
    Check User Agent False
    Check IP Address False
    Prevent Spider Sessions True
    Recreate Session False
    IP to Host Conversion Status False

    Is this config dangerous in terms of hack attempts??

    Thanks again DrByte....

  5. #15
    Join Date
    Jan 2004
    Posts
    66,446
    Plugin Contributions
    81

    Default Re: Checkout Problems

    There is normally no need to change any of the sessions settings unless your hosting environment requires it (which is seldom).
    The only common exception would be the "recreate session" option which most PHP5 installations have a problem with, at least prior to v1.3.0.2 where a hack was implemented to work around a php5 bug.

    The defaults are:
    Code:
    Cookie Domain                 True   
    Force Cookie Use              False   
    Check SSL Session ID          False   
    Check User Agent              False   
    Check IP Address              False   
    Prevent Spider Sessions       True   
    Recreate Session              True   
    IP to Host Conversion Status  true
    .

    Zen Cart - putting the dream of business ownership within reach of anyone!
    Donate to: DrByte directly or to the Zen Cart team as a whole

    Remember: Any code suggestions you see here are merely suggestions. You assume full responsibility for your use of any such suggestions, including any impact ANY alterations you make to your site may have on your PCI compliance.
    Furthermore, any advice you see here about PCI matters is merely an opinion, and should not be relied upon as "official". Official PCI information should be obtained from the PCI Security Council directly or from one of their authorized Assessors.

 

 
Page 2 of 2 FirstFirst 12

Similar Threads

  1. Replies: 0
    Last Post: 5 Nov 2009, 06:17 PM
  2. Checkout problems
    By anguyen in forum PayPal Express Checkout support
    Replies: 1
    Last Post: 1 Jun 2007, 11:42 PM
  3. Checkout problems
    By stbede77 in forum Templates, Stylesheets, Page Layout
    Replies: 4
    Last Post: 30 Sep 2006, 07:44 AM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
disjunctive-egg