Results 1 to 7 of 7
  1. #1
    Join Date
    Nov 2006
    Posts
    57
    Plugin Contributions
    0

    help question annoying popups about non secure content

    Just finished upgrading from 1.3.8 to 1.5.

    Has anyone else experienced this: When going to cataloge, I get annoying popups about non secure content. This also happens on the product update pages every time it is called.

    As far as i remember only the admin - login page was ssl on 1.3.8?

    Only add on installed is the FKEditor: Ive compared source views and cannot see any images etc that are being called from HTTP. All are https. (that ive seen).

    Not a big deal, but it would be nice to click a little less.
    Also is there a way to extend the current 15 minutes inactive login count ...to say 30 minutes?

    Thx
    Last edited by this side up; 21 Feb 2012 at 08:30 AM.

  2. #2
    Join Date
    Nov 2006
    Posts
    57
    Plugin Contributions
    0

    Default Re: Admin - SSL - Every page?

    Not to worry, apologies - i found the answer to my question here: http://www.zen-cart.com/forum/showthread.php?t=192039

    It seems the default install when selecting https as active applies it to all the admin pages.

    : It's recommended that the Admin section be secure on all pages, but there is a setting in the configure file to allow an overide so that only the login page is https.

    I would prefer to have all pages https as recomended, but the images seem to be causing errors.

  3. #3
    Join Date
    Nov 2007
    Location
    Sunny Coast, Australia
    Posts
    3,379
    Plugin Contributions
    9

    Default Re: Admin - SSL - Every page?

    Quote Originally Posted by this side up View Post
    ......

    I would prefer to have all pages https as recomended, but the images seem to be causing errors.
    Store-internal images should be called as relative links (not hard coded). This way they will not produce errors on SSL pages.

    Images stored on other sites (eg PayPal, The Find etc) need to be called using https - not http

    To find the culprits, open a secure page which gives you the error(s) and then view the source. In the source do a search for 'http://' (minus my quotes) and see what comes up. Then change the hard coded image links which come from external sites to 'https://'

  4. #4
    Join Date
    Nov 2006
    Posts
    57
    Plugin Contributions
    0

    Default Re: annoying popups about non secure content

    Thanks Frank18. I found the images thats causing the problem, but i'm not sure how to fix it. On the Admin catalog and product update/product update confirm pages it seems the images that that are not secure are all my product images and the language icon (GB). When I select to display only content that is secure, it is these images that don't display and visa versa.

    This is not somthing I would expect under normal admin cart administration.

  5. #5
    Join Date
    Nov 2007
    Location
    Sunny Coast, Australia
    Posts
    3,379
    Plugin Contributions
    9

    Default Re: annoying popups about non secure content

    Please post a link to your site - or PM me the link.

  6. #6
    Join Date
    Jan 2004
    Posts
    66,373
    Blog Entries
    7
    Plugin Contributions
    274

    Default Re: annoying popups about non secure content

    Sounds like your admin's configure.php file contains incorrect settings for HTTP_CATALOG_SERVER, HTTPS_CATALOG_SERVER, DIR_WS_HTTP_CATALOG, DIR_WS_HTTPS_CATALOG, ENABLE_SSL_CATALOG.
    .

    Zen Cart - putting the dream of business ownership within reach of anyone!
    Donate to: DrByte directly or to the Zen Cart team as a whole

    Remember: Any code suggestions you see here are merely suggestions. You assume full responsibility for your use of any such suggestions, including any impact ANY alterations you make to your site may have on your PCI compliance.
    Furthermore, any advice you see here about PCI matters is merely an opinion, and should not be relied upon as "official". Official PCI information should be obtained from the PCI Security Council directly or from one of their authorized Assessors.

  7. #7
    Join Date
    Nov 2006
    Posts
    57
    Plugin Contributions
    0

    Default Re: annoying popups about non secure content

    Thank you so much to both. The problem is resolved.
    The issue was the result of 2 problems.

    1 - Incorrectly set admin configure file.
    2 - FKEditor calls a script from a non secure page on google.


    <script type="text/javascript" src="http://www.google.com/jsapi"></script> in the ckeditor.php file for the CKEditor module.

    I have changed the http: to https:.
    I hope that this has no unforseen consequances, but for now it seems to be functioning as it should.

    Thanks

 

 

Similar Threads

  1. v150 SSL warning mixed secure non-secure content
    By familynow in forum Basic Configuration
    Replies: 2
    Last Post: 1 Oct 2013, 04:13 PM
  2. Authorize.net SIM v1.3.9h Secure/Non-Secure content error
    By KevinH in forum Built-in Shipping and Payment Modules
    Replies: 1
    Last Post: 6 Oct 2012, 05:15 PM
  3. Annoying SSL browser security popups!! HELP!
    By kittykat in forum General Questions
    Replies: 3
    Last Post: 23 Sep 2010, 05:00 PM
  4. This page contains both secure and non-secure items?
    By doubletiger in forum General Questions
    Replies: 2
    Last Post: 11 Sep 2010, 01:16 PM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
disjunctive-egg
Zen-Cart, Internet Selling Services, Klamath Falls, OR