Results 1 to 6 of 6
  1. #1
    Join Date
    Apr 2006
    Location
    Texas
    Posts
    39
    Plugin Contributions
    0

    Default Home page blank when testing with frame breaker

    Hope somebody can help. I'm running the newest version 1.5.5e with the following plugins:
    snap affiliates
    ultimate urls
    testimonial manager
    monthly sales manager
    simple google analytics

    The site works fine when you type the url in your browser. The problem is I use solo ads to promote and when I click to test if my site breaks frames it shows a blank page.

    My site: http://www.etrafficgenius.com

    You can see what I'm talking about by going here and enter my url:
    http://vitaladviews.com/framebreaktest.html

    I was thinking it might be a .htaccess issue. I tried renaming the .htaccess but it did not help, it just causes the ultimate urls to not work.

    Any help is really appreciated.

  2. #2
    Join Date
    Jul 2012
    Posts
    16,740
    Plugin Contributions
    17

    Default Re: Home page blank when testing with frame breaker

    Quote Originally Posted by godin5150 View Post
    when I click to test if my site breaks frames it shows a blank page.
    I don't recall all the explanation/details, but basically this was a feature added to ZC 1.5.5 to prevent spoofing the website or allowing user data entry to be "processed" through another's site and appear as if still only on the site expected. Meaning, you are seeing what is expected/as designed.

    Basically, ZC is not intended to be run through a frame.
    ZC Installation/Maintenance Support <- Site
    Contribution for contributions welcome...

  3. #3
    Join Date
    Apr 2006
    Location
    Texas
    Posts
    39
    Plugin Contributions
    0

    Default Re: Home page blank when testing with frame breaker

    Quote Originally Posted by mc12345678 View Post
    I don't recall all the explanation/details, but basically this was a feature added to ZC 1.5.5 to prevent spoofing the website or allowing user data entry to be "processed" through another's site and appear as if still only on the site expected. Meaning, you are seeing what is expected/as designed.

    Basically, ZC is not intended to be run through a frame.
    That's good to know. So to make life easier I should revert back to my older version install 1.5.3
    I know it works on that.. Weird but good to know moving forward.

  4. #4
    Join Date
    Jan 2004
    Posts
    66,379
    Blog Entries
    7
    Plugin Contributions
    274

    Default Re: Home page blank when testing with frame breaker

    Quote Originally Posted by godin5150 View Post
    That's good to know. So to make life easier I should revert back to my older version install 1.5.3
    I know it works on that.. Weird but good to know moving forward.
    Reverting is a bad idea.

    If you have thoroughly studied EXACTLY why removing the best-practice configuration of protecting against the widely-understood-as-bad use of frames for e-commerce and payment processing, and sites which store customers identity information, then go ahead and remove the one line from html_header.php for X-Frame-Options BUT ONLY IF you've become an expert in all matters of security.

    Most stores are asking "how do I ADD" the protection, NEVER how to remove it.

    And all site-security scanners will object to the removal of the protection.

    Just keep these things in mind when going in a non-standard non-recommended direction.
    .

    Zen Cart - putting the dream of business ownership within reach of anyone!
    Donate to: DrByte directly or to the Zen Cart team as a whole

    Remember: Any code suggestions you see here are merely suggestions. You assume full responsibility for your use of any such suggestions, including any impact ANY alterations you make to your site may have on your PCI compliance.
    Furthermore, any advice you see here about PCI matters is merely an opinion, and should not be relied upon as "official". Official PCI information should be obtained from the PCI Security Council directly or from one of their authorized Assessors.

  5. #5
    Join Date
    Jul 2012
    Posts
    16,740
    Plugin Contributions
    17

    Default Re: Home page blank when testing with frame breaker

    Quote Originally Posted by godin5150 View Post
    That's good to know. So to make life easier I should revert back to my older version install 1.5.3
    I know it works on that.. Weird but good to know moving forward.

    Yeah, what he said...



    No, I wouldn't suggest reverting. DrByte has posted somewhere about the specific line(s) involved but I thought the majority of the code was in the html_header.php file for the common template directory associated with the latest version. There might be another location that also needs to be modified to support, but be sure you understand the potential security issues to you and more importantly to your customers introduced by undoing that protection.

    Also, as far as reverting: if the database has already been upgraded, there's not really a downgrade option.
    Last edited by mc12345678; 31 Jul 2017 at 01:07 AM.
    ZC Installation/Maintenance Support <- Site
    Contribution for contributions welcome...

  6. #6
    Join Date
    Apr 2006
    Location
    Texas
    Posts
    39
    Plugin Contributions
    0

    Default Re: Home page blank when testing with frame breaker

    Thanks for the information. I will leave alone on the newer version.

 

 

Similar Threads

  1. v151 Issues with copying store to home server for testing/educational purposes
    By Ted Grapler in forum Installing on a Linux/Unix Server
    Replies: 10
    Last Post: 19 Nov 2015, 11:06 PM
  2. Frame needed for photos on home page?
    By brighteyedbambam in forum Templates, Stylesheets, Page Layout
    Replies: 3
    Last Post: 13 Jul 2010, 01:05 PM
  3. Help With Blank Page when adding to cart
    By jmelwak in forum Basic Configuration
    Replies: 3
    Last Post: 19 May 2009, 01:04 AM
  4. Blank page when 'home' is selected
    By pwgroger in forum Installing on a Linux/Unix Server
    Replies: 2
    Last Post: 30 Oct 2008, 05:06 PM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
disjunctive-egg
Zen-Cart, Internet Selling Services, Klamath Falls, OR