https://www.bodhisattva-store.com/listings/
ZC 1.5.0
Hosting on GoDaddy VPS
Dedicated SHA-2 SSL certificate to: https://www.bodhisattva-store.com managed through GoDaddy
Added Forced SSL rules in .htaccess file...these are the only rules in the .htaccess file:
#Force SSL on entire site
RewriteEngine On
RewriteBase /
#RewriteCond %{ENV:HTTPS} !on [NC]
RewriteCond %{SERVER_PORT} 80
RewriteRule ^(.*)$ https://bodhisattva-store.com/$1 [R,L]
I have enabled SSL as directed in the post below:
https://www.zen-cart.com/content.php?56-how-do-i-enable-ssl-after-i-have-installed-zen-cart multiple times.
Made changes in Store folder listings/includes/configure.php
// Define the webserver and path parameters
// HTTP_SERVER is your Main webserver: eg-http://www.your_domain.com
// HTTPS_SERVER is your Secure webserver: eg-https://www.your_domain.com
define('HTTP_SERVER', 'http://www.bodhisattva-store.com');
define('HTTPS_SERVER', 'https://www.bodhisattva-store.com');
// Use secure webserver for checkout procedure?
define('ENABLE_SSL', 'true');
// NOTE: be sure to leave the trailing '/' at the end of these lines if you make changes!
// * DIR_WS_* = Webserver directories (virtual/URL)
// these paths are relative to top of your webspace ... (ie: under the public_html or httpdocs folder)
define('DIR_WS_CATALOG', '/listings/');
define('DIR_WS_HTTPS_CATALOG', '/listings/');
Made changes in Admin folder:
/listings/taras_workspace/includes/configure.php
/**
- WE RECOMMEND THAT YOU USE SSL PROTECTION FOR YOUR ENTIRE ADMIN:
- To do that, make sure you use a "https:" URL for BOTH the HTTP_SERVER and HTTPS_SERVER entries:
*/
define('HTTP_SERVER', 'http://www.bodhisattva-store.com');
define('HTTPS_SERVER', 'https://www.bodhisattva-store.com');
define('HTTP_CATALOG_SERVER', 'http://www.bodhisattva-store.com');
define('HTTPS_CATALOG_SERVER', 'https://www.bodhisattva-store.com');
// secure webserver for admin? Valid choices are 'true' or 'false' (including quotes).
define('ENABLE_SSL_ADMIN', 'true');
// secure webserver for storefront? Valid choices are 'true' or 'false' (including quotes).
define('ENABLE_SSL_CATALOG', 'true');
// NOTE: be sure to leave the trailing '/' at the end of these lines if you make changes!
// * DIR_WS_* = Webserver directories (virtual/URL)
// these paths are relative to top of your webspace ... (ie: under the public_html or httpdocs folder)
$t1 = parse_url(HTTP_SERVER);$p1 = $t1['path'];$t2 = parse_url(HTTPS_SERVER);$p2 = $t2['path'];
define('DIR_WS_ADMIN', preg_replace('#^' . str_replace('-', '-', $p1) . '#', '', dirname($_SERVER['SCRIPT_NAME'])) . '/');
define('DIR_WS_CATALOG', '/listings/');
define('DIR_WS_HTTPS_ADMIN', preg_replace('#^' . str_replace('-', '-', $p2) . '#', '', dirname($_SERVER['SCRIPT_NAME'])) . '/');
define('DIR_WS_HTTPS_CATALOG', '/listings/');
== What's Working ===
Site browses in full HTTPS:
In Chrome site is fully HTTPS
In Firefox site is fully HTTPS
== Issues ==
Issue 1: In Firefox ONLY site browses with no errors until you click an Add To Cart button.
A browser security warning is displayed that it will be sent over insecure connection.
Issue 2: In all browsers, when I browse to admin folder I can login, but when I attempt to access features
or make edits login screen appears and edits are not saved.
Completely frustrated after spending hours on this!