Zen Cart Logo
Forums / General Questions / Should All of Admin Area Be Secure?

Should All of Admin Area Be Secure?

Locked

Views: 1,145

Results 1 to 3 of 3
This thread is locked. New replies are disabled.
14 Nov 2006, 5:08 PM
#1
teebee2e avatar

teebee2e

New Zenner

Join Date:
Jun 2006
Posts:
14
Plugin Contributions:
0

Should All of Admin Area Be Secure?

I thought that the entire Admin area should be on the secure server, but only when I log into the admin does it show https://mystore.com/shopcart/admin
Then as soon as i am into the admin and am working on things it is back to http://mystore.com/shopcart/admin and I am working around in there thinking it should be secure.
The shopping cart log in secure server works fine for checkout and when signing up, stays behind the https:// but when working in admin it is in http:// all the time except while logging in. Doesnt this mean someone could see what was going on? I have configured everthing the way it said to configure the configure.php files under admin/incluedes/configure.php and the regulaer includes/configure.php and i have enable secure checkout bla bla bla and have my https://mystore.com defined everywhere it should. Shouldnt the admin area always be behind https:// once you log in???

14 Nov 2006, 5:10 PM
#2
teebee2e avatar

teebee2e

New Zenner

Join Date:
Jun 2006
Posts:
14
Plugin Contributions:
0

Re: Should All of Admin Area Be Secure?

p.s. those links above are not my real store domain name locations i just used them as an example.

15 Nov 2006, 4:47 AM
#3
ajeh avatar

ajeh

Oba-san

Join Date:
Sep 2003
Location:
Ohio
Posts:
62,757
Plugin Contributions:
1

Re: Should All of Admin Area Be Secure?

Currently ... the secure page for the Admin are for the login processes ...

This will be changed in a future release when the Admin is re-written ...