Results 1 to 3 of 3

Shared SSL - Lost Sessions

This is a discussion on Shared SSL - Lost Sessions within the osCmax v1.7 Discussion forums, part of the osCmax v1.7 Forums category; store is using a shared SSL certificate config contents as follows: Problem is that the session is lost as soon ...

      
  1. #1
    Active Member red_fraggle's Avatar
    Join Date
    Feb 2004
    Location
    wilmington, NC
    Posts
    343
    Rep Power
    8


    Default Shared SSL - Lost Sessions

    store is using a shared SSL certificate config contents as follows: Problem is that the session is lost as soon as it switches to Secure Mode, Any ideas?

    Code:
      define('HTTP_SERVER', 'http://www.nonsecureurl.com'); // eg, http://localhost - should not be empty for productive servers
      define('HTTPS_SERVER', 'https://www.secureurl.com/~stud'); // eg, https://localhost - should not be empty for productive servers
      define('ENABLE_SSL', true); // secure webserver for checkout procedure?
      define('HTTP_COOKIE_DOMAIN', 'nonsecureurl.com');
      define('HTTPS_COOKIE_DOMAIN', 'secureurl.com/~stud');
      define('HTTP_COOKIE_PATH', '/');
      define('HTTPS_COOKIE_PATH', '/');
      define('DIR_WS_HTTP_CATALOG', '/');
      define('DIR_WS_HTTPS_CATALOG', '/');
      define('DIR_WS_IMAGES', 'images/');
      define('DIR_WS_ICONS', DIR_WS_IMAGES . 'icons/');
      define('DIR_WS_INCLUDES', 'includes/');
      define('DIR_WS_BOXES', DIR_WS_INCLUDES . 'boxes/');
      define('DIR_WS_FUNCTIONS', DIR_WS_INCLUDES . 'functions/');
      define('DIR_WS_CLASSES', DIR_WS_INCLUDES . 'classes/');
      define('DIR_WS_MODULES', DIR_WS_INCLUDES . 'modules/');
      define('DIR_WS_LANGUAGES', DIR_WS_INCLUDES . 'languages/');
    
      define('DIR_WS_DOWNLOAD_PUBLIC', 'pub/');
      define('DIR_FS_CATALOG', '/home/stud/public_html/');
      define('DIR_FS_DOWNLOAD', DIR_FS_CATALOG . 'download/');
      define('DIR_FS_DOWNLOAD_PUBLIC', DIR_FS_CATALOG . 'pub/');

  2. #2
    osCMax Developer

    michael_s's Avatar
    Join Date
    Jul 2002
    Location
    Phoenix, AZ
    Posts
    19,500
    Rep Power
    567


    Default RE: Shared SSL - Lost Sessions

    This is incorrect:
    Code:
    define('HTTPS_COOKIE_DOMAIN', 'secureurl.com/~stud');
    It should be:

    Code:
    define('HTTPS_COOKIE_DOMAIN', 'secureurl.com');
    As the constant name implies, this should only be the https domain name, nothing more.
    Michael Sasek
    osCMax Developer


    osCmax installation service - Have our professionals install osCmax on your server - same day service!
    osCmax 2.0 User Manual - the must have beginners guide to osCmax v2.0

    Stay Up To Date with everything osCMax:
    Free osCMax Newsletters - Security notices, New Releases, osCMax News
    osCMax on Twitter - Up to the minute info as it happens. Know it first.

    osCmax Documentation

  3. #3
    Active Member red_fraggle's Avatar
    Join Date
    Feb 2004
    Location
    wilmington, NC
    Posts
    343
    Rep Power
    8


    Default RE: Shared SSL - Lost Sessions

    GAHHHHH .... ok newby mistake, thanks for pointing it out michael.....

Similar Threads

  1. Shared SSL question
    By hayesb2 in forum osCmax v1.7 Discussion
    Replies: 2
    Last Post: 09-05-2005, 08:59 AM
  2. shared SSL Help Please!
    By lil-raskals in forum osCommerce 2.2 Modification Help
    Replies: 2
    Last Post: 09-30-2004, 10:30 PM
  3. problem with shared SSL and sessions
    By eddman in forum osCommerce 2.2 Modification Help
    Replies: 3
    Last Post: 08-25-2004, 06:24 AM
  4. shared ssl setup
    By thesauce98 in forum osCmax v1.7 Discussion
    Replies: 2
    Last Post: 03-10-2004, 09:08 AM
  5. Shared SSL Help
    By Anonymous in forum osCommerce 2.2 Installation Help
    Replies: 13
    Last Post: 03-20-2003, 01:42 AM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •