osCmax v2.5 User Manual
Results 1 to 10 of 10

forces me to turn on cookies - followed instructions - fail

This is a discussion on forces me to turn on cookies - followed instructions - fail within the osCmax v1.7 Discussion forums, part of the osCmax v1.7 Forums category; I get this Cookies must be enabled to purchase online on this store to embrace privacy and security related issues ...

      
  1. #1
    Lurker
    Join Date
    Aug 2003
    Posts
    4
    Rep Power
    0


    Default forces me to turn on cookies - followed instructions - fail

    I get this

    Cookies must be enabled to purchase online on this store to embrace privacy and security related issues regarding your visit to this site.

    By enabling cookie support on your browser, the communication between you and this site is strengthened to be certain it is you who are making transactions on your own behalf, and to prevent leakage of your privacy


    Followed instructions and then the above came up again - cannot get past

    running on localhost any problem?

  2. #2
    Anonymous
    Guest


    Default

    I had the same problem so I just turned it off

  3. #3
    osCMax Developer

    michael_s's Avatar
    Join Date
    Jul 2002
    Location
    Phoenix, AZ
    Posts
    19,907
    Rep Power
    568


    Default

    It is a problem with your cookie domain path. The easiest workaround on a test server is to turn of 'Force Cookies' in the admin under sessions.
    Michael Sasek
    osCMax Developer


    osCmax Installation Service
    - Have our professionals install osCmax on your server - same day service!
    osCmax 2.5 User Manual - the must have beginners guide to osCmax v2.5

    Stay Up To Date with everything osCMax:
    Free osCmax Newsletters - Security notices, New Releases, osCMax News
    osCmax on Twitter - Up to the minute info as it happens. Know it first.

    osCmax Documentation

  4. #4
    Lurker
    Join Date
    Aug 2003
    Posts
    4
    Rep Power
    0


    Default

    turned it off and it still asks!!!

  5. #5
    osCMax Developer

    michael_s's Avatar
    Join Date
    Jul 2002
    Location
    Phoenix, AZ
    Posts
    19,907
    Rep Power
    568


    Default

    Clear your browser cache, close all open browser windows. Then re-open your browser. It should work.
    Michael Sasek
    osCMax Developer


    osCmax Installation Service
    - Have our professionals install osCmax on your server - same day service!
    osCmax 2.5 User Manual - the must have beginners guide to osCmax v2.5

    Stay Up To Date with everything osCMax:
    Free osCmax Newsletters - Security notices, New Releases, osCMax News
    osCmax on Twitter - Up to the minute info as it happens. Know it first.

    osCmax Documentation

  6. #6
    Anonymous
    Guest


    Default

    A friend told me this may work, however it introduces the old sessions in URL bug/security flaw in that potential hackers can emulate somebody else's order, grab their card details, personal addresses, and other personal information.

    To what extend this statement is true? and how serious is it ?
    Scary
    TIA

  7. #7
    osCMax Developer

    michael_s's Avatar
    Join Date
    Jul 2002
    Location
    Phoenix, AZ
    Posts
    19,907
    Rep Power
    568


    Default

    Well, the risk is fairly low, especially if you move the session storage path to something in your restricted webspace (not web accessable). Yes there is a security risk with session ID's, but if you are using shared SSL, there is no other way, since the cookie domain changes, osCommerce will set 2 different cookies, and you will not be able to checkout, even if you get past the 'enable cookies' page.
    Michael Sasek
    osCMax Developer


    osCmax Installation Service
    - Have our professionals install osCmax on your server - same day service!
    osCmax 2.5 User Manual - the must have beginners guide to osCmax v2.5

    Stay Up To Date with everything osCMax:
    Free osCmax Newsletters - Security notices, New Releases, osCMax News
    osCmax on Twitter - Up to the minute info as it happens. Know it first.

    osCmax Documentation

  8. #8
    Anonymous
    Guest


    Default

    i do also hav this cookie problem, and it only cccurs when i use MS2-MAX but its not with 2.2 MS1 why is that so.

  9. #9
    Lurker
    Join Date
    Aug 2003
    Posts
    4
    Rep Power
    0


    Default

    i commented the following lines in \includes\application_top.php but still it is redirecting to cookie_usage.php page,why.

    //redirect the customer to a friendly cookie-must-be-enabled page if cookies are disabled
    // if ($session_started == false) {
    // tep_redirect(tep_href_link(FILENAME_COOKIE_USAGE)) ;
    //}

  10. #10
    osCMax Developer

    michael_s's Avatar
    Join Date
    Jul 2002
    Location
    Phoenix, AZ
    Posts
    19,907
    Rep Power
    568


    Default

    @guest - MS1 doesnt have cookie handling, so you cant have the problem

    @hussain - No need to edit code, just turn off 'force cookies' in the admin under : Configuration Sessions
    Michael Sasek
    osCMax Developer


    osCmax Installation Service
    - Have our professionals install osCmax on your server - same day service!
    osCmax 2.5 User Manual - the must have beginners guide to osCmax v2.5

    Stay Up To Date with everything osCMax:
    Free osCmax Newsletters - Security notices, New Releases, osCMax News
    osCmax on Twitter - Up to the minute info as it happens. Know it first.

    osCmax Documentation

Similar Threads

  1. Session Cookies and Cache Warnings
    By Plastic in forum osCmax v2 Installation issues
    Replies: 0
    Last Post: 12-04-2005, 05:30 PM
  2. Upgrade instructions for 2.0-2.0 RC2??
    By 909 in forum osCmax v2 Installation issues
    Replies: 5
    Last Post: 10-27-2005, 10:32 AM
  3. Installed Mod Instructions
    By rick in forum osCmax v1.7 Discussion
    Replies: 1
    Last Post: 12-27-2004, 08:12 AM
  4. Cookies and EU law
    By NickW in forum osCommerce 2.2 Installation Help
    Replies: 4
    Last Post: 01-13-2004, 08:19 AM
  5. cookies and sessions ID setting
    By Dumb_Question in forum osCmax v1.7 Discussion
    Replies: 3
    Last Post: 11-16-2003, 09:44 PM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •