[1.6.12] ssl Verbindung https bei Provider 1und1

MyOOS hat einen Fehler, oder tut nicht das, was Ihr erwartet? Derartige "Unanehmlichkeiten" bitte hier.
Antworten
Donee
Beiträge: 4
Registriert: 21.10.2008, 11:07
Kontaktdaten:

Beitrag von Donee »

Hallo

ich habe mir mal die Shop Version 1.6.12 gegönnt und bei 1und1 abgelegt und installiert.

Bei 1und1 ist es aber so, dass die https-Abfrage nich "on" sondern "1" als Ergebnis zurück gibt. Somit klappts nicht gleich auf anhieb mit der gesicherten Verbindung.

Was ich rausfand: 5 files sind betroffen: Abfrage: ('HTTPS')) == 'on'

Bei den files

function_kernel.php (Zeile 52)
oos_main.php (Zeile 71)

ist die zusätzliche Zeile schon drin: || (oos_server_get_var('HTTPS') == '1')

aber erst nachdem ich die files

function_server.php (in: /admin/includes/functons) Zeile 112: || oosServerHasVar('HTTPS') == '1'
function_server.php (in: /includes/functons) Zeile 112: || oosServerHasVar('HTTPS') == '1'
function.formtool_init.php Zeile 40: || oos_server_has_var('HTTPS') == '1'

vervollständigt habe, funktioniert die ssl-Verbindung richtig.

Vielleicht hilft das jemanden! :lol:

CIAO
r23
Beiträge: 2625
Registriert: 18.09.2008, 05:56
Wohnort: Hagen
Kontaktdaten:

Beitrag von r23 »

und bei 1und1 abgelegt und installiert.
keine gute Idee - ich würde den wechsel zu einem Provider empfehlen?

Oder stellt 1&1 nun tägliche Datensicherungen zur Verfügung?
Ist der Suppport erreichbar?

Wer HTTPS == '1' konfiguriert macht noch andere Sachen falsch.


cu

ralf
r23
Beiträge: 2625
Registriert: 18.09.2008, 05:56
Wohnort: Hagen
Kontaktdaten:

Beitrag von r23 »

aber erst nachdem ich die files

function_server.php (in: /admin/includes/functons) Zeile 112: || oosServerHasVar('HTTPS') == '1'
function_server.php (in: /includes/functons) Zeile 112: || oosServerHasVar('HTTPS') == '1'
function.formtool_init.php Zeile 40: || oos_server_has_var('HTTPS') == '1'

vervollständigt habe, funktioniert die ssl-Verbindung richtig.
wir nehmen dies in die 1.6. auf...

wobei es noch einige stellen im admin bereich gibt, die mit getenv('HTTPS') == 'on' prüfen. dies werde ich vermutlich nur
noch in der 1.7.x ändern.

danke für den hinweis.

hier eine Liste aller Dateien mit 'HTTPS'





Suchen nach: HTTPS
pdf.php(65): $temp_chec = OOS_HTTP_SERVER.OOS_HTTPS_SERVER;
admin\backup.php(463): $contents[] = array('text' => '
' . oosDrawCheckboxField('download', 'yes') . ' ' . TEXT_INFO_DOWNLOAD_ONLY . '*

*' . TEXT_INFO_BEST_THROUGH_HTTPS);
admin\backup.php(465): $contents[] = array('text' => '
' . oosDrawRadioField('download', 'yes', true) . ' ' . TEXT_INFO_DOWNLOAD_ONLY . '*

*' . TEXT_INFO_BEST_THROUGH_HTTPS);
admin\backup.php(482): $contents[] = array('text' => TEXT_INFO_RESTORE_LOCAL . '

' . TEXT_INFO_BEST_THROUGH_HTTPS);
admin\index.php(256): if ( (oosServerGetVar('HTTPS') == 'on') || (oosServerGetVar('HTTPS') == '1') ) {
admin\popup_image_news.php(31): <base href="<?php echo (getenv('HTTPS') == 'on' ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . OOS_SHOP; ?>">
admin\popup_image_product.php(31): <base href="<?php echo (getenv('HTTPS') == 'on' ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . OOS_SHOP; ?>">
admin\popup_subimage_product.php(31): <base href="<?php echo (getenv('HTTPS') == 'on' ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . OOS_SHOP; ?>">
admin\includes\config.php(25): define('OOS_HTTPS_SHOP_SERVER', 'https://localhost');
admin\includes\config-old.php(25): define('OOS_HTTPS_SHOP_SERVER', '');
admin\includes\classes\fckeditor\_whatsnew.html(106): BUG-1490259</a>] No more security warning on IE over HTTPS.
admin\includes\classes\fckeditor\_whatsnew.html(773): BUG-1290610</a> ] Over HTTPS, there were some warnings when loading the Images,
admin\includes\classes\fckeditor\_whatsnew.html(951): over HTTPS.
admin\includes\classes\fckeditor\_whatsnew.html(1340): when using the editor over HTTPS. Thanks to Guillermo Bozovich.
admin\includes\classes\fckeditor\editor\filemanager\browser\mcpuk\connectors\php\config.php(24): $fckphp_config['prot].=((isset($_SERVER['HTTPS])&&$_SERVER['HTTPS]=='on')?"s":"");
admin\includes\classes\fckeditor\editor\filemanager\browser\mcpuk\connectors\php\testme.php.suspended(100): $uri="http".(((isset($_SERVER['HTTPS]))&&(strtolower($_SERVER['HTTPS])!='off'))?"s":"")."://".$_SERVER['SERVER_NAME].dirname($_SERVER['SCRIPT_NAME])."/";
admin\includes\classes\fckeditor\_docs\whatsnew.html(287): this way we avoid security warnings when using the editor over HTTPS. Thanks to
admin\includes\functions\function_output.php(50): $link = OOS_HTTPS_SERVER . OOS_ADMIN;
admin\includes\functions\function_output.php(83): $link = OOS_HTTPS_SHOP_SERVER . OOS_SHOP;
admin\includes\functions\function_server.php(111): if (strtolower(oosServerHasVar('HTTPS')) == 'on'
admin\includes\languages\deu\backup.php(44): define('TEXT_INFO_BEST_THROUGH_HTTPS', 'Sichere HTTPS Verbindung verwenden!');
admin\includes\languages\eng\backup.php(45): define('TEXT_INFO_BEST_THROUGH_HTTPS', 'Best through a HTTPS connection');
admin\includes\languages\nld\backup.php(44): define('TEXT_INFO_BEST_THROUGH_HTTPS', 'Veilige HTTPS verbinding gebruiken!');
admin\includes\languages\rus\backup.php(43): define('TEXT_INFO_BEST_THROUGH_HTTPS', 'Íàèëó÷øèé âàðèàíò - ñâÿçü ÷åðåç HTTPS');
admin\includes\languages\spa\backup.php(45): define('TEXT_INFO_BEST_THROUGH_HTTPS', 'Preferiblemente con una conexion segura');
install\gui.php(136): ' <td align="left"><font class="oos-normal">HTTPS SERVER</font></td>' . "\n" .
install\gui.php(755): printf(ERROR_NO_HTTPS_SERVER,
install\gui.php(839): ' <td align="left"><font class="oos-normal">HTTPS SERVER</font></td>' . "\n" .
install\gui.php(909): ' <td align="left"><font class="oos-normal">HTTPS SERVER</font></td>' . "\n" .
install\modify_config.php(123): define('OOS_HTTPS_SERVER', '$oos_ssl_server');

install\modify_config.php(151): define('OOS_HTTPS_SHOP_SERVER', '$oos_ssl_server');

install\modify_config.php(178): add_src_rep("OOS_HTTPS_SERVER", $oos_ssl_server);
install\modify_config.php(226): add_src_rep("OOS_HTTPS_SHOP_SERVER", $oos_ssl_server);
install\locales\de_DE.iso-8859-15\global.php(157): define('ERROR_NO_HTTPS_SERVER', 'Fehler: Server %s existiert nicht.');
install\locales\en_US.iso-8859-15\global.php(152): define('ERROR_NO_HTTPS_SERVER', 'Error: Server %s does not exist');
install\locales\nl_NL.iso-8859-15\global.php(158): define('ERROR_NO_HTTPS_SERVER', 'Error: Server %s does not exist');
includes\config.php(32): define('OOS_HTTPS_SERVER', 'https://localhost'); // No trailing slash
includes\config-old.php(32): define('OOS_HTTPS_SERVER', ''); // No trailing slash
includes\oos_main.php(70): if (strtolower(oos_server_get_var('HTTPS')) == 'on'
includes\oos_main.php(71): || (oos_server_get_var('HTTPS') == '1')
includes\oos_system.php(109): $smarty->assign('oos_base', (($request_type == 'SSL') ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . OOS_SHOP);
includes\classes\nusoap\lib\changelog.txt(28): - soap_transport_http: fix setCredentials and add TODO comments in sendHTTPS about what to change if this setCredentials stays
includes\classes\nusoap\lib\changelog.txt(168): - soap_transport_http: allow response timeout to be specified in send and sendHTTPS
includes\classes\nusoap\lib\class.soap_server.php(734): if (isset($_SERVER['HTTPS])) {
includes\classes\nusoap\lib\class.soap_server.php(735): $HTTPS = $_SERVER['HTTPS];
includes\classes\nusoap\lib\class.soap_server.php(736): } elseif (isset($GLOBALS['HTTPS])) {
includes\classes\nusoap\lib\class.soap_server.php(737): $HTTPS = $GLOBALS['HTTPS];
includes\classes\nusoap\lib\class.soap_server.php(739): $HTTPS = '0';
includes\classes\nusoap\lib\class.soap_server.php(741): if ($HTTPS == '1' || $HTTPS == 'on') {
includes\classes\nusoap\lib\class.soap_transport_http.php(31): * transport class for sending/receiving data via HTTP and HTTPS
includes\classes\nusoap\lib\class.soap_transport_http.php(32): * NOTE: PHP must be compiled with the CURL extension for HTTPS support
includes\classes\nusoap\lib\class.soap_transport_http.php(161): $this->setError('CURL Extension, or OpenSSL extension w/ PHP version >= 4.3 is required for HTTPS');
includes\classes\nusoap\lib\class.soap_transport_http.php(259): * send the SOAP message via HTTPS 1.0 using CURL
includes\classes\nusoap\lib\class.soap_transport_http.php(267): function sendHTTPS($data, $timeout=0, $response_timeout=30) {
includes\classes\nusoap\lib\class.soapclient.php(374): $this->responseData = $http->sendHTTPS($msg,$timeout,$response_timeout);
includes\classes\nusoap\lib\class.soapclient.php(376): $this->setError('CURL Extension, or OpenSSL extension w/ PHP version >= 4.3 is required for HTTPS');
includes\classes\nusoap\lib\nusoap.php(1630): * transport class for sending/receiving data via HTTP and HTTPS
includes\classes\nusoap\lib\nusoap.php(1631): * NOTE: PHP must be compiled with the CURL extension for HTTPS support
includes\classes\nusoap\lib\nusoap.php(1760): $this->setError('CURL Extension, or OpenSSL extension w/ PHP version >= 4.3 is required for HTTPS');
includes\classes\nusoap\lib\nusoap.php(1858): * send the SOAP message via HTTPS 1.0 using CURL
includes\classes\nusoap\lib\nusoap.php(1866): function sendHTTPS($data, $timeout=0, $response_timeout=30) {
includes\classes\nusoap\lib\nusoap.php(3135): if (isset($_SERVER['HTTPS])) {
includes\classes\nusoap\lib\nusoap.php(3136): $HTTPS = $_SERVER['HTTPS];
includes\classes\nusoap\lib\nusoap.php(3137): } elseif (isset($GLOBALS['HTTPS])) {
includes\classes\nusoap\lib\nusoap.php(3138): $HTTPS = $GLOBALS['HTTPS];
includes\classes\nusoap\lib\nusoap.php(3140): $HTTPS = '0';
includes\classes\nusoap\lib\nusoap.php(3142): if ($HTTPS == '1' || $HTTPS == 'on') {
includes\classes\nusoap\lib\nusoap.php(5497): $this->responseData = $http->sendHTTPS($msg,$timeout,$response_timeout);
includes\classes\nusoap\lib\nusoap.php(5499): $this->setError('CURL Extension, or OpenSSL extension w/ PHP version >= 4.3 is required for HTTPS');
includes\classes\smarty\libs\plugins\function.formtool_init.php(39): if (strtolower(oos_server_has_var('HTTPS')) == 'on'
includes\classes\smarty\libs\plugins\function.formtool_init.php(48): $link = OOS_HTTPS_SERVER . OOS_SHOP . OOS_JAVASCRIPT;
includes\classes\smarty\libs\plugins\function.html_href_link.php(114): $link = OOS_HTTPS_SERVER . OOS_SHOP;
includes\classes\smarty\libs\plugins\function.html_href_link.php(136): // Add the session ID when moving from HTTP and HTTPS servers or when SID is defined
includes\classes\smarty\libs\plugins\function.htmldoc_link.php(87): $doc_link = OOS_HTTPS_SERVER . OOS_SHOP;
includes\classes\smarty\libs\plugins\function.htmldoc_link.php(107): // Add the session ID when moving from HTTP and HTTPS servers or when SID is defined
includes\functions\function_kernel.php(52): if (strtolower(oos_server_get_var('HTTPS')) == 'on' || (oos_server_get_var('HTTPS') == '1') || oos_server_has_var('SSL_PROTOCOL')) { // We are loading an SSL page
includes\functions\function_kernel.php(54): $sUrl = OOS_HTTPS_SERVER . substr($sUrl, strlen(OOS_HTTP_SERVER)); // Change it to SSL
includes\functions\function_output.php(58): $link = OOS_HTTPS_SERVER . OOS_SHOP;
includes\functions\function_output.php(75): // Add the session ID when moving from HTTP and HTTPS servers or when SID is defined
includes\functions\function_server.php(111): if (strtolower(oos_server_has_var('HTTPS')) == 'on'
includes\pages\affiliate\help1.php(43): $smarty->assign('oos_base', (($request_type == 'SSL') ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . OOS_SHOP);
includes\pages\affiliate\help2.php(43): $smarty->assign('oos_base', (($request_type == 'SSL') ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . OOS_SHOP);
includes\pages\affiliate\help3.php(42): $smarty->assign('oos_base', (($request_type == 'SSL') ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . OOS_SHOP);
includes\pages\affiliate\help4.php(43): $smarty->assign('oos_base', (($request_type == 'SSL') ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . OOS_SHOP);
includes\pages\affiliate\help5.php(43): $smarty->assign('oos_base', (($request_type == 'SSL') ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . OOS_SHOP);
includes\pages\affiliate\help6.php(43): $smarty->assign('oos_base', (($request_type == 'SSL') ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . OOS_SHOP);
includes\pages\affiliate\help7.php(41): $smarty->assign('oos_base', (($request_type == 'SSL') ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . OOS_SHOP);
includes\pages\affiliate\help8.php(42): $smarty->assign('oos_base', (($request_type == 'SSL') ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . OOS_SHOP);
includes\pages\checkout\payment.php(115): $condition_link = OOS_HTTPS_SERVER;
includes\pages\gv\popup_coupon_help.php(132): $smarty->assign('oos_base', (($request_type == 'SSL') ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . OOS_SHOP);
includes\pages\links\popup_links_help.php(43): $smarty->assign('oos_base', (($request_type == 'SSL') ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . OOS_SHOP);
includes\pages\main\info_autologon.php(38): $smarty->assign('oos_base', (($request_type == 'SSL') ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . OOS_SHOP);
includes\pages\main\info_shopping_cart.php(37): $smarty->assign('oos_base', (($request_type == 'SSL') ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . OOS_SHOP);
includes\pages\products\popup_image.php(136): $smarty->assign('oos_base', (($request_type == 'SSL') ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . OOS_SHOP);
includes\pages\products\popup_print.php(125): $smarty->assign('oos_base', (($request_type == 'SSL') ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . OOS_SHOP);
includes\pages\search\popup_help.php(37): $smarty->assign('oos_base', (($request_type == 'SSL') ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . OOS_SHOP);
includes\pages\user\account_edit_process.php(304): $cookie_url_array = parse_url((ENABLE_SSL == true ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . substr(OOS_SHOP, 0, -1));
includes\pages\user\account_edit_process.php(306): setcookie('email_address', $email_address, time()+ (365 * 24 * 3600), $cookie_path, '', ((getenv('HTTPS') == 'on') ? 1 : 0));
includes\pages\user\account_edit_process.php(307): setcookie('password', $new_encrypted_password, time()+ (365 * 24 * 3600), $cookie_path, '', ((getenv('HTTPS') == 'on') ? 1 : 0));
includes\pages\user\login.php(69): $cookie_url_array = parse_url((ENABLE_SSL == true ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . substr(OOS_SHOP, 0, -1));
includes\pages\user\login.php(76): setcookie('email_address', $email_address, time()+ (365 * 24 * 3600), $cookie_path, '', ((getenv('HTTPS') == 'on') ? 1 : 0));
includes\pages\user\login.php(77): setcookie('password', $check_customer['customers_password], time()+ (365 * 24 * 3600), $cookie_path, '', ((getenv('HTTPS') == 'on') ? 1 : 0));
includes\pages\user\logoff.php(31): $cookie_url_array = parse_url((ENABLE_SSL == true ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . substr(OOS_SHOP, 0, -1));
includes\plugins\oos_event_autologon\oos_event_autologon.php(96): $cookie_url_array = parse_url((ENABLE_SSL == true ? OOS_HTTPS_SERVER : OOS_HTTP_SERVER) . substr(OOS_SHOP, 0, -1));
includes\plugins\oos_event_autologon\oos_event_autologon.php(139): setcookie('email_address', $email_address, time()+ (365 * 24 * 3600), $cookie_path, '', ((getenv('HTTPS') == 'on') ? 1 : 0));
includes\plugins\oos_event_autologon\oos_event_autologon.php(140): setcookie('password', $check_customer['customers_password], time()+ (365 * 24 * 3600), $cookie_path, '', ((getenv('HTTPS') == 'on') ? 1 : 0));
includes\plugins\oos_event_session\oos_event_session.php(93): $https_domain = oos_server_get_top_level_domain(OOS_HTTPS_SERVER);
Es wurden 107 Vorkommen in 60 Datei(en) gefunden.
Donee
Beiträge: 4
Registriert: 21.10.2008, 11:07
Kontaktdaten:

Beitrag von Donee »

keine gute Idee - ich würde den wechsel zu einem Provider empfehlen?

Oder stellt 1&1 nun tägliche Datensicherungen zur Verfügung?
Ist der Suppport erreichbar?

Wer HTTPS == '1' konfiguriert macht noch andere Sachen falsch.


cu

ralf
Hi,

gibt es bei 1&1 schlechte Erfahrungen ??

Ich hatte bis jetzt noch keine. Der Support ist per Email kostenlos erreichbar. Dauert nur ca. einen halben Tag bis die Antwort kommt. Sichern tue ich meine Sachen eh selber. Zwar nich jeden Tag, aber nach größeren Änderungen.

Dennoch; hast du eine Empfehlung eines besseren Provider?

CIAO

Donee
Antworten