Paynet Direct - Scary security warning in MSIE

Author Message

Håvard Bell

Thursday 10 November 2005 1:19:51 pm

Hi!

We have purchased the Paynet Direct solution. We are very happy with the way it looks so far, except for one major concern:

In MSIE, after a user has entered his credit card information, and pushed the purchase button, he gets the following message from MSIE: "You are about to be redirected to a connection that is not secure. The information you are sending to the current site might be retransmitted to a nonsecure site. Do you wish to continue?"

To a novice, this is a scary message after you have just sent of your dear creditcard number.

In Firefox, this message does not, which is correct, appear. We know that the information is not transmitted to the non secure connection. To bad MSIE do not know this...

Does anybody have any solution to this. Does someone from the eZ Crew know about this, or better, have a solution?

Thanks for any input!

~ Hav.

Raymond Bosman

Friday 11 November 2005 1:22:48 am

Hi Håvard,

We are aware of this problem. One way to solve it, is to keep the connection secure until the order overview page. Any link from there should redirect the user to a non-secure page.

We hope to include this solution in the next eZ publish and Paynet direct release.

Raymond.

Håvard Bell

Friday 11 November 2005 2:07:41 am

Hi Raymond,

Thanks for the reply.

This was the solution I thought of as well, but were unable to locate the right place in the PHP code. Would you know which file this redirect happens?

Thanks,

~ Hav.

Raymond Bosman

Friday 11 November 2005 2:44:59 am

The redirection from secure to non-secure and vice-versa, happens in the file:

eventtypes/paynet/ezpaynetdirect/ezpaynetdirecttype.php

Remember that the execute() method in this file is called by the workflow process.

Good luck,
Raymond.

Powered by eZ Publish™ CMS Open Source Web Content Management. Copyright © 1999-2014 eZ Systems AS (except where otherwise noted). All rights reserved.

eZ debug

Timing: Jan 18 2025 22:13:52
Script start
Timing: Jan 18 2025 22:13:52
Module start 'layout'
Timing: Jan 18 2025 22:13:52
Module start 'content'
Timing: Jan 18 2025 22:13:53
Module end 'content'
Timing: Jan 18 2025 22:13:53
Script end

Main resources:

Total runtime0.5161 sec
Peak memory usage4,096.0000 KB
Database Queries60

Timing points:

CheckpointStart (sec)Duration (sec)Memory at start (KB)Memory used (KB)
Script start 0.00000.0066 589.1563152.6406
Module start 'layout' 0.00660.0033 741.796939.4766
Module start 'content' 0.00990.5047 781.2734477.0469
Module end 'content' 0.51460.0014 1,258.320312.1250
Script end 0.5160  1,270.4453 

Time accumulators:

 Accumulator Duration (sec) Duration (%) Count Average (sec)
Ini load
Load cache0.00350.6706160.0002
Check MTime0.00150.2868160.0001
Mysql Total
Database connection0.00120.229210.0012
Mysqli_queries0.462589.6209600.0077
Looping result0.00050.0981580.0000
Template Total0.484193.820.2421
Template load0.00200.378420.0010
Template processing0.482193.429620.2411
Template load and register function0.00020.036810.0002
states
state_id_array0.00130.260110.0013
state_identifier_array0.00070.132220.0003
Override
Cache load0.00160.3167280.0001
Sytem overhead
Fetch class attribute can translate value0.00060.117220.0003
Fetch class attribute name0.00100.201540.0003
XML
Image XML parsing0.00020.042220.0001
class_abstraction
Instantiating content class attribute0.00000.001340.0000
General
dbfile0.00190.3712100.0002
String conversion0.00000.003740.0000
Note: percentages do not add up to 100% because some accumulators overlap

Templates used to render the page:

UsageRequested templateTemplateTemplate loadedEditOverride
1node/view/full.tplfull/forum_topic.tplextension/sevenx/design/simple/override/templates/full/forum_topic.tplEdit templateOverride template
4content/datatype/view/ezxmltext.tpl<No override>extension/community_design/design/suncana/templates/content/datatype/view/ezxmltext.tplEdit templateOverride template
5content/datatype/view/ezxmltags/paragraph.tpl<No override>extension/ezwebin/design/ezwebin/templates/content/datatype/view/ezxmltags/paragraph.tplEdit templateOverride template
1content/datatype/view/ezxmltags/line.tpl<No override>design/standard/templates/content/datatype/view/ezxmltags/line.tplEdit templateOverride template
1print_pagelayout.tpl<No override>extension/community/design/community/templates/print_pagelayout.tplEdit templateOverride template
 Number of times templates used: 12
 Number of unique templates used: 5

Time used to render debug report: 0.0001 secs