I am experiencing an encryption problem when customers checkout of the store on my site. Essentially both secure and unsecure information is being displayed. In firefox and IE there are warnings that the page is only partially encrypted but for the life of me cannot figure out what information drupal could be pulling in via port 80 rather than 443. I know that my security certificate works, I have another subdirectory running dotprojekt which is set up securely and it is working fine. I have spent almost two weeks looking for similar problems on the drupal site and other sites, but nothing seems to mention this. This may be linked to another problem I posted as a discussion post here.

Comments

gordon’s picture

Status: Active » Closed (won't fix)

The problem is that you do not have Drupal or your theme confirgured correctly to work with SSL.

To configure Drupal correctly for SSL and non-SSL in the settings file you need to add the following

if ($_SERVER['HTTPS'] == 'on') {
  $base_url = 'https://www.example.com';
}
else {
  $base_url = 'http://www.example.com';
}

Otherwise your theme is not using all https urls. Generally I have found that this caused by flash being set up wrong.

mdwoodbury’s picture

Gordon, What settings file are you referring to here? It would be nice to know which file and where it is located. Is this still valid for Drupal 5?

brando4256’s picture

Component: paypalpro » ec_address
Priority: Normal » Critical
Status: Closed (won't fix) » Active

What settings do I change, I have the same problem and need to get it fixed ASAP!

xen’s picture

Priority: Critical » Minor
Status: Active » Closed (won't fix)

settings.php

jomorlo’s picture

Hi all,

that works for, but take care because on 1and1 hosting maybe you need to use this:

if ($_SERVER['HTTPS'] == '1') {
  $base_url = 'https://www.example.com';
}
else {
  $base_url = 'http://www.example.com';
}

Change 'on' to '1'.

Thanks!!