Have a domain, and I want to make a single Contact Us/Order page SSL. Have purchased the SSL certificate, put the domain on its own IP and it's ready to go. Now, how do I go about altering the page to be an SSL page. Do I simply call it as [url]? It makes some calls and loads a little SWF contact page from within it's own directory, and then shoots an email out to the contact email.
This will be the only page that ever needs an SSL on the whole site, so no worries in expanding it later.
I migrated domains from another server and they had separate http and https folders. Now I need to make them use same httpdocs for both http/https. How do I do it for a single domain? How do I batch do it for all domains?
We have recently launched a new website with a SSL homepage which houses our login. Our website moved to a new IP address, therefor we moved the certificate to the new server as well. Thus far, we have had NO problems with the site with the exception of 2 MAC users who's browser hangs when they try to navigate to the site now. They can access other HTTPS sites, and they can access pages on OUR site that are NOT HTTPS, but when trying to browse to our HTTPS Page, the browser hangs. This is not just ONE browser on their MAC, it's EVERY broswer on their machine (Firefox, IE, Safari). It connects, but then doesn't load anything onto the screen. We tried clearing their DNS cache on their machines with no avail. To this point, we are stumped. We have identical machines, with idential OS and browser versions and everything tests fine. It is obviously something on their machine, but we don't know what it is. We have run out of ideas. Any MAC users that can lend a hand here? Is there a way to delete the certificate on the MAC and have it redownload to the user?
Source site is very chaotic (static pages + wp pages) and there are no clear rule for redirection (no regex ).So I need to redirect every single page but syntax:
Redirect 301 esp.site.com/oldpage http:// es.site.com/newpage doesn't work!I think "esp.site.com" in source page is not acceptable syntax..which is the correct syntax ? Can I manage all from one .htaccess file in main root (www) or should I create "esp" directory (and point old subdomain to it - one for every language) and put .htaccess in every directory with redirection ?
I´ve read that a whole https website might be better for SEO than just a mixed version. So I want to change the whole website to https.
We are using Plesk 12 on Win 2008 R2. One Website is using DotNetNuke 7.3.2.
How can I automatically set the whole website to https?
What happens to the users that just type domainname.com without http or https.?
What is the right search engine friendly technique to permanently redirect to the https version even when the user is not using the application protocol prefix http/https?
Where can I do the setup in Plesk 12 fro Windows?
Are their any other drawbacks that I have to think over before I do the changes?
I have set up an Apache web server that has ssl enabled. If I go to https://myserver.com I get the 'it works!' page and the certificate is valid and trusted. If I go to https://myserver.com/myapp that also works (it's an Oracle weblogic deployed java app that I'm fronting with Apache).
I would like to configure Apache so that when a user goes to simply https://myserver.com it automatically directs them to https://myserver.com/myapp rather than showing the 'It works!' page. I have read some documentation and experimented with setting a redirect via the https.conf file and even the ssl.conf file but nothing seems to work. I either get a 404 or simply the 'It works! page.
I have a problem with my server. I am trying to make a subdomain, and it isn't working. I create it like how in all tutorials says here( click here ) . I completed all fields, but when i try to open the subdomain in a browser page, it's telling me, page not found / page doesn't exist. I have a dedicated server on window server 2008 for my website with a dedicated IP.
Right now my stats system only shows from what website traffic is coming. I have google analytics aswell, and with all its functions, it does not tell me from exactly what webpage traffic is coming, and to what webpage the traffic is coming to.
So, let say someone is sending me traffic from www.reffererxxx.com/cool_video.html to www.mysite.com/super_cool_video.html
My statistics would only show that www.reffererxxx.com is sending traffic to www.mysite.com
Is there a way(a script/service/program) to find out exactly from what webpage the traffic is coming, and to what webpage of mine the traffic is going to? (I do not have server logs / webalizer / awstats as my server cannot handle the log processing due to high server loads)
My website is currently running on http and the plesk control pannel is running on https
However the certificate for https for the plesk panel is out of date and self signed therefore web browsers promit its not valid.
I want to get a valid SSL certificate for https for Plesk, Client/Billing area and the main website.
I want to do it as easy as possiable (as I'm not one for technical stuff but if it was resoniable I could give it a go)
I dont want a self signed and want to try to go for something free or very cheap.
Any got any suggestions? I've looked around and come up with companys wanting alot of money I did come across another which was free but it was self signed.
Currently I have a URL that has HTTP. This has been given to the public. There is no doubt that they have added this URL to their favorites.
In about 2 weeks, I will be applying an SSL certificate that would add an ‘S’ to the HTTP (e.g. https)
My questions is: After applying this SSL certificate, which adds an “S”, will the link saved in my users’ favorites still work? Or do I have to add some HTML code that will redirect them?
I have installed SSL for the domain abc.com, for security reason I'd like make [url]is default for all access, that mean if the visitor type [url]on the browser, it will auto forward to[url]
I am maintaining a site that is totally on a secure folder. I have been asked to make only the things like the cart to be secure and to make the rest of the site non-secure.
there is an https and an http folder on the server all of the site is now on the https folder. I thought all I needed to do is move the pages I wanted to be non-secure to the http folder and then use an absolute address when I needed to refer betweem them.
I called my hosting people (the people who originally developer the site and made it all secure before handing to it me) and asked them about what all I need to do. they said its very complicated because I am dealing with 2 different root directories and didn't offer me much info on how to do it myself instead they just said if I can't figure it out they will do it for a price.
I have an SSL cert installed to have a secure commerce area. Some of the pages have external links to non-secure sites like say [url]The padlock icon breaks and warns that there's unauthorized content. The hosting provider says it's because the external links need to be https links. Obviously that can't be done to a non-secure external site.
So the question is: do external http links break security on a secure https page? If so, is there a work around other than removing external links?
I've just set up HTTPS on Apache (CentOS). However if I try to access the HTTPS site I just get prompted with the save as dialog to download either the .php file or .html. How do I get it to show (and process) it instead, like when accessing normally (non-ssl).
Is it possible to perform IDS/IPS on traffic that is SSL encrypted? I am setting up a secure Apache reverse proxy with a CISO ASA and a Citrix Netscalers in front of the reverse proxy.
Here's a "diagram" of my environment: Client --SSL--> Firewall --> Load Balancer --> Reverse Proxy [url] --SSL--> Portal Server [url]
I am trying to find a way to add additional security before traffic reaches the Portal Server. Also is it possible to add mod_security to the reverse proxy, since the traffic to the backend server is encrypted?
An old friend of mine wanted to get a vps so I made one from a dedicated and gave it to him. The only thing he has done is made it so the only ip allowed to connect to ssh is his. what are the pros and cons of hacking.exploiting with this.
if there is anyway to redirect my users to https no matter what page they are on using htaccess?
I really don't fancey using full url extentions and changing them on every link on my site. I can get the homepage to redirect to https but not any other.
If there is no way to do this does anyone know the shortest hyperlink to use the redirect?
Which hosting service currently offer Server Name Indication (SNI) support which allows one to use his/her own SSL certificate to enable https support without a dedicated IP...?
i have wrong procedure doing to enable my SSL/HTTPS services in my vps.
First i noticed the HTTPS in my services is not running, now i'm looking to google, i found openssl website, then download the latest version and install it into my server and following the instructions, after that, i try to recompile the apache becuase i have a new updates, i found an error ssl and cannot continue to compile because of my last installation i suspect.
One of the machines we have at LW crashed 2 weeks ago.
we use relative links for pages and images throughout our site, but now in the new machine, every relative link request gets sent to HTTPS instead of a regular HTTP request.
I have a reseller account on a Deasoft server (called NS2). Some of my clients can't open a secure connection for cPanel. After I'd made many suggestions (none of which helped) I took my PC to a user's home and tried and sure enough there was no response to the initial packet sent by the PC. This PC works fine at my home.
I then tried accessing another Deasoft server (called NS1) using both my PC and the user's PC and had no problems with either. So it looks like the problem is due to a difference with the setup of these servers rather than a user PC issue.
A trace (using EtherSnoop) showed no response to any attempted https access on NS2. But we had no problems with http or ftp to either server so I doubt it's a firewall block based on the user's address. One possibly significant difference between my connection at home and the users' connections is that I have a fixed IP address and they don't.
The forum software here prohibits me from including URLs here so I've had to record them below in a slightly obscure fashion.
I asked on the local forum and submitted a support ticket but both have been fruitless so far.
The URLs are : [url] [url] Access to NS1 is fine but not NS2.
My PHP script has an include statement. All works fine when I access the script using http. HOWEVER, when I access the exact same page using https, PHP complains that it fails to open the include file. I've checked and the include_path lists the correct dirs in both cases.
I keep hearing that redirecting from http to https is not very secure [non-SSL to SSL]. Among other reasons, one reason is that the browser may continue to think it is communicating with non secure server and may not encrypt the data. Is it true? I hope not, I am using the following -