Bug Report Thread for B3 "hugo" RC Repository

Got problems with your B2 or B3? Share and get helped!
carl
Posts: 474
Joined: 07 May 2008, 04:41

Re: Bug Report Thread for B3 "hugo" RC Repository

Post by carl » 14 Jul 2011, 04:52

Found the issue in smb.conf now, and have fixed it.
/Carl Fürstenberg, Excito Software Developer
http://www.excito.com
support@excito.com

carl
Posts: 474
Joined: 07 May 2008, 04:41

Re: Bug Report Thread for B3 "hugo" RC Repository

Post by carl » 14 Jul 2011, 12:10

While digging around on Darrens B3; I noticed something that might be the cause of the album problem; The album depends on being able to access "http://localhost/admin/ajax_session/login" (note http, not https) for authentication. I decided back in the time that plain http was sufficient as we never left localhost.

This might be the cause of the problem, as I notice the he has disallowed normal access to http to the admin interface, and a localhost wget tried to grab "https://localhost/admin/index.php?//usr ... sion/login", which is plain wrong.

if you can find any reasons why I shouldn't use plain http here, I might change it, but then we might end up with the reverse problem instead :)
/Carl Fürstenberg, Excito Software Developer
http://www.excito.com
support@excito.com

RandomUsername
Posts: 904
Joined: 09 Oct 2009, 18:49

Re: Bug Report Thread for B3 "hugo" RC Repository

Post by RandomUsername » 14 Jul 2011, 12:35

I've no problem with using plain http on the albums but I wanted to force it when accessing things like the file manager and email. Can you find a way to allow both to work?

[EDIT]I suppose I wouldn't be comfortable logging in to the album viewer when over plain http though.

I just discovered that going straight to http://<mydomain>/album rather than navigating to it from /admin actually does seem to work which confirms Carl's theory.

IMO, the web interface should force https by default anyway as you're asking people to submit passwords over the internet.

RandomUsername
Posts: 904
Joined: 09 Oct 2009, 18:49

Re: Bug Report Thread for B3 "hugo" RC Repository

Post by RandomUsername » 29 Jul 2011, 13:14

Now that 2.3 has been released I thought I'd resurrect this issue regarding the photo albums (which are still broken for me).

@Carl, there is a debate going on in the forums over whether the admin interface should default to https anyway (only one vote against so far). Whilst that works itself out, as you saw a potential fix for my own situation could you let me in on the secret? It would be nice to have a functioning photo album whilst being able to maintain security. Curiously I had the same set up on the B2 and my photo albums worked fine.

Thanks.

Darren.

johannes
Posts: 1470
Joined: 31 Dec 2006, 07:12
Location: Sweden
Contact:

Re: Bug Report Thread for B3 "hugo" RC Repository

Post by johannes » 29 Jul 2011, 15:28

@Darren, the photo album bug is for investigation but we postponed it to 2.4 since the problem/solution was not easilly found out. Hope you can live with it for now..
/Johannes (Excito co-founder a long time ago, but now I'm just Johannes)

RandomUsername
Posts: 904
Joined: 09 Oct 2009, 18:49

Re: Bug Report Thread for B3 "hugo" RC Repository

Post by RandomUsername » 29 Jul 2011, 15:32

johannes wrote:@Darren, the photo album bug is for investigation but we postponed it to 2.4 since the problem/solution was not easilly found out. Hope you can live with it for now..
Guess I'll have to as I'm the one doing something non-standard.

Thanks.

Post Reply