Jump to content

Increase front office security option


Recommended Posts

  • 2 weeks later...

Can someone please explain what this actually does? It just seems a bit mysterious.

Where can it potentially cause problems? I would like to focus my testing in those areas.

I'm worried it will cause lots of SSL / payment verification issues!

Link to comment
Share on other sites

  • 5 months later...

Hi noesac, when you enable this security option, in addition on COOKIE, Prestashop will check for a data called "token". This data will be sent to the server via GET or POST (in addition of COOKIE) when user does a cart operation (add,remove,checkout...)

 

This is not SSL at all, but pay attention to not use it if you have a static cache such as a squid proxy, because the token is stored on the HTML page itself !

 

Not sure its a bug, but even if you don't enable this function, the token is here, but not used !

Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...