Announcement

Collapse
No announcement yet.

Cookie error using accounts

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

    Cookie error using accounts

    Just logged in as my test customer account (to test something...), but after accepting my password and bringing up the homepage (with a message correctly identifying my name and that I am logged in) it then comes up with a cookie error if I try to go to any of the sections.

    The error is as follows-
    This shopping application requires permission to use cookies on your machine, but this has been denied.
    This can be for several different reasons, but they are all under your control:

    - you may have disallowed cookies altogether in your browser

    - you may have the privacy policy in your browser or internet security software/firewall set to a level that stops cookies from being used by this shopping site

    Cookies in this shopping application are used to keep track of your cart contents, remember names and addresses when you ask for them to be remembered and, when relevant, keep you logged on.

    Cookies are not used in any way that abuses your privacy or security.

    Please change your settings to allow cookies either in your browser or firewall. If you choose not to, I'm afraid that we cannot complete your request.
    and then it times out back to the log in screen...

    [to replicate the error, goto http://www.discount-aromatherapy.co.uk/login.html, login as test (pwd:testing), select essential oils and the error should appear.

    My firewall is set to allow everything to this site, it works fine when not logged in and my browser is set to 'accept all cookies' for all sites, so what gives?
    John

    #2
    I also have experienced this problem any thoughts?

    I am on Win XP Pro Service pack 2

    Comment


      #3
      Hi there

      I'm not getting any errors on your site. Maybe your have a corrupt session file. Try deleting your cookies from I.E, or simply go to "Help | Troubleshooting" and click on "Purge Session File".

      Kind Regards
      Nadeem Rasool
      SellerDeck Development

      Comment


        #4
        Hi John,

        can you please let me know how you managed to get the cookies working on your site as I have the same problem although I admit mine is nearly 3 years later and V8. I've also tried to log on with a freinds pc 5 miles away with the same result.
        I've searched the threads and yours is as close as I can find.
        I have done the troubleshooting | purge and also cookie delete a few times. I've checked 'Design | Text' ID of 355 and it has standard text only.
        I am running out of ideas.
        Can you help!

        The site is http://www.stitchfactory.co.uk
        login is test
        password is testing

        Regards Chris

        Comment


          #5
          Chris, if you look at John's site you'll see that he's stopped using SSL. That's certainly one way around the issue.

          I'm not 100% sure what the problem is here, but I suspect it's that the cookie is being written from http://sslrelay.com and therefor isn't readable from your own website domain (using the privacy settings in most browsers).

          If you lower your browsers privacy setting to allow 3rd party reading of cookies (i.e. #'low' in IE) then you'll see that it does work properly.

          With Actinic you can't have SSL on the checkout only without having it on the login page and this leaves you with only a few options:

          1. Use the shared SSL on every page. Not recommended as it will slow things down and still leaves you payment problems by not using a PSP.

          2. Move up to a 1and1 professional package that includes a dedicated SSL certificate (or stay on your existing package and buy one). You should still be using a PSP though.

          3. Don't use SSL and get yourself a PSP for payments rather than taking the details yourself.

          I personally use a dedicated SSL certificate on the checkout pages and use a PSP for payments. This isn't necessary and most people will tell you that option 3 is the best way to go.

          Mike
          -----------------------------------------

          First Tackle - Fly Fishing and Game Angling

          -----------------------------------------

          Comment


            #6
            Mike,

            many thanks, this is new to me so I have a bit of research to do as I thought you had to have a SSL to take payments securely.

            I hope setting up a site gets easier after this!

            Regards, Chris

            Comment


              #7
              SSL does secure the page that captures the CC details if you do it yourself, but the Credit Card industry has recognised that proper security involves far more than that. As a result they're introducing very stringent requirements on what happens after that. i.e. where and how the information is stored, who has access to it, how secure are your computers and the software you use, etc, etc.

              See this thread if you want to read up on it. http://community.actinic.com/showthread.php?t=34718

              For most Actinic users (and their customers) the best solution is to use a trustworthy psp (such as HSBC, protx, secpay, worldpay, etc) to process the payments on your behalf. This way you don't need SSL and you don't have to worry about PCI certification.

              Mike
              -----------------------------------------

              First Tackle - Fly Fishing and Game Angling

              -----------------------------------------

              Comment


                #8
                This weird problem with customer logins and cookies has suddenly also started affecting my website, I presume in the last few days as I was receiving orders from customers with accounts up until a few days ago.

                I've read through all the threads on this problem and I'm still scratching my head, because the issues others have had don't seem to apply.
                I haven't made any changes to the website apart from product updates in the last few days. I have dedicated SSL and the only difference between the SSL url and my main store URL is that SSL is on https://tamarket.com.au and the website is www.tamarket.com.au - I don't think it's an SSL problem, because it's been running perfectly happily up until now and I haven't touched the settings.

                Just tried a complete website refresh but it hasn't done anything. Any other suggestions welcomed!

                Comment


                  #9
                  Hi,

                  I have dedicated SSL and the only difference between the SSL url and my main store URL is that SSL is on https://tamarket.com.au and the website is www.tamarket.com.au
                  The cause may be because the https address doesn't contain 'www'. I would try adding that into the network settings urls for https and refresh to see if that helps.
                  ********************
                  Tracey
                  SellerDeck

                  Comment

                  Working...
                  X