Results 1 to 11 of 11

Thread: Not secure

Hybrid View

Previous Post Previous Post   Next Post Next Post
  1. #1
    Join Date
    Jul 2006
    Location
    London, UK
    Posts
    5,068
    Quote Originally Posted by Solvo View Post
    That's because Firefox only warns is the page is completely insecure, Chrome flags a whole page as insecure if there is at least one insecure element in the page as it leave the secure elements vulnerable to known exploits.

    Not sure why all the links redirect back to plain HTTP either. As I said originally, bit of dodgy config.
    Certainly could be improved by the site admins, the SSL implementation isn't great for the secure side either.
    Report here: https://www.ssllabs.com/ssltest/anal...=airgunbbs.com
    https://www.openssl.org/

    It's free. There's no reason, assuming it's compatible with AGBBS server (Apache), not to use it. Sys admins please take note. Thank you


  2. #2
    Join Date
    Aug 2008
    Location
    Ashford
    Posts
    1,222
    Quote Originally Posted by rogb View Post
    https://www.openssl.org/

    It's free. There's no reason, assuming it's compatible with AGBBS server (Apache), not to use it. Sys admins please take note. Thank you
    I'm not sure why you're linking me OpenSSL.
    As I mentioned earlier, you can connect to the BBS via HTTPS, it just fails to load correctly and automatically redirects to an HTTP connection when you change page. This implies that although the site has SSL configured for something, it is not configured for all subpages and/or resources.

    The SSL report i linked proved the SSL is partially functional, though the B score is somewhat less than perfect and the fact the connection continually drops to HTTP shows the admins need to make a few changes.

    On a side note, Yes OpenSSL works with Apache, everything web related *should* be built for the most popular web server.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •