Welcome, Guest
Username: Password: Remember me
1. The "search..." box above searches the Docs & Forum Posts. The "Search" tab above just searches the Forum Posts. :side:
Please use these to search for your issue *before* creating a new message topic, as your issue may have been previously solved.
2. Please put your Club # and Club Web Address in your Forum Signature (best) OR in each post to get faster support from us.
Click here to edit your signature at the bottom of the Profile Information tab.
3. Our user and admin docs are available at: support.toastmastersclubs.org/doc "There's a doc for that!" ;)
4. There is an "Opt In" Feature for newly added members. The Opt In document explains the strikethrough member information. Click Here to View the Post
5. When posting a New Topic , please include all relevant details and be specific. When did your issue 1st occur? What operating system, browser, & browser version are you using? Did you refresh your browser cache? Are your cookies enabled? Lastly, a screen shot is often helpful.
6. Please abide by the Terms of Use . We are volunteers contributing our spare time. We are happy to assist you, so long as you are respectful and courteous.
7. We are always looking for new FreeToastHost Ambassadors to join our team and support fellow Toastmasters in their use of the FreeToastHost website system. If you are familiar with the system and have some interest, send a Send Us a Private Message.
  • Page:
  • 1

TOPIC:

Nonsecure Collection of Passwords will trigger warnings in Chrome 56 7 years 2 months ago #61388

  • michael.lavery
  • michael.lavery's Avatar Topic Author
  • Offline
  • New Member
  • New Member
  • Posts: 1
  • Thank you received: 0
Hello,

This support request is for Club #3853, Last Word Toastmasters at lastword.toastmastersclubs.org .

I am listed as the site owner for Google analytics and received an email from Google stating that visitors to the site would receive a warning when using the Google Chrome browser version 56 or later. This warning is due to the fact that username and password information is being collected via insecure (non-HTTPS) pages.

Text of a portion of the email from Google :

"To: owner of lastword.toastmastersclubs.org/

Beginning in January 2017, Chrome (version 56 and later) will mark pages that collect passwords or credit card details as “Not Secure” unless the pages are served over HTTPS.

The following URLs include input fields for passwords or credit card details that will trigger the new Chrome warning. Review these examples to see where these warnings will appear, and so you can take action to help protect users’ data. The list is not exhaustive.

lastword.toastmastersclubs.org/"

Would it be possible to change the login form for the site admin and club members to forward to a secure page somewhere else on toastmastersclubs.org so that google wouldn't flag the page as nonsecure? I realize that secure certs cost money because they must be purchased from certificate authorities. That's why I suggest forwarding the login page to a single URL like secure.toastmastersclubs.org or something similar.

Thanks for your support,
Michael Lavery #3853
Club #3853

lastword.toastmastersclubs.org
The topic has been locked.

Nonsecure Collection of Passwords will trigger warnings in Chrome 56 7 years 2 months ago #61390

  • SteveTheTechie
  • SteveTheTechie's Avatar
  • Offline
  • FreeToastHost Developer
  • FreeToastHost Developer
  • Posts: 13529
  • Thank you received: 3831
Thanks. Someone else has mentioned this also. This is an architectural issue that will require some creative thinking to address because of the nature of the system being a content management system that supports the use of custom domain names that we do not own or control. The security/HTTPS stuff is tied to a certificate that stored w/ DNS settings and on the server. For toastmastersclubs.org based domains, we would be using the same certificate. However, for custom domains, we would not have the certificate.

Right now, what I can tell you is that I am researching on the web to find an approach that will work for us. At this time, the only thing we could support are secure pages for the non-custom domain websites only, which is not really a complete solution.
Regards,

Steve James, DTM
FreeToastHost System Developer
Officer Emeritus, Mindful Communicators (Club 1966, District 52) A President's Distinguished Club for each of the last 10 years.

>>> Please put your club number in your forum profile. CLICK here to edit your profile.
Last edit: by SteveTheTechie.
The topic has been locked.
  • Page:
  • 1
Moderators: Pamrhtaylor3jliumarc33NotLiabledeedubbleyooNSBPhyllis Kirouac
Time to create page: 0.030 seconds
Powered by Kunena Forum