Posts: 3,717
Threads: 95
Joined: May 2012
Reputation:
9
Secure Forums almost work
03-20-2017, 11:43 PM
http://drunkardswalkforums.yuku.com/
Hey, I can browse the forums securely, and now securely log in... But why does it look so bad? Oh right, because they're delivering static resources like CSS over HTTP, and the browser doesn't allow that. But still, it's encouraging to see any level of support for HTTPS in 2017. ??
-- ∇×V
Posts: 25,674
Threads: 2,064
Joined: Feb 2005
Reputation:
12
And it appears they're using something delivered over HTTP (and thus is blocked) to make the buttons across the edit window work, or to hide posts from the user that I'm ignoring.
Ah, well - back to insecure mode for now.
--
Rob Kelk
"Governments have no right to question the loyalty of those who oppose
them. Adversaries remain citizens of the same state, common subjects of
the same sovereign, servants of the same law."
- Michael Ignatieff, addressing Stanford University in 2012
Posts: 3,717
Threads: 95
Joined: May 2012
Reputation:
9
It looks like more of this is working now, you might want to try it again, Rob.
At the very least, everyone should switch to the https address for login.
-- ∇×V
Posts: 25,674
Threads: 2,064
Joined: Feb 2005
Reputation:
12
Looks like the edit-window issue is fixed. However, FireFox is still blocking parts of the page as insecure... so the jury is still out.
--
Rob Kelk
"Governments have no right to question the loyalty of those who oppose
them. Adversaries remain citizens of the same state, common subjects of
the same sovereign, servants of the same law."
- Michael Ignatieff, addressing Stanford University in 2012
Posts: 25,674
Threads: 2,064
Joined: Feb 2005
Reputation:
12
Something I noticed earlier today - when you logout from the https site, you're sent to the http site.
So https isn't completely implemented yet.
--
Rob Kelk
"Governments have no right to question the loyalty of those who oppose
them. Adversaries remain citizens of the same state, common subjects of
the same sovereign, servants of the same law."
- Michael Ignatieff, addressing Stanford University in 2012
Posts: 25,674
Threads: 2,064
Joined: Feb 2005
Reputation:
12
The https implementation is still not ready for primetime:
- When you logout from the https site, you're sent to the http site
- The "More" part of the "Reply | Quote | More" menu under each poster's icon isn't working on my box (but that might be a JS thing). EDIT: Fixed with no change to my configuration, so it was a Yuku problem after all. RE-EDIT: Only partially fixed - the drop-down menu overlays whatever's immediately under the post (for example, the next poster's avatar) and becomes difficult-to-impossible to read.
- Ignored posters are still visible.
- Spoiler tags don't work.
--
Rob Kelk
"Governments have no right to question the loyalty of those who oppose
them. Adversaries remain citizens of the same state, common subjects of
the same sovereign, servants of the same law."
- Michael Ignatieff, addressing Stanford University in 2012
Posts: 113
Threads: 28
Joined: Sep 2002
Reputation:
1
I get a mixed-content warning for the Forum on Firefox, but it looks like that's because the "Drunkard's Walk Discussion Forum" banner's URL is http://www.accessdenied-rms.net/dwboard.gif.
Bob, since it looks like accessdenied-rms.net supports https, can you move that URL to be https? If it's easier, it should be harmless to do even on the nonsecure version of Yuku. Edit: Nevermind, no it doesn't. https connections to that site just time out.
(While on the topic of that banner, it looks ugly on a retina (high-DPI) monitor. That might be harder to fix, though.)
Posts: 27,660
Threads: 2,277
Joined: Sep 2002
Reputation:
21
Hm. Looks like another thing to put on the list to talk to NetCarrier about, along with why do my FTP connections now reject with an odd error. And yeah, I know it's ugly, it dates back to 2002, I'm a lousy artist and I don't have decent tools. Yeah, I have GIMP, but I have only the barest idea how to use it.
And frankly, right now, fixing that banner is one of the lowest priority things on my list.
-- Bob
---------
Then the horns kicked in...
...and my shoes began to squeak.
Posts: 25,674
Threads: 2,064
Joined: Feb 2005
Reputation:
12
Updated my list of deficiencies above - Spoiler tags don't work.
--
Rob Kelk
"Governments have no right to question the loyalty of those who oppose
them. Adversaries remain citizens of the same state, common subjects of
the same sovereign, servants of the same law."
- Michael Ignatieff, addressing Stanford University in 2012
Posts: 27,660
Threads: 2,277
Joined: Sep 2002
Reputation:
21
...Something changed over the weekend. Visiting the forums from work (where we force everything to go through a secure connection), it looks like most images, some styling, and a good chunk of the scripting are missing. On Friday it was 95% or more functional.
-- Bob
---------
Then the horns kicked in...
...and my shoes began to squeak.
Posts: 25,674
Threads: 2,064
Joined: Feb 2005
Reputation:
12
Whatever happened, it happened after I switched to Opera. The scripting and CSS were working last night, but are not working this morning.
--
Rob Kelk
"Governments have no right to question the loyalty of those who oppose
them. Adversaries remain citizens of the same state, common subjects of
the same sovereign, servants of the same law."
- Michael Ignatieff, addressing Stanford University in 2012
Posts: 25,674
Threads: 2,064
Joined: Feb 2005
Reputation:
12
Another deficiency: the permanent links are http, not https.
--
Rob Kelk
"Governments have no right to question the loyalty of those who oppose
them. Adversaries remain citizens of the same state, common subjects of
the same sovereign, servants of the same law."
- Michael Ignatieff, addressing Stanford University in 2012
Posts: 25,674
Threads: 2,064
Joined: Feb 2005
Reputation:
12
Something changed between last night and this morning.
Word wrap no longer works consistently.
Text in italics is not being displayed.
One might almost think that they're doing this on purpose to make https unusable. The logout screen has none of these issues.
EDIT: Is there something in our custom CSS that doesn't play well with the data we're receiving?
--
Rob Kelk
"Governments have no right to question the loyalty of those who oppose
them. Adversaries remain citizens of the same state, common subjects of
the same sovereign, servants of the same law."
- Michael Ignatieff, addressing Stanford University in 2012
Posts: 27,660
Threads: 2,277
Joined: Sep 2002
Reputation:
21
And something happened again, only for the better from my point of view. It's not back to what it was before 5/30, but some of the screwed-up elements have been fixed.
-- Bob
---------
Then the horns kicked in...
...and my shoes began to squeak.
Posts: 25,674
Threads: 2,064
Joined: Feb 2005
Reputation:
12
Yep - text wrap works again.
The formatting buttons across the top of the reply box don't work now, though.
Oh, and posts haven't been top-aligned in their table boxes for quite a while now...
--
Rob Kelk
"Governments have no right to question the loyalty of those who oppose
them. Adversaries remain citizens of the same state, common subjects of
the same sovereign, servants of the same law."
- Michael Ignatieff, addressing Stanford University in 2012
Posts: 27,660
Threads: 2,277
Joined: Sep 2002
Reputation:
21
Quote:The formatting buttons across the top of the reply box don't work now, though.
Well damn. At least when they were invisible to me, I could still find and use them by hovering long enough for the tool tips to pop up.
-- Bob
---------
Then the horns kicked in...
...and my shoes began to squeak.
|