Re: [WebDNA] TLS 1.2 and [tcpconnect]
This WebDNA talk-list message is from 2018
It keeps the original formatting.
numero = 114002
interpreted = N
texte = 1602Hi Brian,Bob is offering a work-around.. but I would think you could disable old=20versions of TLS on your server too.I have to look into this as well... in fact, everyone who is using=20Authnet should look into this if they haven't already.I'll try to get some time tonight to look at it.DonovanOn 2018-03-01 10:29, Brian Willson wrote:> I didn=E2=80=99t fully read this, I guess...>> So no version of Mac OS X server can force outgoing TLS 1.2> connections? Assuming so, I WILL need a new server to handle this, I> guess.>> Thanks.>> Brian>> ---> Brian Willson> www.3ip.com [41]>>>>>>>> On Mar 1, 2018, at 9:37 AM, Bob Minor
>> wrote:>>>> No the older protocols cannot be completed turned off. Apples>> she=E2=80=99ll script uses the older connection.>>>> All you need to do i>>>> Change the tcpconnect to your new servers page>>>> http://mynewserver.com/authnetpost.tpl [34]>>>> Create the page on the new server authnetpost.tpl>>>> On that page read the posted variables and resend them using the>> newer servers tcp connect which is already updated. This is the same>> exact code as you have on your old server. Only with the read>> variables.>>>> When I get to my server I will send you the PHP to do this, but you>> can do it with WebDNA>>>> Robert Minor>> Cybermill.com [35]>> 314-962-4024 ext 500>>>> On Mar 1, 2018, at 08:28, Jym Duane >> wrote:>>>>> Robert>>>>>> I am in the process (expense) of moving a site to an updated>>> server, in order to have TLS1.2 to do the tcp connect.>>>>>> this sounds like after i do that i wont be able to still? is that>>> due to webdna?>>>>>> will be updated to latest centos and Apache to support the TLS1.2>>>>>> have not got completely there yet to try it.>>>>>> Please send script as a workaround either while transitioning or>>> after if needed would be greatly appreciated.>>>>>> PS- i think older protocols can be tuned off on the server?>>> Jym>>>>>> On 3/1/2018 6:12 AM, Bob Minor wrote:>>>>>>> No not at all. I can send you the php script or you can do the>>>> same thing with webdna on a newer server>>>>>>>> All I really do is read the post variables and resend them to>>>> authnet as another tcpconnect so to speak. But this would be>>>> running on an updated server.>>>>>>>> Robert Minor>>>> Cybermill.com [23]>>>> 314-962-4024 ext 500>>>>>>>> On Mar 1, 2018, at 07:52, Brian Willson >>>> wrote:>>>>>>>>> Yikes. Sounds complicated.>>>>>>>>>> Is there no way to tweak the [tcpconnect] script to>>>>> accommodate TLS 1.2 and/or its ciphers? If not, that would>>>>> prove a major setback here.>>>>>>>>>> Brian>>>>>>>>>> --->>>>> Brian Willson>>>>>>>>>> www.3ip.com [18]>>>>>>>>>>> On Mar 1, 2018, at 7:42 AM, Bob Minor>>>>>> wrote:>>>>>>>>>>>> I got around it by running my own Linux server that does the>>>>>> php call to authnet and dumps the data just as the gateway>>>>>> did. kinda like a gateway for my gateway.>>>>>>>>>>>> Robert Minor>>>>>> Cybermill.com [12]>>>>>> 314-962-4024 ext 500>>>>>>>>>>>> On Mar 1, 2018, at 06:34, Brian Willson >>>>> [13]> wrote:>>>>>>>>>>>>> Hey, everybody.>>>>>>>>>>>>>> For years I=E2=80=99ve been using [tcpconnect] to connect my>>>>>>> online shopping carts with Authorize.net [1]=E2=80=99s AIM>>>>>>> solution, and it=E2=80=99s worked great, with only a minor tweak>>>>>>> or two required.>>>>>>>>>>>>>> Yesterday, Authorize.net [2] began requiring connections>>>>>>> via the TLS 1.2 protocol, and my script broke. I.e., it>>>>>>> can no longer connect to the endpoint.>>>>>>>>>>>>>> (I'd mistakenly assumed all I needed to do was make sure>>>>>>> my server supported TLS 1.2, duh.)>>>>>>>>>>>>>> Can anyone tell me how to make sure my script forces a>>>>>>> connection via TLS 1.2?>>>>>>>>>>>>>> I was hoping all I=E2=80=99d need is a tweak to this line...>>>>>>>>>>>>>> [text show=3DF]response=3D[tcpconnect>>>>>>> host=3Dsecure2.authorize.net [3]&port=3D443&ssl=3DT]>>>>>>>>>>>>>> ...but simply using =E2=80=9Cssl=3DF=E2=80=9D didn=E2=80=99t work=, ha.>>>>>>>>>>>>>> Here=E2=80=99s my main connect code:>>>>>>>>>>>>>> --->>>>>>>>>>>>>> [text show=3DF]response=3D[tcpconnect>>>>>>> host=3Dsecure2.authorize.net [4]&port=3D443&ssl=3DT][!]>>>>>>>>>>>>>> [/!][tcpsend]POST /gateway/transact.dll HTTP/1.0[crlf][!]>>>>>>>>>>>>>> [/!]User-Agent: e3IP[crlf][!]>>>>>>>>>>>>>> [/!]Host: secure2.authorize.net:443 [5][crlf][!]>>>>>>>>>>>>>> [/!]Content-type:>>>>>>> application/x-www-form-urlencoded[crlf][!]>>>>>>>>>>>>>> [/!]Content-length:>>>>>>> [countchars][content][/countchars][crlf][!]>>>>>>>>>>>>>> [/!][crlf][!]>>>>>>>>>>>>>> [/!][content][crlf][!]>>>>>>>>>>>>>> [/!][/tcpsend][/tcpconnect][/text]>>>>>>>>>>>>>> --->>>>>>>>>>>>>> Thanks so much in advance for any help you can offer.>>>>>>>>>>>>>> Brian>>>>>>>>>>>>>> --->>>>>>> Brian Willson>>>>>>> www.3ip.com [6]>>>>>>>>>>>>>> --------------------------------------------------------->>>>>>> This message is sent to you because you are subscribed to>>>>>>> the mailing list talk@webdna.us [7] To unsubscribe, E-mail>>>>>>> to: talk-leave@webdna.us [8] archives:>>>>>>> http://www.webdna.us/page.dna?numero=3D55 [9] Bug Reporting:>>>>>>> support@webdna.us [10]>>>>>> --------------------------------------------------------->>>>>> This message is sent to you because you are subscribed to>>>>>> the mailing list talk@webdna.us [14] To unsubscribe, E-mail>>>>>> to: talk-leave@webdna.us [15] archives:>>>>>> http://www.webdna.us/page.dna?numero=3D55 [16] Bug Reporting:>>>>>> support@webdna.us [17]>>>>>>>>>> --------------------------------------------------------->>>>> This message is sent to you because you are subscribed to the>>>>> mailing list talk@webdna.us [19] To unsubscribe, E-mail to:>>>>> talk-leave@webdna.us [20] archives:>>>>> http://www.webdna.us/page.dna?numero=3D55 [21] Bug Reporting:>>>>> support@webdna.us [22]>>>> --------------------------------------------------------- This>>>> message is sent to you because you are subscribed to the mailing>>>> list talk@webdna.us [25] To unsubscribe, E-mail to:>>>> talk-leave@webdna.us [26] archives:>>>> http://www.webdna.us/page.dna?numero=3D55 [27] Bug Reporting:>>>> support@webdna.us [28]>>>>>> -->>> Jym Duane - CTO - Purpose Media>>> Creating Your Success Story>>> Marketing : Television - Internet -Print>>> Phone: (877) 443-1323>>> Email: jym@purposemedia.com>>> Web: www.purposemedia.com>>>>>> Oregon - www.GuideToOregon.com>>> PO Box 1725, Jacksonville, OR 97530>>>>>> California - www.OrangeCounty.net>>> PO Box 2025, Capistrano Beach, CA 92624>>> --------------------------------------------------------- This>>> message is sent to you because you are subscribed to the mailing>>> list talk@webdna.us [29] To unsubscribe, E-mail to:>>> talk-leave@webdna.us [30] archives:>>> http://www.webdna.us/page.dna?numero=3D55 [31] Bug Reporting:>>> support@webdna.us [32]>> --------------------------------------------------------- This>> message is sent to you because you are subscribed to the mailing>> list talk@webdna.us [37] To unsubscribe, E-mail to:>> talk-leave@webdna.us [38] archives:>> http://www.webdna.us/page.dna?numero=3D55 [39] Bug Reporting:>> support@webdna.us [40]>> --------------------------------------------------------- This> message is sent to you because you are subscribed to the mailing list> talk@webdna.us To unsubscribe, E-mail to: talk-leave@webdna.us> archives: http://www.webdna.us/page.dna?numero=3D55 Bug Reporting:> support@webdna.us>> Links:> ------> [1] http://authorize.net/> [2] http://authorize.net/> [3] http://secure2.authorize.net/> [4] http://secure2.authorize.net/> [5] http://secure2.authorize.net:443/> [6] http://www.3ip.com/> [7] mailto:talk@webdna.us> [8] mailto:talk-leave@webdna.us> [9] http://www.webdna.us/page.dna?numero=3D55> [10] mailto:support@webdna.us> [11] mailto:bob.minor@cybermill.com> [12] http://cybermill.com/> [13] mailto:willson@3ip.com> [14] mailto:talk@webdna.us> [15] mailto:talk-leave@webdna.us> [16] http://www.webdna.us/page.dna?numero=3D55> [17] mailto:support@webdna.us> [18] http://www.3ip.com/> [19] mailto:talk@webdna.us> [20] mailto:talk-leave@webdna.us> [21] http://www.webdna.us/page.dna?numero=3D55> [22] mailto:support@webdna.us> [23] http://cybermill.com/> [24] mailto:willson@3ip.com> [25] mailto:talk@webdna.us> [26] mailto:talk-leave@webdna.us> [27] http://www.webdna.us/page.dna?numero=3D55> [28] mailto:support@webdna.us> [29] mailto:talk@webdna.us> [30] mailto:talk-leave@webdna.us> [31] http://www.webdna.us/page.dna?numero=3D55> [32] mailto:support@webdna.us> [33] mailto:bob.minor@cybermill.com> [34] http://mynewserver.com/authnetpost.tpl> [35] http://cybermill.com/> [36] mailto:jym@purposemedia.com> [37] mailto:talk@webdna.us> [38] mailto:talk-leave@webdna.us> [39] http://www.webdna.us/page.dna?numero=3D55> [40] mailto:support@webdna.us> [41] http://www.3ip.com---------------------------------------------------------This message is sent to you because you are subscribed tothe mailing list talk@webdna.usTo unsubscribe, E-mail to: talk-leave@webdna.usarchives: http://www.webdna.us/page.dna?numero=3D55Bug Reporting: support@webdna.us.
Associated Messages, from the most recent to the oldest:
1602Hi Brian,Bob is offering a work-around.. but I would think you could disable old=20versions of TLS on your server too.I have to look into this as well... in fact, everyone who is using=20Authnet should look into this if they haven't already.I'll try to get some time tonight to look at it.DonovanOn 2018-03-01 10:29, Brian Willson wrote:> I didn=E2=80=99t fully read this, I guess...>> So no version of Mac OS X server can force outgoing TLS 1.2> connections? Assuming so, I WILL need a new server to handle this, I> guess.>> Thanks.>> Brian>> ---> Brian Willson> www.3ip.com [41]>>>>>>>> On Mar 1, 2018, at 9:37 AM, Bob Minor >> wrote:>>>> No the older protocols cannot be completed turned off. Apples>> she=E2=80=99ll script uses the older connection.>>>> All you need to do i>>>> Change the tcpconnect to your new servers page>>>> http://mynewserver.com/authnetpost.tpl [34]>>>> Create the page on the new server authnetpost.tpl>>>> On that page read the posted variables and resend them using the>> newer servers tcp connect which is already updated. This is the same>> exact code as you have on your old server. Only with the read>> variables.>>>> When I get to my server I will send you the PHP to do this, but you>> can do it with WebDNA>>>> Robert Minor>> Cybermill.com [35]>> 314-962-4024 ext 500>>>> On Mar 1, 2018, at 08:28, Jym Duane >> wrote:>>>>> Robert>>>>>> I am in the process (expense) of moving a site to an updated>>> server, in order to have TLS1.2 to do the tcp connect.>>>>>> this sounds like after i do that i wont be able to still? is that>>> due to webdna?>>>>>> will be updated to latest centos and Apache to support the TLS1.2>>>>>> have not got completely there yet to try it.>>>>>> Please send script as a workaround either while transitioning or>>> after if needed would be greatly appreciated.>>>>>> PS- i think older protocols can be tuned off on the server?>>> Jym>>>>>> On 3/1/2018 6:12 AM, Bob Minor wrote:>>>>>>> No not at all. I can send you the php script or you can do the>>>> same thing with webdna on a newer server>>>>>>>> All I really do is read the post variables and resend them to>>>> authnet as another tcpconnect so to speak. But this would be>>>> running on an updated server.>>>>>>>> Robert Minor>>>> Cybermill.com [23]>>>> 314-962-4024 ext 500>>>>>>>> On Mar 1, 2018, at 07:52, Brian Willson >>>> wrote:>>>>>>>>> Yikes. Sounds complicated.>>>>>>>>>> Is there no way to tweak the [tcpconnect] script to>>>>> accommodate TLS 1.2 and/or its ciphers? If not, that would>>>>> prove a major setback here.>>>>>>>>>> Brian>>>>>>>>>> --->>>>> Brian Willson>>>>>>>>>> www.3ip.com [18]>>>>>>>>>>> On Mar 1, 2018, at 7:42 AM, Bob Minor>>>>>> wrote:>>>>>>>>>>>> I got around it by running my own Linux server that does the>>>>>> php call to authnet and dumps the data just as the gateway>>>>>> did. kinda like a gateway for my gateway.>>>>>>>>>>>> Robert Minor>>>>>> Cybermill.com [12]>>>>>> 314-962-4024 ext 500>>>>>>>>>>>> On Mar 1, 2018, at 06:34, Brian Willson >>>>> [13]> wrote:>>>>>>>>>>>>> Hey, everybody.>>>>>>>>>>>>>> For years I=E2=80=99ve been using [tcpconnect] to connect my>>>>>>> online shopping carts with Authorize.net [1]=E2=80=99s AIM>>>>>>> solution, and it=E2=80=99s worked great, with only a minor tweak>>>>>>> or two required.>>>>>>>>>>>>>> Yesterday, Authorize.net [2] began requiring connections>>>>>>> via the TLS 1.2 protocol, and my script broke. I.e., it>>>>>>> can no longer connect to the endpoint.>>>>>>>>>>>>>> (I'd mistakenly assumed all I needed to do was make sure>>>>>>> my server supported TLS 1.2, duh.)>>>>>>>>>>>>>> Can anyone tell me how to make sure my script forces a>>>>>>> connection via TLS 1.2?>>>>>>>>>>>>>> I was hoping all I=E2=80=99d need is a tweak to this line...>>>>>>>>>>>>>> [text show=3DF]response=3D[tcpconnect>>>>>>> host=3Dsecure2.authorize.net [3]&port=3D443&ssl=3DT]>>>>>>>>>>>>>> ...but simply using =E2=80=9Cssl=3DF=E2=80=9D didn=E2=80=99t work=, ha.>>>>>>>>>>>>>> Here=E2=80=99s my main connect code:>>>>>>>>>>>>>> --->>>>>>>>>>>>>> [text show=3DF]response=3D[tcpconnect>>>>>>> host=3Dsecure2.authorize.net [4]&port=3D443&ssl=3DT][!]>>>>>>>>>>>>>> [/!][tcpsend]POST /gateway/transact.dll HTTP/1.0[crlf][!]>>>>>>>>>>>>>> [/!]User-Agent: e3IP[crlf][!]>>>>>>>>>>>>>> [/!]Host: secure2.authorize.net:443 [5][crlf][!]>>>>>>>>>>>>>> [/!]Content-type:>>>>>>> application/x-www-form-urlencoded[crlf][!]>>>>>>>>>>>>>> [/!]Content-length:>>>>>>> [countchars][content][/countchars][crlf][!]>>>>>>>>>>>>>> [/!][crlf][!]>>>>>>>>>>>>>> [/!][content][crlf][!]>>>>>>>>>>>>>> [/!][/tcpsend][/tcpconnect][/text]>>>>>>>>>>>>>> --->>>>>>>>>>>>>> Thanks so much in advance for any help you can offer.>>>>>>>>>>>>>> Brian>>>>>>>>>>>>>> --->>>>>>> Brian Willson>>>>>>> www.3ip.com [6]>>>>>>>>>>>>>> --------------------------------------------------------->>>>>>> This message is sent to you because you are subscribed to>>>>>>> the mailing list talk@webdna.us [7] To unsubscribe, E-mail>>>>>>> to: talk-leave@webdna.us [8] archives:>>>>>>> http://www.webdna.us/page.dna?numero=3D55 [9] Bug Reporting:>>>>>>> support@webdna.us [10]>>>>>> --------------------------------------------------------->>>>>> This message is sent to you because you are subscribed to>>>>>> the mailing list talk@webdna.us [14] To unsubscribe, E-mail>>>>>> to: talk-leave@webdna.us [15] archives:>>>>>> http://www.webdna.us/page.dna?numero=3D55 [16] Bug Reporting:>>>>>> support@webdna.us [17]>>>>>>>>>> --------------------------------------------------------->>>>> This message is sent to you because you are subscribed to the>>>>> mailing list talk@webdna.us [19] To unsubscribe, E-mail to:>>>>> talk-leave@webdna.us [20] archives:>>>>> http://www.webdna.us/page.dna?numero=3D55 [21] Bug Reporting:>>>>> support@webdna.us [22]>>>> --------------------------------------------------------- This>>>> message is sent to you because you are subscribed to the mailing>>>> list talk@webdna.us [25] To unsubscribe, E-mail to:>>>> talk-leave@webdna.us [26] archives:>>>> http://www.webdna.us/page.dna?numero=3D55 [27] Bug Reporting:>>>> support@webdna.us [28]>>>>>> -->>> Jym Duane - CTO - Purpose Media>>> Creating Your Success Story>>> Marketing : Television - Internet -Print>>> Phone: (877) 443-1323>>> Email: jym@purposemedia.com>>> Web: www.purposemedia.com>>>>>> Oregon - www.GuideToOregon.com>>> PO Box 1725, Jacksonville, OR 97530>>>>>> California - www.OrangeCounty.net>>> PO Box 2025, Capistrano Beach, CA 92624>>> --------------------------------------------------------- This>>> message is sent to you because you are subscribed to the mailing>>> list talk@webdna.us [29] To unsubscribe, E-mail to:>>> talk-leave@webdna.us [30] archives:>>> http://www.webdna.us/page.dna?numero=3D55 [31] Bug Reporting:>>> support@webdna.us [32]>> --------------------------------------------------------- This>> message is sent to you because you are subscribed to the mailing>> list talk@webdna.us [37] To unsubscribe, E-mail to:>> talk-leave@webdna.us [38] archives:>> http://www.webdna.us/page.dna?numero=3D55 [39] Bug Reporting:>> support@webdna.us [40]>> --------------------------------------------------------- This> message is sent to you because you are subscribed to the mailing list> talk@webdna.us To unsubscribe, E-mail to: talk-leave@webdna.us> archives: http://www.webdna.us/page.dna?numero=3D55 Bug Reporting:> support@webdna.us>> Links:> ------> [1] http://authorize.net/> [2] http://authorize.net/> [3] http://secure2.authorize.net/> [4] http://secure2.authorize.net/> [5] http://secure2.authorize.net:443/> [6] http://www.3ip.com/> [7] mailto:talk@webdna.us> [8] mailto:talk-leave@webdna.us> [9] http://www.webdna.us/page.dna?numero=3D55> [10] mailto:support@webdna.us> [11] mailto:bob.minor@cybermill.com> [12] http://cybermill.com/> [13] mailto:willson@3ip.com> [14] mailto:talk@webdna.us> [15] mailto:talk-leave@webdna.us> [16] http://www.webdna.us/page.dna?numero=3D55> [17] mailto:support@webdna.us> [18] http://www.3ip.com/> [19] mailto:talk@webdna.us> [20] mailto:talk-leave@webdna.us> [21] http://www.webdna.us/page.dna?numero=3D55> [22] mailto:support@webdna.us> [23] http://cybermill.com/> [24] mailto:willson@3ip.com> [25] mailto:talk@webdna.us> [26] mailto:talk-leave@webdna.us> [27] http://www.webdna.us/page.dna?numero=3D55> [28] mailto:support@webdna.us> [29] mailto:talk@webdna.us> [30] mailto:talk-leave@webdna.us> [31] http://www.webdna.us/page.dna?numero=3D55> [32] mailto:support@webdna.us> [33] mailto:bob.minor@cybermill.com> [34] http://mynewserver.com/authnetpost.tpl> [35] http://cybermill.com/> [36] mailto:jym@purposemedia.com> [37] mailto:talk@webdna.us> [38] mailto:talk-leave@webdna.us> [39] http://www.webdna.us/page.dna?numero=3D55> [40] mailto:support@webdna.us> [41] http://www.3ip.com---------------------------------------------------------This message is sent to you because you are subscribed tothe mailing list talk@webdna.usTo unsubscribe, E-mail to: talk-leave@webdna.usarchives: http://www.webdna.us/page.dna?numero=3D55Bug Reporting: support@webdna.us.
dbrooke@euca.us
DOWNLOAD WEBDNA NOW!
Top Articles:
Talk List
The WebDNA community talk-list is the best place to get some help: several hundred extremely proficient programmers with an excellent knowledge of WebDNA and an excellent spirit will deliver all the tips and tricks you can imagine...
Related Readings:
WebDNA Solutions ... sorry! (1997)
Stopping bad HTML propagation ? (1997)
Re:Emailer and encryption (1997)
Separate server for jpg/gif files (1998)
Big Databases (1997)
WebCat B13 Mac CGI -- Frames question (1997)
Robert Minor duplicate mail (1997)
Server crash (1997)
cookie length (1998)
group searching problem (2002)
[Cart] ... (1997)
WebMerchant and PC Auth Hub (1999)
Deleting with contexts (2001)
Multiple Pulldowns (1997)
searchable list archive (1997)
mass mailing (1998)
This list needs a digest: rant, rave... (1997)
Just Testing (1997)
WebDNA Quitting (2008)
WebDNA Examples (Was Suggestions) (1998)