Opened 5 years ago

Closed 4 years ago

#75 closed enhancement (invalid)

WordPress for iPhone does not handle Admin SSL & "Shared SSL"

Reported by: reppep Owned by:
Priority: major Milestone: 1.2
Component: Add Blog/Site Version:
Keywords: SSL security Cc: reppep

Description

I pointed v1.1 to https://secure.reppep.com/ep/wp-admin/ (SSL via http://www.kerrins.co.uk/blog/admin-ssl/), and it put up an error about not finding XML-RPC, with Visit Site & OK buttons. Unfortunately, neither button was accessible, and the network activity wheel kept spinning in the upper-right corner.

I then tried http://www.extrapepperoni.com as the URL (which redirects to an SSL URL). The first time the app crashed back to the Home screen. The second time, I got an error that the username/password combination were invalid (actually there’s a redirect before they can be presented), with an inverted/italiczed ‘Save’ on the right side of the sheet. The third time I got another u/p error, without the 'Save' visual artifact.

Please add support for “Shared SSL” via admin-ssl .

Thanks!
PS-TRAC doesn't offer v1.1 in the Version popup.

Change History (4)

comment:1 Changed 5 years ago by reppep

  • Cc reppep added

comment:2 Changed 5 years ago by josephscott

It isn't clear exactly what the problem is. The iPhone App uses XML-RPC, so from what I've read on the admin-ssl page it doesn't force that to use SSL by default.

Two things would be helpful here:

1- Can you test this out against the WP iPhone app -trunk to see if there's still a problem.
2- If it is, please sniff the traffic so that you can detail exactly which requests are being made, to where and which one seems to be failing.

comment:3 Changed 4 years ago by raanan

  • Milestone set to 1.2

@ reppep --

Did you have a chance to test this ? AFAIK, you should be able to put in your regular URL: http://secure.reppep.com/ep and if SSL is on that blog, XMLRPC will use HTTPS automatically if you are running the latest version of WordPress?.

comment:4 Changed 4 years ago by raanan

  • Resolution set to invalid
  • Status changed from new to closed
Note: See TracTickets for help on using tickets.