HTTPS / SSL Proxy Service/s (enabled)

Before and After Proxy
Click image to view

Enabled basic proxy services for HTTPS / SSL protocol; All/Shared access to the Network Solutions Web site domain of secure.netsolhost.com and its service which supported HTTPS / SSL protocol usage has been disabled and discontinued by the web hosting provider. A suitable solution and replacement that is non-Shared can be located via https://00481d1.netsolhost.com/{sitename} and will be enabled for public use of Kitchen Pages computer software Web site/s where required. The indirect external-looking-inward simple http-proxy is provided by htaccess rewrite within each {sitename} sub-directory (hint: two separate rewrites, one with %2 for cgi filenames and the other of $1 for everything else and both using stuff like [R=303,P,L] to force it) that in the case of being unsuccessful will access a php gateway initially designed for use by the Kitchen Page web page management interface (allowing access to actual files) but also serves as a Name-Server for resolving domain names and error catcher. When compared with the former disabled and discontinued secure.netsolhost.com service/s – the prefix of 00481d1 will assist the security for End-users by being a unique identifier of a subdomain (other hosted Web sites do have their own prefix).

While HTTPS is supported by all domain names, the certificate provided at this time does NOT match the site name (a practice which is outside of SEO best practices). The issue will cause site programming and client scripting to fail or become unstable producing unwanted or unknown errors. Therefore the ability of End-users/clients to use HTTPS with non-matching certificates will be discontinued at the next planned server/service upgrade – requests will be resolved by the correct site supplied service (HTTPS / SSL protocol proxy supplied Web site page if enabled – however if not enabled then the request will be redirected to be resolved by using the default standard of HTTP).

HTTPS / SSL protocol proxy supplied Web site page – Certificate Information :

GeoTrust Inc.
Connection Encrypted (TLS EDHSE RSA WITH AES 256 CBC SHA, 256 bit keys, TLS 1.2)
Uses: SSL Client Certificate, SSL Server Certificate.
Begins On Monday, 28 December 2015.
Expres On Saturday, 30 December 2017.
Serial Number 09:3D:4D
SHA-256 Fingerprint 90:E9:1A:94:EA:AC:BD:E8:54:CC:F9:65:27:EF:16:AA:
62:EB:A1:66:3A:55:1C:E4:1D:5F:F9:FC:40:0B:50:11
SHA1 Fingerprint: 0A:E5:03:0C:C3:0F:11:FA:37:1E:A4:9D:A6:16:E6:F9:1B:03:A7:19
Country: US

4 Responses to “HTTPS / SSL Proxy Service/s (enabled)”

  1. Admin Says:

    HTTPS SSL testing
    Click image to view

    Updated and Disabled any web applications (online versions upon this site/s) which will not be using the HTTPS / SSL protocol, out-of-date KitCAD i3 KGC versions will show a blank icon in the place of a grey padlock symbol that would be showing for a HTTP accessed page; A short text information screen web page is provided to inform End-users of the disabled web application HTTP / SSL protocol interface/s where required (issue relates to i3/r30/r35/r3/r5/r50 online versions only).

    Made other changes to correct Access-Control-Allow-Origin header sent with results for required file types, updating to use 00481d1 prefix (issue relates to KitCAD i3 KGC rX for XAMPP, and other versions for XAMPP).

    Updated and corrected minor bug in 12 cgi files and more within the cgi-bin folder that will be required to use HTTP / SSL protocol, updating to use 00481d1 prefix. The minor bug was in text of ‘securehost’ which should of been the text of ‘secure’ that of-course would be changed again to become ‘00481d1’ (bug relates to r30/r35/r3/r5 online versions only).

    Enabled full HTML / SSL protocol proxy service for KitCAD i3 KGC rX during the planned update of 29th May 2016 with minor modification supplied via override files of the same name found within the HTTP / SSL protocol proxy service path (also using cgi_bin because the original calls to cgi-bin were blocked by an unknown-security issue which is assumed to belong/be-enabled by the hosting provider/s [Unknown Why : a non-travelled htaccess when HTTP-proxy accessed though a domain linked with that non-travelled directory will return a 404 while a travelled htaccess will allow the access though a domain linked with that directory!?!] 🙁 – further investigation maybe undertaken to determine if result is from error or caused by hosting provider enabled security protocol however from recall this issue is the result of an enabled security protocol so the priority to solve this issue is not on the top of the list or near the list). The user content target domain (kitchenpages.net) also displayed the same security issue when attempting to proxy-get files created or accessed by cgi-bin. Shadow cgi-bin solutions can be attempted however the file-locking features within the originals that block access to files will/could/may become active.

  2. Admin Says:

    Enabled HTTPS / SSL protocol proxy services for online versions of i3/r3/r5/r50 (with rX already being enabled). The grey padlock has been re-enabled for these versions only; Versions of r30/r35 will continue to display no graphic.

  3. Admin Says:

    The service for HTTPS proxy has been disabled-discontinued (again) as of 28th September 2016; and the service seems to of been disabled by the hosting provider whom has them selves moved providers (and updated platform). Current resolution for clients is a bounce-back/follow-though which is resolving the request. The server is now supporting Open/Resty and Nginx (Hint there as to why the HTTPS Proxy service is now disabled-discontinued).

  4. Admin Says:

    Enabled HTTPS / SSL protocol service for online version of KitCAD i3 KGC rX. The grey padlock has been re-enabled for that version only; All other versions of i3/r30/r35/r5/r50 will continue to display no graphic.

    See update notice for more information.

Leave a Reply

You must be logged in to post a comment.