Jump to content
  • Checkout
  • Login
  • Get in touch

osCommerce

The e-commerce.

Are Store Downloads Safe?


jbpub01

Recommended Posts

Hello everybody,

 

First post and I'm asking for help. Shame on me. :blush:

 

Discovered osCommerce by accident. Way to go. Great resource. Thanks to all involved.

 

Decided to set up a store for electronic downloads. Some free, some paid for.

 

Is the system as it stands secure for this purpose?

 

Heard many stories of hackers easily finding 'download' folders.

 

I'd be grateful for any advice.

 

Best

 

Jim

Link to comment
Share on other sites

Hello everybody,

 

First post and I'm asking for help. Shame on me. :blush:

 

Discovered osCommerce by accident. Way to go. Great resource. Thanks to all involved.

 

Decided to set up a store for electronic downloads. Some free, some paid for.

 

Is the system as it stands secure for this purpose?

 

Heard many stories of hackers easily finding 'download' folders.

 

I'd be grateful for any advice.

 

Best

 

Jim

 

Is their nobody available for advice?? Pretty please. :mellow:

 

Jim

Link to comment
Share on other sites

It can be safe if installed correctly.

You can also rename the downloads folder (make it difficult to find) and use a contribution to improve download security too.

 

I've (touch wood) never had a download hack - although I have had several others on teh site.

Link to comment
Share on other sites

There is a problem with downloads if you use PayPal standard, where the user can call the success page and gain access to the download with out pating for it.

This only effects this one payment method though, PayPal express is OK, not sure about PayPal IPN perhaps someone else knows

Nic

Sometimes you're the dog and sometimes the lamp post

[/url]

My Contributions

Link to comment
Share on other sites

There is a problem with downloads if you use PayPal standard, where the user can call the success page and gain access to the download with out pating for it.

This only effects this one payment method though, PayPal express is OK, not sure about PayPal IPN perhaps someone else knows

Nic

 

There are workarounds, however.

There's contribution to secure and you can rename the pages (checkout_success.php etc) to make it even harder for the culprits

Link to comment
Share on other sites

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...