Skip to content
  • Adobe Commerce & Magento

    Adobe Commerce B2B

    Hyva icon

    Hyvä for Adobe Commerce and Magento

    Magento for B2B

    Portal - B2B Accelerator

    Adobe Commerce and Magento Support

    Ecommerce Consultancy

    Adobe Commerce and Magento Integrations

  • Ecommerce Marketing

    PPC for B2B

    PPC for Retail

    Paid Social

  • Work
  • About Us

    Partners

    Careers

  • News & Insights

    News & Insights

    Reports

    Resources

  • Contact
  • Adobe Commerce & Magento

    Adobe Commerce B2B

    Magento for B2B

    Hyva icon

    Hyvä for Adobe Commerce and Magento

    Portal - B2B Accelerator

    Adobe Commerce and Magento Support

    Adobe Commerce and Magento Integrations

    Ecommerce Consultancy

  • Ecommerce Marketing

    PPC for B2B

    PPC for Retail

    Paid Social

  • Work
  • About Us

    Partners

    Careers

  • News & Insights

    News & Insights

    Reports

    Resources

  • Contact

Magento and SSL 3.0

Magento | News & Insights
Picture of Adam Hindle

Adam Hindle

Managing Director

Date

01/12/2014

An issue impacting SSL connections has recently been revealed as POODLE – Padding Oracle On Downgraded Legacy Encryption. It was disclosed to the public in October, by engineers working for Google.

POODLE means that encrypted communication using the SSL 3.0 protocol can be decrypted, which could be highly dangerous in situations where somebody decides to take the time to exploit it. Essentially, the plain text of secure connections may be visible to attackers.

It is believed that as SSL 3.0 is now almost 20 years old, this issue may not be fully fixed. Instead, users may be encouraged to use Transport Layer Security (known as TLS) as an alternative.

How can this be rectified?

It is advisable to disable SSL version 3.0 completely on all servers. This is done on the server, not via Magento. TLS can also be used however this may be difficult to implement as a solution. This also unfortunately does not guarantee long term security.

Paypal have also recently announced that they are behind efforts to remove SSL 3.0 encryption from all of their merchants’ sites. This may force site owners into speaking with their hosting provider, as Paypal are discontinuing support for SSL 3.0 on 3rd December 2014.

For those on Magento, the solution should not prove to be an issue. Simply connect Paypal’s API via TLS, using CURL. Your web host should be able to disable SSL 3.0, and if look after your own server, you will need to disable SSL 3.0 manually. Don’t worry, this won’t affect customers’ access to your store.

We found this handy post, which explains, step by step, how you can save your site from POODLE, if you’re able to look after this issue by yourself.

If you have had problems with POODLE and SSL 3.0 on your Magento online store, why not get in touch with Fluid Digital? It is expected that around half of Magento sites may be affected. Online security is one of the most vital parts of your business, and should be explored carefully. If you’re in doubt, why not speak to our dedicated team of Magento certified developers?

How PPC campaigns can deliver growth for companies with thousands of different products
In this article, our technical director Matt Edwards talks about how the landscape is changing for the B2B ecommerce sector....
Read

AI could transform B2B ecommerce development but partners remain key

Read

What is Hyvä Commerce? A short but powerful history

Read
See all posts

Want an experienced Adobe partner by your side?

Book a free discovery call

Discover how Fluid Commerce can give your business the advantage
Share your digital objectives and pain points
Learn more about our approach and expertise
Discuss timeframes and budgets

Manchester HQ
Colony Jactin House, 24 Hood St, Manchester, M4 6WX

London
White Collar Factory, 1 Old Street Yard, London, EC1Y 8AF

0161 762 4920
[email protected]

Services
  • Adobe Commerce for B2B
  • Magento for B2B
  • Hyvä
  • Adobe Commerce and Magento Support
  • PPC for B2B Ecommerce
  • PPC for Retail Ecommerce
  • Paid Social for Ecommerce
Recent Work

Pearson Hydraulics

Salon Business Solutions

Rayware

Gecko Jewellery

Fletcher Stewart

Company
  • Home
  • About Us
  • News & Insights
  • Contact

© Fluid Commerce Limited | Registered in England No. 07026218 | Terms | Data | Privacy Policy

Facebook Instagram Twitter Linkedin
Go to mobile version