Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 03-19-2018, 02:16 PM   #1
brassmonkey
Pay It Forward
 
brassmonkey's Avatar
 
Industry Role:
Join Date: Sep 2005
Location: Yo Mama House
Posts: 77,153
:stop Important TLS Disablement Notice for your CCBill Account

what??? is this for merchants?
came from "Merchant Support at CCBill"

As a leading Payments-as-a-Service Platform, CCBill maintains a comprehensive and secure system which enables merchants to safely and securely process transactions online. Recently the Payment Card Industry Data Security Standards (PCI DSS) made it a requirement that all payment systems disable early versions of TLS by June 2018. TLS or Transport Layer Security is a method used to encrypt sensitive data across the internet and has been replaced by Secure Sockets Layer (SSL).

In order to maintain our compliance, CCBill will be disabling TLS 1.0 and 1.1 across our platform on the following dates:

5/24/18 – We will temporarily disable TLS 1.0 and TLS 1.1 for a one (1) hour window, at 8am GMT -7 to offer you and your teams time to test your systems and identify any remaining necessary upgrades.
6/8/18 – We will fully disable TLS 1.0 and TLS 1.1 across our entire CCBill environment at 8am GMT -7.

To assist you in this process, we suggest that you contact your web hosting provider, developer, or CMS to ensure that all your connections to the CCBill platform support TLS 1.2.

Thank you for your attention to this matter.

Sincerely,

CCBill Management
__________________
TRUMP 2025 KEKAW!!! - The Laken Riley Act Is Law!
DACA ENDED - SUPPORT AZ HCR 2060 52R - email: brassballz-at-techie.com
brassmonkey is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-19-2018, 02:22 PM   #2
ZENRA
Confirmed User
 
ZENRA's Avatar
 
Industry Role:
Join Date: Sep 2016
Location: Japan
Posts: 655
Just got it.

Yes, if you use CCBill for processing, it may affect you.
__________________
ZENRA | Subtitled Japanese AV | @ZENRAMANIAC
JAV VR Content Manager at SexLikeReal
ZENRA is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-19-2018, 02:55 PM   #3
bns666
Confirmed Fetishist
 
bns666's Avatar
 
Industry Role:
Join Date: Mar 2005
Location: Fetishland
Posts: 11,526
got it too...
__________________
CAM SODASTRIPCHAT
CHATURBATEX LOVE CAM
bns666 is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-19-2018, 02:55 PM   #4
Bladewire
StraightBro
 
Bladewire's Avatar
 
Industry Role:
Join Date: Aug 2003
Location: Monarch Beach, CA USA
Posts: 56,229
In short, upgrade your site to TLS 2.1 ASAP

SSL & TLS 1.1 have been proven insecure and have been compromised by widely publicized hacks.

This isn't a CCBill issue this is a PCI services issue worldwide.
Bladewire is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-19-2018, 08:19 PM   #5
Look Chang
Sexpat
 
Look Chang's Avatar
 
Industry Role:
Join Date: Sep 2010
Posts: 17,151
Quote:
Originally Posted by Bladewire View Post
In short, upgrade your site to TLS 2.1 ASAP
Sorry if the question seems inept but what are the requirements for the site / server to be compatible with TLS 2.1 ?
__________________
Hot & Juicy Asian Girls Sex Sites : SEDUCTION -> FELLATIO -> CONCLUSION
Special Asian Girls Buttocks Site : CUTE BUTTS
Look Chang is online now   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-19-2018, 09:07 PM   #6
rowan
Too lazy to set a custom title
 
Join Date: Mar 2002
Location: Australia
Posts: 17,393
Unless your Apache daemon was compiled 5 years ago your site probably already supports it.

You can check domains here: https://www.ssllabs.com/ssltest/

Don't forget this will also have some effect on the customer side. Anyone with an older browser, or a misconfigured one (I discovered a few months ago that for some reason mine was set to only support TLS 1.1 and specifically ignore TLS 1.2???) will not be able to load the ccbill pages.
rowan is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-20-2018, 03:48 AM   #7
Denny
Too lazy to set a custom title
 
Denny's Avatar
 
Industry Role:
Join Date: Feb 2005
Posts: 17,262
Well, I got it too but I'm just an affiliate so I guess I can ignore it.
__________________
Denny is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-20-2018, 08:13 AM   #8
rowan
Too lazy to set a custom title
 
Join Date: Mar 2002
Location: Australia
Posts: 17,393
Quote:
Originally Posted by Denny View Post
Well, I got it too but I'm just an affiliate so I guess I can ignore it.
Yes and no.

It's a bit like Google making Chrome complain about "insecure" sites. Enforcing TLS 1.2 is a good thing in the long run, but in the short term it may cause some browsers (hopefully only a tiny percentage) to no longer be able to access ccbill's signup pages. That will affect affiliates too.
rowan is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-20-2018, 08:29 AM   #9
rowan
Too lazy to set a custom title
 
Join Date: Mar 2002
Location: Australia
Posts: 17,393
For those familiar with Apache custom logs, this logs the SSL protocol and cipher, as well as the user agent:


<IfModule log_config_module>
LogFormat "%t %h %{SSL_PROTOCOL}x %{SSL_CIPHER}x %{SSL_TLS_SNI}x \"%{User-Agent}i\" \"%r\" %b" ssl
</IfModule>

CustomLog /path/to/log ssl


I've been logging for a few minutes and out of 29 uniques I've already seen a couple of IPs loading only with TLSv1: Android 4.4.2, and Ubuntu 9.04. So there's still old browsers out there.
rowan is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 03-20-2018, 12:26 PM   #10
rowan
Too lazy to set a custom title
 
Join Date: Mar 2002
Location: Australia
Posts: 17,393
Some preliminary data, from the past 4 hours:

- 742 unique IPs
- 20 IPs (2.7%) do not support TLS v1.2

That percentage is higher than I expected.

Some notable and unusual user agents:

Mozilla/5.0 (Linux; NetCast; U) AppleWebKit/537.31 (KHTML, like Gecko) Chrome/26.0.1410.33 Safari/537.31 SmartTV/5.0

Mozilla/5.0 (Linux; U; Android 2.3.6; en-ca; LG-E400R Build/GRK39F) AppleWebKit/533.1 (KHTML, like Gecko) Version/4.0 Mobile Safari/533.1 MMS/LG-Android-MMS-V1.2

Opera/9.30 (Nintendo Wii; U; ; 3642; en)
rowan is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks

Tags
tls, ccbill, platform, disable, security, data, layer, 8am, gmt, process, systems, payment, secure, merchants, support, temporarily, window, connections, hour, sincerely, disabling, management, matter, attention, 5/24/18



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.