2010-10-29 112 views
3

我在根目錄的子目錄中有magento,如果我將安全基礎url和安全基礎url鏈接設置爲正確的共享ssl url以啓用安全頁面,我在FRONTEND中沒有問題。頁面顯示爲他們應該。但是,當我嘗試訪問具有以下安全鏈接的管理員時,我無法獲得准入。Url重寫導致Magento管理員變得無法訪問

例如在前端:http://mydomain.com/shop變爲http://mydomain.com - 這是正確的。

https://mydomain.sharedssl.com/shop/customer/account/login/變成 https://mydomain.sharedssl.com/customer/account/login/ - 這是正確的。

但後來我可以既不https://mydomain.com/shop/index.php/admin/也不https://mydomain.com//index.php/admin/

在根目錄下我在我的htaccess有這樣的訪問管理:

RewriteEngine On 
RewriteBase/
RewriteCond %{REQUEST_URI} !^/shop(.*) 
RewriteRule (.*) /shop/$1 [L] 

,並在店(Magento的),我有以下幾點:

############################################ 
## uncomment these lines for CGI mode 
## make sure to specify the correct cgi php binary file name 
## it might be /cgi-bin/php-cgi 

# Action php5-cgi /cgi-bin/php5-cgi 
# AddHandler php5-cgi .php 

############################################ 
## GoDaddy specific options 

# Options -MultiViews 

## you might also need to add this line to php.ini 
##  cgi.fix_pathinfo = 1 
## if it still doesn't work, rename php.ini to php5.ini 

############################################ 
## this line is specific for 1and1 hosting 

    #AddType x-mapp-php5 .php 
    #AddHandler x-mapp-php5 .php 

############################################ 
## default index file 

    DirectoryIndex index.php 

<IfModule mod_php5.c> 

############################################ 
## adjust memory limit 

# php_value memory_limit 64M 
    php_value memory_limit 128M 
    php_value max_execution_time 18000 

############################################ 
## disable magic quotes for php request vars 

    php_flag magic_quotes_gpc off 

############################################ 
## disable automatic session start 
## before autoload was initialized 

    php_flag session.auto_start off 

############################################ 
## enable resulting html compression 

    #php_flag zlib.output_compression on 

########################################### 
# disable user agent verification to not break multiple image upload 

    php_flag suhosin.session.cryptua off 

########################################### 
# turn off compatibility with PHP4 when dealing with objects 

    php_flag zend.ze1_compatibility_mode Off 

</IfModule> 

<IfModule mod_security.c> 
########################################### 
# disable POST processing to not break multiple image upload 

    SecFilterEngine Off 
    SecFilterScanPOST Off 
</IfModule> 

<IfModule mod_deflate.c> 

############################################ 
## enable apache served files compression 
## http://developer.yahoo.com/performance/rules.html#gzip 

    # Insert filter on all content 
    ###SetOutputFilter DEFLATE 
    # Insert filter on selected content types only 
    #AddOutputFilterByType DEFLATE text/html text/plain text/xml text/css text/javascript 

    # Netscape 4.x has some problems... 
    #BrowserMatch ^Mozilla/4 gzip-only-text/html 

    # Netscape 4.06-4.08 have some more problems 
    #BrowserMatch ^Mozilla/4\.0[678] no-gzip 

    # MSIE masquerades as Netscape, but it is fine 
    #BrowserMatch \bMSIE !no-gzip !gzip-only-text/html 

    # Don't compress images 
    #SetEnvIfNoCase Request_URI \.(?:gif|jpe?g|png)$ no-gzip dont-vary 

    # Make sure proxies don't deliver the wrong content 
    #Header append Vary User-Agent env=!dont-vary 

</IfModule> 

<IfModule mod_ssl.c> 

############################################ 
## make HTTPS env vars available for CGI mode 

    #SSLOptions StdEnvVars 

</IfModule> 

<IfModule mod_rewrite.c> 

############################################ 
## enable rewrites 

    Options +FollowSymLinks 
    RewriteEngine on 

############################################ 
## you can put here your magento root folder 
## path relative to web root 

    RewriteBase/


############################################ 
## workaround for HTTP authorization 
## in CGI environment 

    RewriteRule .* - [E=HTTP_AUTHORIZATION:%{HTTP:Authorization}] 

############################################ 
## always send 404 on missing files in these folders 

    RewriteCond %{REQUEST_URI} !^/(media|skin|js)/ 

############################################ 
## never rewrite for existing files, directories and links 

    RewriteCond %{REQUEST_FILENAME} !-f 
    RewriteCond %{REQUEST_FILENAME} !-d 
    RewriteCond %{REQUEST_FILENAME} !-l 

############################################ 
## rewrite everything else to index.php 

    RewriteRule ^(.*)$ /shop/index.php [L] 



</IfModule> 


############################################ 
## Prevent character encoding issues from server overrides 
## If you still have problems, use the second line instead 

    AddDefaultCharset Off 
    #AddDefaultCharset UTF-8 

<IfModule mod_expires.c> 

############################################ 
## Add default Expires header 
## http://developer.yahoo.com/performance/rules.html#expires 

    ExpiresDefault "access plus 1 year" 

</IfModule> 

############################################ 
## By default allow all access 

    Order allow,deny 
    Allow from all 

############################################ 
## If running in cluster environment, uncomment this 
## http://developer.yahoo.com/performance/rules.html#etags 

    #FileETag none 

有人可以藉助一些幫助讓它在Magento後端工作嗎?

+0

您可以發佈此請求的結果:'SELECT * FROM core_config_data WHERE path like'%url'' – greg0ire 2010-10-30 10:54:53

回答

1

問題在於得到REQUEST_URI環境變量值並使用SCRIPT_FILENAMESCRIPT_NAME環境變量值對其進行檢查。在你的情況下,REQUEST_URI是/index.php/stddadmin/,而SCRIPT_NAME的SCRIPT_FILENAME等於/shop/index.php,而Magento無法檢索匹配控制器的路徑信息。所以問題的一個原因是在請求路徑中添加了/index.php/前綴,並且Magento網址生成的admin值爲該硬編碼值。

只有兩種解決方案,您的問題:

  1. 覆蓋方法Mage_Core_Model_Store模型就像下面這個例子叫_updatePathUseRewrites

    class Your_CustomModule_Model_Store extends Mage_Core_Model_Store 
    { 
        protected _updatePathUseRewrites($url) 
        { 
         return $url; // Return passed variable without adding index.php as prefix 
        } 
    } 
    

    在這種情況下,你的管理面板將可在/ admin/url,就像通常的前端頁面一樣。

  2. 重新組織項目結構,將Magento放置在根文件夾中或在其根目錄中的每個文件和文件夾上添加符號鏈接。
+0

謝謝你的迴應。我所做的就是允許共享ssl保持原樣,它允許我登錄到後端,但也顯示在前端。所以我改變了主要網站不安全和安全的基地網站和事情開始工作。 – capnhud 2010-11-04 11:06:58