ssl – Chrome – iFrame中的密码/信用卡输入

我正在使用一个iFrame,它托管在另一个拥有SSL证书的域上.在使用iFrame的页面上,我在Google Chrome中的域旁边显示“不安全”消息,并在控制台日志中显示以下警告:

This page includes a password or credit card input in a non-secure
context. A warning has been added to the URL bar. For more
information.

注意:iFrame加载在线预订门户,其中包括登录详细信息和信用卡信息.

为了防止显示此消息,我是否需要购买SSL证书?

我问,因为我不想订购一个,如果它没有解决问题,有一种解决方法,无需获得SSL证书或如果它不值得为这种情况获得一个.

您的想法将受到高度赞赏.

提前致谢.

最佳答案

To help users browse the web safely, Chrome indicates connection
security with an icon in the address bar. Historically, Chrome has not
explicitly labelled HTTP connections as non-secure. Beginning in
January 2017 (Chrome 56), we’ll mark HTTP pages that collect passwords
or credit cards as non-secure, as part of a long-term plan to mark all
HTTP sites as non-secure.

它适用于非https的所有站点.

检查任何有登录信息但没有https的网站,您可以在Chrome开发者窗口中查看用户名和密码.

security page documentation

点赞