I have an online store I created and I've been saving a
"shopping_cart_id" in the session which references a data object.
I added "ssl_requirement" to the site and I put the Order Summary,
Checkout, and Confirm pages behind SSL. The only problem is that the
Order Summary page needs that session from "http" to access the
shopping cart data.
Is there a way to persist the session between http and https?
Or should I simply put all shopping cart actions behind SSL?
Or can I use "active_record_store" to solve my problems?
After a little digging, I discovered that if I have the page with the
form to ADD to the shopping cart NON-SSL, and I submit a form to an
SSL page, I lose the form data.
Given that, I MUST put my shopping cart on a NON-SSL page...
But I still don't know how to persist the shopping cart between HTTP
AND HTTPS.
If you get no help from here, you should go ask on freenode's
rubyonrails channel.. There's a couple of really competent rails guys
there who are usually quite helpful.