I hope that's not causing any other issues then -

like trying to load from that URL or so?

Thanks in any case, good catch.

regards,

Martin

On 1/26/06, Mario Ivankovits <[EMAIL PROTECTED]> wrote:
> Hi!
>
> Our application generally uses https.
>
> We also use the HtmlInputCalendar component which uses the <iframe trick
> to avoid combo-boxes show through.
>
> The "iframe" in question will be generated in javascript without the
> src="" attribute.
>
> Now, if the user clicks on the calendar-popup-button we get a security
> warning in IE 6.0.2800.1106 SP1 telling us the page contains secure and
> non-secure objects.
>
> The only solution I found to avoid this is to add a https url to the iframe.
> I tested it outside of myfaces and if I add e.g. a https url to a
> blank.gif it works without this message.
>
> Now the progress bar of IE shows some activity the first time the user
> press such a button, but the more annoying message box disappears.
>
> The place in question is in popcalendar.js _hideElement. In case of
> https we should provide a https url to such a placeholder which will be
> used as value for the src attribute.
> Shall I prepare a patch, or is there any developer willing to have a
> look at it?
>
> Thanks!
> Ciao,
> Mario
>
>


--

http://www.irian.at

Your JSF powerhouse -
JSF Consulting, Development and
Courses in English and German

Professional Support for Apache MyFaces

Reply via email to