[Webkit-unassigned] [Bug 210739] [SOUP] Disable HSTS for requests when cookies will be blocked by ITP

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Fri Jun 12 06:50:35 PDT 2020


https://bugs.webkit.org/show_bug.cgi?id=210739

Michael Catanzaro <mcatanzaro at gnome.org> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
 Attachment #401718|review?                     |review+
              Flags|                            |

--- Comment #17 from Michael Catanzaro <mcatanzaro at gnome.org> ---
Comment on attachment 401718
  --> https://bugs.webkit.org/attachment.cgi?id=401718
Patch

I think this is correct.

The only trick here is that we want Upgrade Insecure Requests to take precedence, so the request should still be upgraded to HTTPS if that's used even if cookies are blocked. But that should be handled... somewhere else... so it should be fine.

-- 
You are receiving this mail because:
You are the assignee for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.webkit.org/pipermail/webkit-unassigned/attachments/20200612/47b465e7/attachment.htm>


More information about the webkit-unassigned mailing list