dom/security/test/mixedcontentblocker/file_bug1550792.html
author Dana Keeler <dkeeler@mozilla.com>
Sat, 12 Jul 2025 15:57:37 +0000 (13 hours ago)
changeset 796342 3a804f83c6b282c3c6b6ed9b67bacbc277bfb300
parent 681833 b04b575a79ba989b1c93cd1a9cb6e450b658d6a7
permissions -rw-r--r--
Bug 1976779 - rsclientcerts: make each backend responsible for rate-limiting calls to find_objects r=jschanck Before this patch, `rsclientcerts::manager` would rate-limit calls to `find_objects` to once every 3 seconds because the underlying operation can be time-consuming (in particular, on macOS and Windows, if there are many certificates/keys available). On Android, keys aren't available until the user selects one, which means that if a call to `find_objects` happened before the selection prompt was shown (which is what happens) and the user chose one in less than 3 seconds, the backend wouldn't search again, thus making it seem like no keys were available, which would cause Firefox to not send a client certificate. This patch makes each backend implementation responsible for this rate-limiting, because only they know if it's appropriate to do so (in particular, on Android, `find_objects` doesn't have the same performance concern as on macOS and Windows because rather than searching for certificates and keys, it asks `ClientAuthCertificateManager` for the cached list of certificates and keys that have already been approved for use by the user). Differential Revision: https://phabricator.services.mozilla.com/D257065
<!DOCTYPE HTML>
<html>
<head>
  <meta charset="utf-8">
</head>
<body>
  <iframe id="nestframe"></iframe>
<script>
  let nestframe = document.getElementById("nestframe");

  window.addEventListener("message", (event) => {
    parent.postMessage(event.data, "*");

    // Only create second iframe once
    if(event.data.type === "https") {
      return;
    }

    nestframe.contentDocument.body.innerHTML = `
        <iframe id="frametwo"
          src=\"https://example.com\"
          onload=\"parent.postMessage({status:'loaded', type: 'https'}, '*')\"
          onerror=\"parent.postMessage({status:'blocked', type: 'https'}, '*')\"
        ></iframe>`;
  });

  nestframe.onload = (event) => {
    nestframe.contentDocument.body.innerHTML = `
      <iframe id="frameone"
        src=\"http://example.com\"
        onload=\"parent.postMessage({status:'loaded', type: 'http'}, '*')\"
        onerror=\"parent.postMessage({status:'blocked', type: 'http'}, '*')\"
      ></iframe>`;
  }

  nestframe.src = "about:blank";
</script>
</body>
</html>