dom/security/nsCSPService.cpp
22d7899c79f85237e8590843efd729e69996deb2
created 2018-03-29 12:16 +0200
pushed 2018-04-26 21:04 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1439713 - Change nsIContentPolicy shouldLoad to take an <uri, loadInfo> pair instead of the various args. r=bz
93507e0f2d3d6aef495299ee61e451406edb643c
created 2018-03-01 13:45 +0100
pushed 2018-03-02 22:13 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1439444: resource and chrome images and styles should not be subject to CSP. r=gijs
fc871960d805efc5b3c4ac9e0682312d7bb23bda
created 2018-01-25 14:20 +0100
pushed 2018-03-01 16:46 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1432358: Make resource URIs subject to CSP. r=gijs
5d726f46260f0d96dba2ec23d5b01375f588c6e1
created 2018-02-12 19:58 +0200
pushed 2018-03-01 16:46 +0000
Sebastian Hengst Sebastian Hengst - Backed out 4 changesets (bug 1432358) for failing xpcshell's test_ext_contentscript_triggeringPrincipal.js
91c948c94506089d6f40dc59d13c75ab78ce914d
created 2018-01-25 14:20 +0100
pushed 2018-03-01 16:46 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1432358: Make resource URIs subject to CSP. r=gijs
a824791e0d28623e928f9b5314cb6d948b2218ef
created 2018-02-09 23:46 +0200
pushed 2018-03-01 16:46 +0000
Sebastian Hengst Sebastian Hengst - Backed out 3 changesets (bug 1432358) for failing xpcshell's test_ext_contentscript_triggeringPrincipal.js on Windows debug. CLOSED TREE
60852dec9e041887bea80313a70ad2a4cba745a6
created 2018-01-25 14:20 +0100
pushed 2018-03-01 16:46 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1432358: Make resource URIs subject to CSP. r=gijs
41e5a4b54c93e40e92e1e697efa936e90a4c5a41
created 2017-10-07 14:53 -0700
pushed 2017-11-02 16:33 +0000
Kris Maglione Kris Maglione - Bug 1407056: Part 2 - Override page CSP for loads by expanded principals. r=bz,krizsa
a8b48c193197fdcd3075db581e5b7e7de34c7b39
created 2017-03-22 11:39 +0100
pushed 2017-06-12 13:08 +0000
Andrea Marchesini Andrea Marchesini - Bug 1343933 - Renaming Principal classes - part 4 - ContentPrincipal, r=qdot
d334627447da754b1d463accd17d456a6d6605ed
created 2017-02-14 10:06 -0500
pushed 2017-04-18 12:07 +0000
Ben Kelly Ben Kelly - Bug 1338304 P1 Make nsCSPService cancel the channel if a redirect is blocked by CSP. r=ckerschb
4a1f0be6fa1d318be2799b5066a098a9c931fa70
created 2017-01-12 09:42 +0100
pushed 2017-03-06 20:48 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1330035 - Explicitly use javascript: instead of URI_INHERITS_SECURITY_CONTEXT within subjectToCSP(). r=dveditz
b516e1d6e46165d5553ec894fadc55ce514f862c
created 2016-08-26 16:02 +1000
pushed 2016-11-14 12:26 +0000
Nicholas Nethercote Nicholas Nethercote - Bug 1297961 (part 1) - Introduce nsURI::GetSpecOrDefault(). r=hurley.
82092aed0171cf6f9073d224c8b766b7bce41c4f
created 2016-05-18 22:02 -0400
pushed 2016-08-01 13:59 +0000
Patrick McManus Patrick McManus - Bug 1274376 - more mozilla::net namespaces r=dragana
7ca9567ed5c7f2055b9911dee5b41e62398361c7
created 2016-03-24 23:09 -0400
pushed 2016-06-06 19:02 +0000
Tanvi Vyas Tanvi Vyas - Bug 1259678 - Refactor SubjectToCSP to avoid calling ShouldLoad if CSP doesn't apply to the content type. r=ckerschb
bf293d7d7ac6177bd73bddefce083847607f5bb7
created 2014-08-05 11:47 -0700
pushed 2016-04-25 16:57 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 908933 - Part1 - CSP: Call ShouldLoad inside ShouldProcess for TYPE_OBJECT. r=ckerschb
8ebc41358b44cbd1e4ce2209a7a354e18727bcf8
created 2016-01-19 09:10 -0800
pushed 2016-03-07 14:18 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1239397: Send Internal ContentPolicyType to CSP and MixedContent (r=sicking)
257051f3218b135671c7a21708d6af85b36515f7
created 2015-12-17 12:07 +0800
pushed 2016-03-07 14:18 +0000
Ethan Tseng Ethan Tseng - Bug 1030936 - [CSP] remove fast-path for certified apps once the C++ backend is activated. r=ckerschb
c728b4bd9be62afcfda73eba03edc3bd07aee33f
created 2015-11-23 11:09 -0800
pushed 2016-01-25 13:55 +0000
sajitk sajitk - Bug 1219478: Replace PRLogModuleInfo usage with LazyLogModule in dom folders except media.r=amerchesini
149cc9f89a2e6ac17e10ee926f739b0e2f4a2180
created 2015-11-14 19:29 -0800
pushed 2016-01-25 13:55 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 663570 - MetaCSP Part 6: CSP preload changes (r=sicking)
58d4c3876d0cd4ee42a48276a2c4ed6f7ee6e339
created 2015-10-28 16:32 -0700
pushed 2016-01-25 13:55 +0000
Kate McKinley Kate McKinley - Bug 1045891 - CSP 2 child-src implementation r=ckerschb
2d2e821fa20de7c6ee9878eab4c769fbcb74d053
created 2015-11-06 09:36 -0800
pushed 2016-01-25 13:55 +0000
Wes Kocher Wes Kocher - Backed out 4 changesets (bug 1045891) for b2g mochitest 7 failures
14818a2329a4846757098689aa0ef880ce8aee15
created 2015-10-28 16:32 -0700
pushed 2016-01-25 13:55 +0000
Kate McKinley Kate McKinley - Bug 1045891 - CSP 2 child-src implementation. r=ckerschb
fdb7c98c48141252b0ec48aba27fc545977182d3
created 2015-11-02 10:37 +0100
pushed 2016-01-25 13:55 +0000
Carsten "Tomcat" Book Carsten "Tomcat" Book - Backed out changeset 895c42544609 (bug 1045891)
895c42544609ed7e968ba2ef2c3940340331a1f2
created 2015-10-28 16:32 -0700
pushed 2016-01-25 13:55 +0000
Kate McKinley Kate McKinley - Bug 1045891 - CSP 2 child-src implementation r=ckerschb
a31b2d7d07b80484ae2b66689559e39108a7ee71
created 2015-10-19 11:14 -0700
pushed 2015-12-14 20:08 +0000
Jonas Sicking Jonas Sicking - Bug 1182571: Fix nsILoadInfo->GetContentPolicyType API to be less ambigious. Audit and fix all users of it. r=ckerschb
eca8be0e5336302a3a3de263f90ae4bd40a649bf
created 2015-10-18 19:59 -0700
pushed 2015-12-14 20:08 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1208559 - Hook up ServicerWorkers with CSP (r=sicking,bkelly,dveditz)
c98f6e3162261dc6c7053af06babc5b134b74496
created 2015-10-15 14:07 -0700
pushed 2015-12-14 20:08 +0000
Wes Kocher Wes Kocher - Backed out 2 changesets (bug 1182571) for being a likely cause of the Android S4 errors
8153ae231d16ee572c78a9d1d8b38fd5967b1d42
created 2015-10-15 12:18 -0700
pushed 2015-12-14 20:08 +0000
Jonas Sicking Jonas Sicking - Bug 1182571: Fix nsILoadInfo->GetContentPolicyType API to be less ambigious. Audit and fix all users of it. r=ckerschb
0e81b19b0f22e1a80930549b937cf62ced688068
created 2015-09-20 14:56 -0700
pushed 2015-12-14 20:08 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1048048 - add preload content policy types - csp changes (r=dveditz)
2f837630f5566d281aa6f51adb9cc2374da7fedc
created 2015-09-21 09:08 -0700
pushed 2015-12-14 20:08 +0000
Wes Kocher Wes Kocher - Backed out 7 changesets (bug 1048048) for android crashes in various chunks CLOSED TREE
4f91b10e8be000ee5408461c74099ca96156c0cf
created 2015-09-20 14:56 -0700
pushed 2015-12-14 20:08 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1048048 - add preload content policy types - csp changes (r=dveditz)
0086cb0ada91f77c6f0dcc115ca8b5051c2869ee
created 2015-06-16 08:49 -0400
pushed 2015-08-10 18:23 +0000
Ehsan Akhgari Ehsan Akhgari - Bug 1175114 - Translate the content policy type obtained in CSPService::AsyncOnChannelRedirect to an external one before invoking the content policy implementation; r=smaug
cc6436db5756bd60be9f01326f208d8f9bfb456b
created 2015-06-16 09:24 -0400
pushed 2015-08-10 18:23 +0000
Ehsan Akhgari Ehsan Akhgari - Bug 1175122 - Add more assertions to the in-tree content policy implementations to ensure that they receive external content policy types; r=baku
1eefebfb86eb72ac66b6a5707bcdff3fd1043974
created 2015-06-12 16:52 -0400
pushed 2015-08-10 18:23 +0000
Ehsan Akhgari Ehsan Akhgari - Bug 1174307 - Add some internal content policy types for the purpose of reflecting them on RequestContext; r=sicking
f52c18aac7ce0949190da943ec5d4ee86627d0f8
created 2015-06-03 15:25 -0700
pushed 2015-08-10 18:23 +0000
Eric Rahm Eric Rahm - Bug 1165515 - Part 13-2: Replace usage of PRLogModuleLevel and PR_LOG_*. rs=froydnj
0abfbc98614806464c6d932627eabd699bb47cc4
created 2015-06-03 15:22 -0700
pushed 2015-08-10 18:23 +0000
Eric Rahm Eric Rahm - Bug 1165515 - Part 3: Convert PR_LOG_TEST to MOZ_LOG_TEST. r=froydnj
3c8ed81098ddbe4a4c09e7aa652b5288dc4ce0d3
created 2015-06-02 13:05 +0200
pushed 2015-08-10 18:23 +0000
Carsten "Tomcat" Book Carsten "Tomcat" Book - Backed out 14 changesets (bug 1165515) for linux x64 e10s m2 test failures
7c3b45a47811b55f4e973d996dd149c5d575721b
created 2015-06-01 22:17 -0700
pushed 2015-08-10 18:23 +0000
Eric Rahm Eric Rahm - Bug 1165515 - Part 13-2: Replace usage of PRLogModuleLevel and PR_LOG_*. rs=froydnj
ffa4eb6d24b94146df5838e10b039e8b176c8edb
created 2015-06-01 22:17 -0700
pushed 2015-08-10 18:23 +0000
Eric Rahm Eric Rahm - Bug 1165515 - Part 3: Convert PR_LOG_TEST to MOZ_LOG_TEST. r=froydnj
3f1f9238e02fe107701bf3ab4237c0cb3b125710
created 2015-06-01 17:57 -0700
pushed 2015-08-10 18:23 +0000
Wes Kocher Wes Kocher - Backed out 14 changesets (bug 1165515) for b2g mochitest-6 permafail CLOSED TREE
150606c022a29517f43ee6907075170db825c947
created 2015-06-01 14:31 -0700
pushed 2015-08-10 18:23 +0000
Eric Rahm Eric Rahm - Bug 1165515 - Part 13-2: Replace usage of PRLogModuleLevel and PR_LOG_*. rs=froydnj
0ec74176f8def91d7b05ed05a03c92dd6283eeaa
created 2015-06-01 14:31 -0700
pushed 2015-08-10 18:23 +0000
Eric Rahm Eric Rahm - Bug 1165515 - Part 3: Convert PR_LOG_TEST to MOZ_LOG_TEST. r=froydnj
8a03e892db51e07a20a85f97abe073cee7be0fa0
created 2015-05-21 13:22 -0700
pushed 2015-08-10 18:23 +0000
Eric Rahm Eric Rahm - Bug 1165515 - Part 1: Convert PR_LOG to MOZ_LOG. r=froydnj
9fb7acc6f108dd473fae5df9a29b8ff4ddac915f
created 2015-05-19 11:15 -0700
pushed 2015-08-10 18:23 +0000
Eric Rahm Eric Rahm - Bug 1165518 - Part 2: Replace prlog.h with Logging.h. rs=froydnj
f86c4ccf1d175ee44cc54ed888c8486470a2b953
created 2015-05-11 14:22 -0700
pushed 2015-08-10 18:23 +0000
Eric Rahm Eric Rahm - Bug 1163196 - Part 2: Wrap expensive calls in PR_LOG_TEST. r=froydnj
e24aa2dd0e9a1d808569287ed9f69a570902b58d
created 2015-05-11 14:22 -0700
pushed 2015-08-10 18:23 +0000
Eric Rahm Eric Rahm - Bug 1163196 - Part 1: Remove instances of #ifdef PR_LOGGING in dom/security. r=froydnj
bd079aadd3feeee3f9b9f73c5e0bc4bd6a870722
created 2015-05-03 15:32 -0400
pushed 2015-06-29 20:18 +0000
Andrew McCreight Andrew McCreight - Bug 1152551, part 2 - Fix mode lines in dom/. r=jst
183190289b9c69fff9812491924005f2c1e8fbc9
created 2015-03-25 15:54 -0700
pushed 2015-06-29 20:18 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1086999 - CSP: Asterisk (*) wildcard should not allow blob:, data:, or filesystem: when matching source expressions (r=fabrice,pauljt)
785891c8e9978cdbb3e248bee4b12ec0a17158e5
created 2015-03-08 09:21 -0400
pushed 2015-05-11 18:39 +0000
Alexandre Lissy Alexandre Lissy - Bug 1138895 - Use proper origin for CSP fast path cache. r=geekboy
f1df4a83c72be98f39b1bafc2056359ed31c75ce
created 2015-03-04 12:02 -0500
pushed 2015-05-11 18:39 +0000
Ryan VanderMeulen Ryan VanderMeulen - Backed out changeset deeb2d276a85 (bug 1138454) for Gaia unit test bustage.
deeb2d276a85ae51e65cdb04dde20dea3ffb4914
created 2015-03-02 08:35 -0500
pushed 2015-05-11 18:39 +0000
Alexandre Lissy Alexandre Lissy - Bug 1138454 - Remove CSP fast path hack for certified apps. r=ckerschb
d302447734acae0f714e37f379eccb8ed348edde
created 2014-12-17 17:04 -0800
pushed 2015-02-23 15:17 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1112782 - Update Redirect handling for CSP followup - CLOSED TREE (r=me)
1f46d4d9d1dc01c42a8d82fc19b0a29953289400
created 2014-12-17 14:19 -0800
pushed 2015-02-23 15:17 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1112782 - Update Redirect handling for CSP (r=sstamm)
80b2348e3ab6b7a8c91733597eff20711436e4c5
created 2014-11-20 14:59 -0800
pushed 2015-02-23 15:17 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1021669 - Use protocol flags to whiteliste protocols not suspect to CSP (r=sstamm)
9de623894ce3c185f8f15f4e53e28d59f137a9ce
created 2014-10-27 16:58 -0700| base
pushed 2015-01-12 19:37 +0000
Christoph Kerschbaumer Christoph Kerschbaumer - Bug 1089912: Part 1, move csp into dom/security (r=sstamm,jst)
less more (0) tip