Bug 1399939 - switch to highly restrictive profile for IDN, r=dveditz,jfkthame
authorGijs Kruitbosch <gijskruitbosch@gmail.com>
Thu, 28 Sep 2017 12:00:22 +0100
changeset 426375 e1c1ebf60808e5e94b9a03d8cb577990ac0b9ca1
parent 426374 ce2c129f0a87a4c0fe53063b8e45566484f4b938
child 426376 9a6261ed5c414add6f0fe588f300e830f54512c5
push id97
push userfmarier@mozilla.com
push dateSat, 14 Oct 2017 01:12:59 +0000
reviewersdveditz, jfkthame
bugs1399939
milestone58.0a1
Bug 1399939 - switch to highly restrictive profile for IDN, r=dveditz,jfkthame MozReview-Commit-ID: E5LRuQVfIZP
modules/libpref/init/all.js
--- a/modules/libpref/init/all.js
+++ b/modules/libpref/init/all.js
@@ -1913,26 +1913,26 @@ pref("network.jar.block-remote-files", t
 // generate them from punycode.
 pref("network.IDN_show_punycode", false);
 
 // If "network.IDN.use_whitelist" is set to true, TLDs with
 // "network.IDN.whitelist.tld" explicitly set to true are treated as
 // IDN-safe. Otherwise, they're treated as unsafe and punycode will be used
 // for displaying them in the UI (e.g. URL bar), unless they conform to one of
 // the profiles specified in
-// http://www.unicode.org/reports/tr36/proposed.html#Security_Levels_and_Alerts
+// https://www.unicode.org/reports/tr39/#Restriction_Level_Detection
 // If "network.IDN.restriction_profile" is "high", the Highly Restrictive
 // profile is used.
 // If "network.IDN.restriction_profile" is "moderate", the Moderately
 // Restrictive profile is used.
 // In all other cases, the ASCII-Only profile is used.
 // Note that these preferences are referred to ONLY when
 // "network.IDN_show_punycode" is false. In other words, all IDNs will be shown
 // in punycode if "network.IDN_show_punycode" is true.
-pref("network.IDN.restriction_profile", "moderate");
+pref("network.IDN.restriction_profile", "high");
 pref("network.IDN.use_whitelist", false);
 
 // ccTLDs
 pref("network.IDN.whitelist.ac", true);
 pref("network.IDN.whitelist.ar", true);
 pref("network.IDN.whitelist.at", true);
 pref("network.IDN.whitelist.br", true);
 pref("network.IDN.whitelist.ca", true);