The default bug view has changed. See this FAQ.

Status

()

Core
Security: PSM
3 years ago
11 months ago

People

(Reporter: mmc, Unassigned)

Tracking

(Depends on: 3 bugs)

unspecified
x86
Mac OS X
Points:
---
Dependency tree / graph

Firefox Tracking Flags

(firefox32 fixed, firefox33 fixed, relnote-firefox 32+)

Details

(Whiteboard: [psm-tracking])

The first iteration of CA pinning includes pinning only mozilla sites. It is possible to pin many more, this is the tracking bug for that.
Depends on: 744204
Blocks: 1004351
Depends on: 1004352
Depends on: 1004353
Depends on: 1004781
Depends on: 1004798
No longer blocks: 1004351
Depends on: 1004275, 1004351
Depends on: 1005430
Depends on: 1006710
Depends on: 1006713
Depends on: 1007844
Depends on: 772756
Depends on: 1009720
Depends on: 1011269
Depends on: 1011638
Depends on: 1012875
Depends on: 1004279
Depends on: 1012882
Depends on: 1019255
Depends on: 1019261
Depends on: 1019259
Depends on: 1027133
No longer depends on: 744204
added it for the beta 32 release notes:
"Public key pinning support enabled (learn more)"
learn more pointing to the wiki page
https://wiki.mozilla.org/SecurityEngineering/Public_Key_Pinning

I guess that also applies to Android, right?
status-firefox32: --- → fixed
status-firefox33: --- → fixed
relnote-firefox: --- → 32+
(In reply to Sylvestre Ledru [:sylvestre] from comment #1)
> added it for the beta 32 release notes:
> "Public key pinning support enabled (learn more)"
> learn more pointing to the wiki page
> https://wiki.mozilla.org/SecurityEngineering/Public_Key_Pinning
> 
> I guess that also applies to Android, right?

Thanks for asking, it only applies to desktop so far. We wanted to wait to turn it on for Fennec just in case there are massive problems :P

https://bugzilla.mozilla.org/show_bug.cgi?id=1019255

Fennec bug:
Depends on: 1047568
Depends on: 1047560
Depends on: 1059392
Added to 34 mobile release notes.
Whiteboard: [psm-tracking]
You need to log in before you can comment on or make changes to this bug.