Closed Bug 1089473 Opened 10 years ago Closed 3 years ago

Unable to "Forget about this site" or otherwise mitigate punctilious HSTS effect

Categories

(Firefox for Android Graveyard :: General, enhancement)

33 Branch
ARM
Android
enhancement
Not set
normal

Tracking

(Not tracked)

RESOLVED INCOMPLETE

People

(Reporter: brian, Unassigned)

References

Details

(Keywords: privacy, sec-want)

User Agent: Mozilla/5.0 (Windows NT 6.3; WOW64; rv:33.0) Gecko/20100101 Firefox/33.0
Build ID: 20141011015303

Steps to reproduce:

Visit a site with an overly aggressive HTTP Strict Transport Security policy, that does not actually apply to all content for the domain.


Actual results:

An https: URL scheme is attempted for all sites on the domain, including ones that do not support it. There does not appear to be a way for the user to reset the domain's HSTS status.


Expected results:

There needs to be some UI, somewhere, to allow forgetting the HSTS status for Firefox mobile.
Severity: normal → enhancement
OS: Windows 8.1 → Android
Hardware: x86_64 → ARM
Desktop does this via History->Forget about this site.
To clarify, this bug is about Firefox for Android.
(In reply to Brian Lalonde from comment #2)
> To clarify, this bug is about Firefox for Android.

You filed it in the right product so that's clear. I pointed out where this sits in desktop to illustrate to our UX that even though we don't have a specific "button" for this, the possibility does exist on non-Android.
Status: UNCONFIRMED → NEW
Ever confirmed: true
Meanwhile the desktop version seems to have regressed (see bug 1119778), but we'll still want this kept separate as an android bug.
Keywords: privacy, sec-want
See Also: → 1119778
We have completed our launch of our new Firefox on Android. The development of the new versions use GitHub for issue tracking. If the bug report still reproduces in a current version of [Firefox on Android nightly](https://play.google.com/store/apps/details?id=org.mozilla.fenix) an issue can be reported at the [Fenix GitHub project](https://github.com/mozilla-mobile/fenix/). If you want to discuss your report please use [Mozilla's chat](https://wiki.mozilla.org/Matrix#Connect_to_Matrix) server https://chat.mozilla.org and join the [#fenix](https://chat.mozilla.org/#/room/#fenix:mozilla.org) channel.
Status: NEW → RESOLVED
Closed: 3 years ago
Resolution: --- → INCOMPLETE
Product: Firefox for Android → Firefox for Android Graveyard
You need to log in before you can comment on or make changes to this bug.