No security warning is shown to the user when disabling OCSP in Preferences

NEW
Unassigned

Status

()

P5
normal
2 years ago
2 years ago

People

(Reporter: Atoll, Unassigned)

Tracking

Firefox Tracking Flags

(Not tracked)

Details

(Reporter)

Description

2 years ago
On Nightly 8/15, when I disable "Query OCSP responder", it offers no security warning or any indication whatsoever that I'm making my browsing experience less secure by doing so. Please consider showing a sad-face emoj-icon below the checkbox when it's unchecked.
It used to be buried under "Advanced" prefs, which is a kind of implicit warning not to mess with things you don't understand. But with the pref re-design this is certainly more noticeable to the average person.

See also bug 1172499 and whatever bug is investigating turning off OCSP by default anyway for perf reasons. (and if you disagree with that approach don't argue in _this_ bug about it: it likely won't be seen by the relevant people)
Component: General → Preferences
Flags: needinfo?(jjones)
(Reporter)

Updated

2 years ago
See Also: → bug 1156014
I agree, but think it's time to put OCSP configuration back into the about:config instead (see https://bugzilla.mozilla.org/show_bug.cgi?id=1172499#c5).
Flags: needinfo?(jjones)
You need to log in before you can comment on or make changes to this bug.