No security warning is shown to the user when disabling OCSP in Preferences

NEW
Unassigned

Status

()

Firefox
Preferences
P5
normal
6 months ago
5 months ago

People

(Reporter: atoll, Unassigned)

Tracking

Firefox Tracking Flags

(Not tracked)

Details

(Reporter)

Description

6 months ago
On Nightly 8/15, when I disable "Query OCSP responder", it offers no security warning or any indication whatsoever that I'm making my browsing experience less secure by doing so. Please consider showing a sad-face emoj-icon below the checkbox when it's unchecked.
It used to be buried under "Advanced" prefs, which is a kind of implicit warning not to mess with things you don't understand. But with the pref re-design this is certainly more noticeable to the average person.

See also bug 1172499 and whatever bug is investigating turning off OCSP by default anyway for perf reasons. (and if you disagree with that approach don't argue in _this_ bug about it: it likely won't be seen by the relevant people)
Component: General → Preferences
Flags: needinfo?(jjones)
(Reporter)

Updated

6 months ago
See Also: → bug 1156014

Comment 2

6 months ago
I agree, but think it's time to put OCSP configuration back into the about:config instead (see https://bugzilla.mozilla.org/show_bug.cgi?id=1172499#c5).
Flags: needinfo?(jjones)
You need to log in before you can comment on or make changes to this bug.