[wpt-sync] Sync PR 20840 - COEP: Enforce CORP in cache.match()
Categories
(Core :: DOM: Core & HTML, task, P4)
Tracking
()
Tracking | Status | |
---|---|---|
firefox73 | --- | fixed |
People
(Reporter: mozilla.org, Unassigned)
References
()
Details
(Whiteboard: [wptsync downstream])
Sync web-platform-tests PR 20840 into mozilla-central (this bug is closed when the sync is complete).
PR: https://github.com/web-platform-tests/wpt/pull/20840
Details from upstream follow.
arthursonzogni <arthursonzogni@chromium.org> wrote:
COEP: Enforce CORP in cache.match()
[PROTOTYPE] => DO NOT COMMIT.
Document using:
"Cross-Origin-Embedder-Policy: require-corp"
must not access cross-origin response that do not have the header:
"Cross-Origin-Resource-Policy: cross-site"This is about only no-cors requests. CORS requests are checked against the
CORS headers instead.See:
Bug:1031542
Change-Id: I94a2cb9435fcf3e76f57a8f3d3344c87fa23f9a9
Reviewed-on: https://chromium-review.googlesource.com/1973913
WPT-Export-Revision: a83d0f85d6599eba17958e2827d9ad20fb8bdfe7
Assignee | ||
Comment 1•4 years ago
|
||
PR 20840 applied with additional changes from upstream: 974fc9ffb62580113842d878b84599fe13d74abe, e3811c8ad1027a1378660fb5f9bbd2fd725ce3be
Assignee | ||
Updated•4 years ago
|
Assignee | ||
Comment 2•4 years ago
|
||
Pushed to try (stability) https://treeherder.mozilla.org/#/jobs?repo=try&revision=dd3eadd9c913a34e2029e45fedb100d3d975ce01
Assignee | ||
Comment 3•4 years ago
|
||
CI Results
Ran 13 Firefox configurations based on mozilla-central, and Firefox, Chrome, and Safari on GitHub CI
Total 1 tests and 29 subtests
Status Summary
Firefox
OK : 1
PASS: 25[['GitHub']] 27[[u'Gecko-android-em-7.0-x86_64-debug-geckoview', u'Gecko-android-em-7.0-x86_64-opt-geckoview', u'Gecko-linux64-asan-opt', u'Gecko-linux64-debug', u'Gecko-linux64-opt', u'Gecko-linux64-qr-debug', u'Gecko-linux64-qr-opt', u'Gecko-windows10-64-debug', u'Gecko-windows10-64-opt', u'Gecko-windows10-64-qr-debug', u'Gecko-windows10-64-qr-opt', u'Gecko-windows7-32-debug', u'Gecko-windows7-32-opt']]
FAIL: 2[[u'Gecko-android-em-7.0-x86_64-debug-geckoview', u'Gecko-android-em-7.0-x86_64-opt-geckoview', u'Gecko-linux64-asan-opt', u'Gecko-linux64-debug', u'Gecko-linux64-opt', u'Gecko-linux64-qr-debug', u'Gecko-linux64-qr-opt', u'Gecko-windows10-64-debug', u'Gecko-windows10-64-opt', u'Gecko-windows10-64-qr-debug', u'Gecko-windows10-64-qr-opt', u'Gecko-windows7-32-debug', u'Gecko-windows7-32-opt']] 4[['GitHub']]
Chrome
OK : 1
PASS: 27
FAIL: 2
Safari
OK : 1
PASS: 27
FAIL: 2
Links
Gecko CI (Treeherder)
GitHub PR Head
GitHub PR Base
Details
New Tests That Don't Pass
/html/cross-origin-embedder-policy/require-corp-load-from-cache-storage.https.html
Fetch cross-origin no-cors cors-disabled corp-same-origin from network and CacheStorage.: FAIL [GitHub
], PASS [Gecko-android-em-7.0-x86_64-debug-geckoview
, Gecko-android-em-7.0-x86_64-opt-geckoview
, Gecko-linux64-asan-opt
, Gecko-linux64-debug
, Gecko-linux64-opt
, Gecko-linux64-qr-debug
, Gecko-linux64-qr-opt
, Gecko-windows10-64-debug
, Gecko-windows10-64-opt
, Gecko-windows10-64-qr-debug
, Gecko-windows10-64-qr-opt
, Gecko-windows7-32-debug
, Gecko-windows7-32-opt
] (Chrome: PASS, Safari: PASS)
Fetch cross-origin no-cors cors-enabled corp-undefined from network and CacheStorage.: FAIL (Chrome: FAIL, Safari: FAIL)
Fetch cross-origin no-cors cors-disabled corp-undefined from network and CacheStorage.: FAIL (Chrome: FAIL, Safari: FAIL)
Fetch cross-origin no-cors cors-enabled corp-same-origin from network and CacheStorage.: FAIL [GitHub
], PASS [Gecko-android-em-7.0-x86_64-debug-geckoview
, Gecko-android-em-7.0-x86_64-opt-geckoview
, Gecko-linux64-asan-opt
, Gecko-linux64-debug
, Gecko-linux64-opt
, Gecko-linux64-qr-debug
, Gecko-linux64-qr-opt
, Gecko-windows10-64-debug
, Gecko-windows10-64-opt
, Gecko-windows10-64-qr-debug
, Gecko-windows10-64-qr-opt
, Gecko-windows7-32-debug
, Gecko-windows7-32-opt
] (Chrome: PASS, Safari: PASS)
Assignee | ||
Comment 4•4 years ago
|
||
CI Results
Ran 13 Firefox configurations based on mozilla-central, and Firefox, Chrome, and Safari on GitHub CI
Total 1 tests and 29 subtests
Status Summary
Firefox
OK : 1
PASS: 25[['GitHub']] 27[[u'Gecko-android-em-7.0-x86_64-debug-geckoview', u'Gecko-android-em-7.0-x86_64-opt-geckoview', u'Gecko-linux64-asan-opt', u'Gecko-linux64-debug', u'Gecko-linux64-opt', u'Gecko-linux64-qr-debug', u'Gecko-linux64-qr-opt', u'Gecko-windows10-64-debug', u'Gecko-windows10-64-opt', u'Gecko-windows10-64-qr-debug', u'Gecko-windows10-64-qr-opt', u'Gecko-windows7-32-debug', u'Gecko-windows7-32-opt']]
FAIL: 2[[u'Gecko-android-em-7.0-x86_64-debug-geckoview', u'Gecko-android-em-7.0-x86_64-opt-geckoview', u'Gecko-linux64-asan-opt', u'Gecko-linux64-debug', u'Gecko-linux64-opt', u'Gecko-linux64-qr-debug', u'Gecko-linux64-qr-opt', u'Gecko-windows10-64-debug', u'Gecko-windows10-64-opt', u'Gecko-windows10-64-qr-debug', u'Gecko-windows10-64-qr-opt', u'Gecko-windows7-32-debug', u'Gecko-windows7-32-opt']] 4[['GitHub']]
Chrome
OK : 1
PASS: 27
FAIL: 2
Safari
OK : 1
PASS: 27
FAIL: 2
Links
Gecko CI (Treeherder)
GitHub PR Head
GitHub PR Base
Details
New Tests That Don't Pass
/html/cross-origin-embedder-policy/require-corp-load-from-cache-storage.https.html
Fetch cross-origin no-cors cors-disabled corp-same-origin from network and CacheStorage.: FAIL [GitHub
], PASS [Gecko-android-em-7.0-x86_64-debug-geckoview
, Gecko-android-em-7.0-x86_64-opt-geckoview
, Gecko-linux64-asan-opt
, Gecko-linux64-debug
, Gecko-linux64-opt
, Gecko-linux64-qr-debug
, Gecko-linux64-qr-opt
, Gecko-windows10-64-debug
, Gecko-windows10-64-opt
, Gecko-windows10-64-qr-debug
, Gecko-windows10-64-qr-opt
, Gecko-windows7-32-debug
, Gecko-windows7-32-opt
] (Chrome: PASS, Safari: PASS)
Fetch cross-origin no-cors cors-enabled corp-undefined from network and CacheStorage.: FAIL (Chrome: FAIL, Safari: FAIL)
Fetch cross-origin no-cors cors-disabled corp-undefined from network and CacheStorage.: FAIL (Chrome: FAIL, Safari: FAIL)
Fetch cross-origin no-cors cors-enabled corp-same-origin from network and CacheStorage.: FAIL [GitHub
], PASS [Gecko-android-em-7.0-x86_64-debug-geckoview
, Gecko-android-em-7.0-x86_64-opt-geckoview
, Gecko-linux64-asan-opt
, Gecko-linux64-debug
, Gecko-linux64-opt
, Gecko-linux64-qr-debug
, Gecko-linux64-qr-opt
, Gecko-windows10-64-debug
, Gecko-windows10-64-opt
, Gecko-windows10-64-qr-debug
, Gecko-windows10-64-qr-opt
, Gecko-windows7-32-debug
, Gecko-windows7-32-opt
] (Chrome: PASS, Safari: PASS)
Assignee | ||
Comment 5•4 years ago
|
||
CI Results
Ran 13 Firefox configurations based on mozilla-central, and Firefox, Chrome, and Safari on GitHub CI
Total 1 tests and 29 subtests
Status Summary
Firefox
OK : 1
PASS: 25[['GitHub']] 27[[u'Gecko-android-em-7.0-x86_64-debug-geckoview', u'Gecko-android-em-7.0-x86_64-opt-geckoview', u'Gecko-linux64-asan-opt', u'Gecko-linux64-debug', u'Gecko-linux64-opt', u'Gecko-linux64-qr-debug', u'Gecko-linux64-qr-opt', u'Gecko-windows10-64-debug', u'Gecko-windows10-64-opt', u'Gecko-windows10-64-qr-debug', u'Gecko-windows10-64-qr-opt', u'Gecko-windows7-32-debug', u'Gecko-windows7-32-opt']]
FAIL: 2[[u'Gecko-android-em-7.0-x86_64-debug-geckoview', u'Gecko-android-em-7.0-x86_64-opt-geckoview', u'Gecko-linux64-asan-opt', u'Gecko-linux64-debug', u'Gecko-linux64-opt', u'Gecko-linux64-qr-debug', u'Gecko-linux64-qr-opt', u'Gecko-windows10-64-debug', u'Gecko-windows10-64-opt', u'Gecko-windows10-64-qr-debug', u'Gecko-windows10-64-qr-opt', u'Gecko-windows7-32-debug', u'Gecko-windows7-32-opt']] 4[['GitHub']]
Chrome
OK : 1
PASS: 27
FAIL: 2
Safari
OK : 1
PASS: 27
FAIL: 2
Links
Gecko CI (Treeherder)
GitHub PR Head
GitHub PR Base
Details
New Tests That Don't Pass
/html/cross-origin-embedder-policy/require-corp-load-from-cache-storage.https.html
Fetch cross-origin no-cors cors-disabled corp-same-origin from network and CacheStorage.: FAIL [GitHub
], PASS [Gecko-android-em-7.0-x86_64-debug-geckoview
, Gecko-android-em-7.0-x86_64-opt-geckoview
, Gecko-linux64-asan-opt
, Gecko-linux64-debug
, Gecko-linux64-opt
, Gecko-linux64-qr-debug
, Gecko-linux64-qr-opt
, Gecko-windows10-64-debug
, Gecko-windows10-64-opt
, Gecko-windows10-64-qr-debug
, Gecko-windows10-64-qr-opt
, Gecko-windows7-32-debug
, Gecko-windows7-32-opt
] (Chrome: PASS, Safari: PASS)
Fetch cross-origin no-cors cors-enabled corp-undefined from network and CacheStorage.: FAIL (Chrome: FAIL, Safari: FAIL)
Fetch cross-origin no-cors cors-disabled corp-undefined from network and CacheStorage.: FAIL (Chrome: FAIL, Safari: FAIL)
Fetch cross-origin no-cors cors-enabled corp-same-origin from network and CacheStorage.: FAIL [GitHub
], PASS [Gecko-android-em-7.0-x86_64-debug-geckoview
, Gecko-android-em-7.0-x86_64-opt-geckoview
, Gecko-linux64-asan-opt
, Gecko-linux64-debug
, Gecko-linux64-opt
, Gecko-linux64-qr-debug
, Gecko-linux64-qr-opt
, Gecko-windows10-64-debug
, Gecko-windows10-64-opt
, Gecko-windows10-64-qr-debug
, Gecko-windows10-64-qr-opt
, Gecko-windows7-32-debug
, Gecko-windows7-32-opt
] (Chrome: PASS, Safari: PASS)
Assignee | ||
Comment 6•4 years ago
|
||
CI Results
Ran 13 Firefox configurations based on mozilla-central, and Firefox, Chrome, and Safari on GitHub CI
Total 1 tests and 29 subtests
Status Summary
Firefox
OK : 1
PASS: 25[['GitHub']] 27[[u'Gecko-android-em-7.0-x86_64-debug-geckoview', u'Gecko-android-em-7.0-x86_64-opt-geckoview', u'Gecko-linux64-asan-opt', u'Gecko-linux64-debug', u'Gecko-linux64-opt', u'Gecko-linux64-qr-debug', u'Gecko-linux64-qr-opt', u'Gecko-windows10-64-debug', u'Gecko-windows10-64-opt', u'Gecko-windows10-64-qr-debug', u'Gecko-windows10-64-qr-opt', u'Gecko-windows7-32-debug', u'Gecko-windows7-32-opt']]
FAIL: 2[[u'Gecko-android-em-7.0-x86_64-debug-geckoview', u'Gecko-android-em-7.0-x86_64-opt-geckoview', u'Gecko-linux64-asan-opt', u'Gecko-linux64-debug', u'Gecko-linux64-opt', u'Gecko-linux64-qr-debug', u'Gecko-linux64-qr-opt', u'Gecko-windows10-64-debug', u'Gecko-windows10-64-opt', u'Gecko-windows10-64-qr-debug', u'Gecko-windows10-64-qr-opt', u'Gecko-windows7-32-debug', u'Gecko-windows7-32-opt']] 4[['GitHub']]
Chrome
OK : 1
PASS: 27
FAIL: 2
Safari
OK : 1
PASS: 27
FAIL: 2
Links
Gecko CI (Treeherder)
GitHub PR Head
GitHub PR Base
Details
New Tests That Don't Pass
/html/cross-origin-embedder-policy/require-corp-load-from-cache-storage.https.html
Fetch cross-origin no-cors cors-disabled corp-same-origin from network and CacheStorage.: FAIL [GitHub
], PASS [Gecko-android-em-7.0-x86_64-debug-geckoview
, Gecko-android-em-7.0-x86_64-opt-geckoview
, Gecko-linux64-asan-opt
, Gecko-linux64-debug
, Gecko-linux64-opt
, Gecko-linux64-qr-debug
, Gecko-linux64-qr-opt
, Gecko-windows10-64-debug
, Gecko-windows10-64-opt
, Gecko-windows10-64-qr-debug
, Gecko-windows10-64-qr-opt
, Gecko-windows7-32-debug
, Gecko-windows7-32-opt
] (Chrome: PASS, Safari: PASS)
Fetch cross-origin no-cors cors-enabled corp-undefined from network and CacheStorage.: FAIL (Chrome: FAIL, Safari: FAIL)
Fetch cross-origin no-cors cors-disabled corp-undefined from network and CacheStorage.: FAIL (Chrome: FAIL, Safari: FAIL)
Fetch cross-origin no-cors cors-enabled corp-same-origin from network and CacheStorage.: FAIL [GitHub
], PASS [Gecko-android-em-7.0-x86_64-debug-geckoview
, Gecko-android-em-7.0-x86_64-opt-geckoview
, Gecko-linux64-asan-opt
, Gecko-linux64-debug
, Gecko-linux64-opt
, Gecko-linux64-qr-debug
, Gecko-linux64-qr-opt
, Gecko-windows10-64-debug
, Gecko-windows10-64-opt
, Gecko-windows10-64-qr-debug
, Gecko-windows10-64-qr-opt
, Gecko-windows7-32-debug
, Gecko-windows7-32-opt
] (Chrome: PASS, Safari: PASS)
Pushed by wptsync@mozilla.com: https://hg.mozilla.org/integration/autoland/rev/b473916fb1a3 [wpt PR 20840] - COEP: Enforce CORP in cache.match(), a=testonly
Comment 8•4 years ago
|
||
bugherder |
Description
•