Closed Bug 1780793 Opened 2 years ago Closed 2 years ago

Automatic proxy (pac) configuration cannot be downloaded if HTTPS-Only mode is enabled and the file is on a http site


(Core :: DOM: Security, defect)

Firefox 91





(Reporter: patrick.zanon, Unassigned, NeedInfo)


(Blocks 1 open bug)


User Agent: Mozilla/5.0 (X11; Linux x86_64; rv:91.0) Gecko/20100101 Firefox/91.0

Steps to reproduce:

  1. added the auto configuration of proxy on the operating system (debian linux) pointing to
  2. in Firefox the proxy configuration has been enabled to get settings from system
  3. in Firefox the HTTPS-Only mode has been enabled
  4. in Firefox the HTTPS-Only the exception for has been added

Actual results:

In the browser console we can see:

HTTPS-Only Mode: Aggiornamento della richiesta non sicura da “” a “https”.
HTTPS-Only Mode: Aggiornamento non riuscito per la richiesta non sicura “”. (M6-C13)

and the configuration is not loaded.

Expected results:

We should see:

PAC file installed from “”

and the browser should regularly load data from proxy or directly according to the configuration.

The Bugbug bot thinks this bug should belong to the 'Core::DOM: Security' component, and is moving the bug to that component. Please correct in case you think the bot is wrong.

Component: Untriaged → DOM: Security
Product: Firefox → Core

You appear to be reporting this from a Firefox 91 build. Could you try a newer one? I believe this was fixed in Firefox 92 in bug 1722202. That bug says WPAD but the patched spot looks like it would handle PAC files, too -- the nsPACMan.cpp file certainly does and I don't see any other places it creates network loads in there.

You don't need to track down an old Firefox 92 build, you could try Firefox ESR-102 which is out now. Let us know if that fixes the problem or if we have to dig deeper.

Flags: needinfo?(patrick.zanon)
See Also: → 1722202
Closed: 2 years ago
Resolution: --- → INCOMPLETE
You need to log in before you can comment on or make changes to this bug.