Closed Bug 1873342 Opened 2 years ago Closed 10 months ago

Remove dom.security.enforceIPCBasedPrincipalVetting pref

Categories

(Core :: DOM: Security, task)

task

Tracking

()

RESOLVED FIXED
142 Branch
Tracking Status
firefox142 --- fixed

People

(Reporter: gregp, Assigned: tschuster)

References

(Blocks 1 open bug)

Details

Attachments

(1 file)

This seems important. Why do we need to be able to turn it off?

Depends on: 1703215

Are we ready to turn this off?

Flags: needinfo?(ckerschb)

Tom was just talking about needing to enforce principal vetting more in our IPC calls. Does that mean the mechanism controlled by this pref is too limited? That individual IPC calls are routing around it? If we expand that control we'll want to put it behind a pref in case we break things. Does it make sense to expand the use of this pref for that, or let this one go away and invent a new, slightly different, one that only controls the additional coverage?

Flags: needinfo?(tom)

I think we can leave this around for now since we're going to be looking at this more closely in the future and changing how it behaves.

Flags: needinfo?(tom)
Flags: needinfo?(ckerschb)

WONTFIX for now. We'll re-evaluate later.

Status: NEW → RESOLVED
Closed: 2 years ago
Resolution: --- → WONTFIX
Assignee: nobody → tschuster
Status: RESOLVED → REOPENED
Resolution: WONTFIX → ---

We should probably just remove this pref now. If we want to change its behavior we can introduce a new pref (under a new name!) that just guards whatever new stuff we have planned. (Can someone link these plans?)

Duplicate of this bug: 1973707
Status: REOPENED → RESOLVED
Closed: 2 years ago10 months ago
Resolution: --- → FIXED
Target Milestone: --- → 142 Branch
QA Whiteboard: [qa-triage-done-c143/b142]
You need to log in before you can comment on or make changes to this bug.

Attachment

General

Creator:
Created:
Updated:
Size: