summaryrefslogtreecommitdiffstats
path: root/dom/security/nsCSPContext.cpp
diff options
context:
space:
mode:
authorNew Tobin Paradigm <email@mattatobin.com>2018-04-14 18:14:10 -0400
committerGitHub <noreply@github.com>2018-04-14 18:14:10 -0400
commit8a95c03dcd2a7f2c6d64b6ee917f6cb363e9ca60 (patch)
treecf1212983e91ea5c196412a67a82818b59f93dba /dom/security/nsCSPContext.cpp
parent9282781bdfa7168685ee3716e283735fd9095975 (diff)
parent7d67148f52d158b80841f83dc7a023c637e11bf0 (diff)
downloadUXP-8a95c03dcd2a7f2c6d64b6ee917f6cb363e9ca60.tar
UXP-8a95c03dcd2a7f2c6d64b6ee917f6cb363e9ca60.tar.gz
UXP-8a95c03dcd2a7f2c6d64b6ee917f6cb363e9ca60.tar.lz
UXP-8a95c03dcd2a7f2c6d64b6ee917f6cb363e9ca60.tar.xz
UXP-8a95c03dcd2a7f2c6d64b6ee917f6cb363e9ca60.zip
Merge pull request #169 from janekptacijarabaci/csp_frame-ancestors_1
moebius#159: CSP - support for "frame-ancestors" in "Content-Security-Policy-Report-Only"
Diffstat (limited to 'dom/security/nsCSPContext.cpp')
-rw-r--r--dom/security/nsCSPContext.cpp8
1 files changed, 0 insertions, 8 deletions
diff --git a/dom/security/nsCSPContext.cpp b/dom/security/nsCSPContext.cpp
index 5e435d4ca..a7517f65e 100644
--- a/dom/security/nsCSPContext.cpp
+++ b/dom/security/nsCSPContext.cpp
@@ -219,14 +219,6 @@ nsCSPContext::permitsInternal(CSPDirective aDir,
nsAutoString violatedDirective;
for (uint32_t p = 0; p < mPolicies.Length(); p++) {
-
- // According to the W3C CSP spec, frame-ancestors checks are ignored for
- // report-only policies (when "monitoring").
- if (aDir == nsIContentSecurityPolicy::FRAME_ANCESTORS_DIRECTIVE &&
- mPolicies[p]->getReportOnlyFlag()) {
- continue;
- }
-
if (!mPolicies[p]->permits(aDir,
aContentLocation,
aNonce,