diff options
author | New Tobin Paradigm <email@mattatobin.com> | 2018-04-14 18:14:10 -0400 |
---|---|---|
committer | GitHub <noreply@github.com> | 2018-04-14 18:14:10 -0400 |
commit | 8a95c03dcd2a7f2c6d64b6ee917f6cb363e9ca60 (patch) | |
tree | cf1212983e91ea5c196412a67a82818b59f93dba /dom/security/nsCSPContext.cpp | |
parent | 9282781bdfa7168685ee3716e283735fd9095975 (diff) | |
parent | 7d67148f52d158b80841f83dc7a023c637e11bf0 (diff) | |
download | UXP-8a95c03dcd2a7f2c6d64b6ee917f6cb363e9ca60.tar UXP-8a95c03dcd2a7f2c6d64b6ee917f6cb363e9ca60.tar.gz UXP-8a95c03dcd2a7f2c6d64b6ee917f6cb363e9ca60.tar.lz UXP-8a95c03dcd2a7f2c6d64b6ee917f6cb363e9ca60.tar.xz UXP-8a95c03dcd2a7f2c6d64b6ee917f6cb363e9ca60.zip |
Merge pull request #169 from janekptacijarabaci/csp_frame-ancestors_1
moebius#159: CSP - support for "frame-ancestors" in "Content-Security-Policy-Report-Only"
Diffstat (limited to 'dom/security/nsCSPContext.cpp')
-rw-r--r-- | dom/security/nsCSPContext.cpp | 8 |
1 files changed, 0 insertions, 8 deletions
diff --git a/dom/security/nsCSPContext.cpp b/dom/security/nsCSPContext.cpp index 5e435d4ca..a7517f65e 100644 --- a/dom/security/nsCSPContext.cpp +++ b/dom/security/nsCSPContext.cpp @@ -219,14 +219,6 @@ nsCSPContext::permitsInternal(CSPDirective aDir, nsAutoString violatedDirective; for (uint32_t p = 0; p < mPolicies.Length(); p++) { - - // According to the W3C CSP spec, frame-ancestors checks are ignored for - // report-only policies (when "monitoring"). - if (aDir == nsIContentSecurityPolicy::FRAME_ANCESTORS_DIRECTIVE && - mPolicies[p]->getReportOnlyFlag()) { - continue; - } - if (!mPolicies[p]->permits(aDir, aContentLocation, aNonce, |