[Author Prev][Author Next][Thread Prev][Thread Next][Author Index][Thread Index]

Re: [tor-bugs] #18692 [Tor Browser]: Use a signed HTTPS-Everywhere tag for nightly builds



#18692: Use a signed HTTPS-Everywhere tag for nightly builds
-------------------------------------------------+-------------------------
 Reporter:  gk                                   |          Owner:  tbb-
     Type:  enhancement                          |  team
 Priority:  Medium                               |         Status:  closed
Component:  Tor Browser                          |      Milestone:
 Severity:  Normal                               |        Version:
 Keywords:  ff45-esr, TorBrowserTeam201604,      |     Resolution:  wontfix
  GeorgKoppen201604                              |  Actual Points:
Parent ID:                                       |         Points:
 Reviewer:                                       |        Sponsor:
-------------------------------------------------+-------------------------
Changes (by gk):

 * status:  new => closed
 * resolution:   => wontfix


Comment:

 Signed tags actually don't help here as they are orthogonal to Mozilla's
 signing requirement. What one could do for the nightlies is to use a
 signed tag, get the corresponding AMO .xpi and use that signature for our
 own built .xpi. That works but seems to be a hassle not worth the effort.
 Thus, either we switch to AMO .xpi's or we stick to the EFF hosted version
 but whitelist that one, too. I am inclined to do the latter at the moment
 (which is #14970).

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/18692#comment:2>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online
_______________________________________________
tor-bugs mailing list
tor-bugs@xxxxxxxxxxxxxxxxxxxx
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-bugs