From: Michael Vincent van Rantwijk <[EMAIL PROTECTED]>
>>now that Mozilla Firefox 3, and derivatives, *will* be required to use SSL to 
>>server the file from (non SSL won;t be possible, just read the newsgroup and 
>>bug report)<<

You need to distinguish between proposals and promises. There is no promise 
this will be in Firefox 3, even if Dave Townsend writes the code today. 
However, I do agree we should make serving of update.rdf over SSL an option.

Proposal:

http://wiki.mozilla.org/User:Mossop:Fx-Docs:AddonUpdateSecurity


Newsgroup discussions:
"Proposed changes to the add-on update mechanism"
http://groups.google.com/group/mozilla.dev.extensions/browse_thread/thread/a29f213e165d8267/93a7917b0c1e63c3#93a7917b0c1e63c3
http://groups.google.com/group/mozilla.dev.extensions/browse_thread/thread/91d90abaa9ca60e8/877de71888d8708c

Forum discussion:
http://forums.mozillazine.org/viewtopic.php?p=2927908

Bug report:
https://bugzilla.mozilla.org/show_bug.cgi?id=378216




_______________________________________________
Project_owners mailing list
[email protected]
http://mozdev.org/mailman/listinfo/project_owners

Reply via email to