On Sat, Aug 15, 2015 at 01:00:38AM -0700, Gergo Tisza wrote:
That does not sound like a big deal since we are loading most Javascript
files from our own servers, and can fully control what headers are set, but
we ran into occasional problems in the past when using CORS (MediaViewer
uses
On Sun, Aug 16, 2015 at 5:20 AM, Faidon Liambotis fai...@wikimedia.org
wrote:
For Wikimedia sites, it is now impossible for proxies or firewalls to
strip headers, after the switch to HTTPS-only. Was this analysis done
before or during the HTTPS-only migration?
The data the 0.1% number is
Hi all,
as part of the ongoing project for collecting javascript errors [0] we have
been collecting metrics about CORS enabled script loading support; that
project is finished now, here is a short report. After the recent move to
load everything from the same domain [1] enabling CORS is not