File: browser_csp_block_all_mixedcontent.js

package info (click to toggle)
firefox-esr 128.13.0esr-1
  • links: PTS, VCS
  • area: main
  • in suites: forky, sid, trixie
  • size: 4,230,012 kB
  • sloc: cpp: 7,103,971; javascript: 6,088,450; ansic: 3,653,980; python: 1,212,330; xml: 594,604; asm: 420,652; java: 182,969; sh: 71,124; makefile: 20,747; perl: 13,449; objc: 12,399; yacc: 4,583; cs: 3,846; pascal: 2,973; lex: 1,720; ruby: 1,194; exp: 762; php: 436; lisp: 258; awk: 247; sql: 66; sed: 54; csh: 10
file content (60 lines) | stat: -rw-r--r-- 1,788 bytes parent folder | download | duplicates (11)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
/*
 * Description of the Test:
 * We load an https page which uses a CSP including block-all-mixed-content.
 * The page tries to load a script over http. We make sure the UI is not
 * influenced when blocking the mixed content. In particular the page
 * should still appear fully encrypted with a green lock.
 */

const PRE_PATH = getRootDirectory(gTestPath).replace(
  "chrome://mochitests/content",
  "https://example.com"
);
var gTestBrowser = null;

// ------------------------------------------------------
function cleanUpAfterTests() {
  gBrowser.removeCurrentTab();
  window.focus();
  finish();
}

// ------------------------------------------------------
async function verifyUInotDegraded() {
  // make sure that not mixed content is loaded and also not blocked
  await assertMixedContentBlockingState(gTestBrowser, {
    activeLoaded: false,
    activeBlocked: false,
    passiveLoaded: false,
  });
  // clean up and finish test
  cleanUpAfterTests();
}

// ------------------------------------------------------
function runTests() {
  var newTab = BrowserTestUtils.addTab(gBrowser);
  gBrowser.selectedTab = newTab;
  gTestBrowser = gBrowser.selectedBrowser;
  newTab.linkedBrowser.stop();

  // Starting the test
  var url = PRE_PATH + "file_csp_block_all_mixedcontent.html";
  BrowserTestUtils.browserLoaded(gTestBrowser, false, url).then(
    verifyUInotDegraded
  );
  BrowserTestUtils.startLoadingURIString(gTestBrowser, url);
}

// ------------------------------------------------------
function test() {
  // Performing async calls, e.g. 'onload', we have to wait till all of them finished
  waitForExplicitFinish();

  SpecialPowers.pushPrefEnv(
    { set: [["security.mixed_content.block_active_content", true]] },
    function () {
      runTests();
    }
  );
}