viewtopic.php?f=7&t=268
The info about Akamai and like sites is outdated - GitHub no longer uses Akamai AFAICT, and also these days a more popular "shared CDN" than Akamai is Cloudfront, but some of the time it's used legitimately and some of the time it's used only to deliver trackingware...
I don't know how relevant the linked FAQ entry is for cloudfront because each site gets its own subdomain(s) of cloudfront.net, so it could be enough just to (Temp-)Allow only exact cloudfront subdomain(s).
I'm not completely sure what would be the best way to update that information, any advice?
Updating NoScript Quick Start Guide
Updating NoScript Quick Start Guide
*Always* check the changelogs BEFORE updating that important software!
-
Re: Updating NoScript Quick Start Guide
I think the best approach to this might be to have NoScript recognise a list of sites where subdomains are likely to have different ownership/trust, and which NoScript should therefore treat like TLDs. Cloudfront and Akamai are certainly two candidates.
But as for updating the advice, maybe something like this?
But as for updating the advice, maybe something like this?
Be wary of content coming from third parties. However, please note that many respectable sites use companies like Akamai or Cloudfront to help store and provide some of their content, so these are third-party sites that frequently must be allowed. In the case of Cloudfront, you can typically choose to allow only the specific subdomains that you need (make sure you enable 'Options-Appearance-Full domains' or 'Full addresses').
For further information about Akamai or about how to fine-tune its permissions if you wish to do so, please see this FAQ.
======
Thrawn
------------
Religion is not the opium of the masses. Daily life is the opium of the masses.
True religion, which dares to acknowledge death and challenge the way we live, is an attempt to wake up.
Thrawn
------------
Religion is not the opium of the masses. Daily life is the opium of the masses.
True religion, which dares to acknowledge death and challenge the way we live, is an attempt to wake up.
Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:36.0) Gecko/20100101 Firefox/36.0
Re: Updating NoScript Quick Start Guide
That already exists, and Cloudfront is on that list.Thrawn wrote:I think the best approach to this might be to have NoScript recognise a list of sites where subdomains are likely to have different ownership/trust, and which NoScript should therefore treat like TLDs.
I like that, I'll edit it in. Thanks!Thrawn wrote:But as for updating the advice, maybe something like this?
*Always* check the changelogs BEFORE updating that important software!
-
Re: Updating NoScript Quick Start Guide
Ah, I'd forgotten; thanks.barbaz wrote:That already exists, and Cloudfront is on that list.Thrawn wrote:I think the best approach to this might be to have NoScript recognise a list of sites where subdomains are likely to have different ownership/trust, and which NoScript should therefore treat like TLDs.
======
Thrawn
------------
Religion is not the opium of the masses. Daily life is the opium of the masses.
True religion, which dares to acknowledge death and challenge the way we live, is an attempt to wake up.
Thrawn
------------
Religion is not the opium of the masses. Daily life is the opium of the masses.
True religion, which dares to acknowledge death and challenge the way we live, is an attempt to wake up.
Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:36.0) Gecko/20100101 Firefox/36.0