From 242d8565075bb8c8f0fb3ef6a7651b39e6b67241 Mon Sep 17 00:00:00 2001 From: "palmer@chromium.org" Date: Tue, 30 Oct 2012 21:20:46 +0000 Subject: Process only the first Strict-Transport-Security header. In accordance with the specification. BUG=156147 Review URL: https://chromiumcodereview.appspot.com/11192045 git-svn-id: svn://svn.chromium.org/chrome/trunk/src@165013 0039d316-1c4b-4281-b951-d872f2087c98 --- net/data/url_request_unittest/hsts-headers.html | 1 + net/data/url_request_unittest/hsts-headers.html.mock-http-headers | 6 ++++++ net/data/url_request_unittest/hsts-multiple-headers.html | 1 + .../hsts-multiple-headers.html.mock-http-headers | 7 +++++++ 4 files changed, 15 insertions(+) create mode 100644 net/data/url_request_unittest/hsts-headers.html create mode 100644 net/data/url_request_unittest/hsts-headers.html.mock-http-headers create mode 100644 net/data/url_request_unittest/hsts-multiple-headers.html create mode 100644 net/data/url_request_unittest/hsts-multiple-headers.html.mock-http-headers (limited to 'net/data') diff --git a/net/data/url_request_unittest/hsts-headers.html b/net/data/url_request_unittest/hsts-headers.html new file mode 100644 index 0000000..364322d --- /dev/null +++ b/net/data/url_request_unittest/hsts-headers.html @@ -0,0 +1 @@ +This file is boring; all the action's in the .mock-http-headers. diff --git a/net/data/url_request_unittest/hsts-headers.html.mock-http-headers b/net/data/url_request_unittest/hsts-headers.html.mock-http-headers new file mode 100644 index 0000000..e397296 --- /dev/null +++ b/net/data/url_request_unittest/hsts-headers.html.mock-http-headers @@ -0,0 +1,6 @@ +HTTP/1.1 200 OK +Cache-Control: private +Content-Type: text/html; charset=ISO-8859-1 +X-Multiple-Entries: a +X-Multiple-Entries: b +Strict-Transport-Security: max-age=123; includeSubdomains diff --git a/net/data/url_request_unittest/hsts-multiple-headers.html b/net/data/url_request_unittest/hsts-multiple-headers.html new file mode 100644 index 0000000..364322d --- /dev/null +++ b/net/data/url_request_unittest/hsts-multiple-headers.html @@ -0,0 +1 @@ +This file is boring; all the action's in the .mock-http-headers. diff --git a/net/data/url_request_unittest/hsts-multiple-headers.html.mock-http-headers b/net/data/url_request_unittest/hsts-multiple-headers.html.mock-http-headers new file mode 100644 index 0000000..e83b722 --- /dev/null +++ b/net/data/url_request_unittest/hsts-multiple-headers.html.mock-http-headers @@ -0,0 +1,7 @@ +HTTP/1.1 200 OK +Cache-Control: private +Content-Type: text/html; charset=ISO-8859-1 +X-Multiple-Entries: a +X-Multiple-Entries: b +Strict-Transport-Security: max-age=123 +Strict-Transport-Security: max-age=123; includeSubdomains -- cgit v1.1