Skip to content
Permalink

Comparing changes

Choose two branches to see what’s changed or to start a new pull request. If you need to, you can also or learn more about diff comparisons.

Open a pull request

Create a new pull request by comparing changes across two branches. If you need to, you can also . Learn more about diff comparisons here.
base repository: mlissner/https
Failed to load repositories. Confirm that selected base ref is valid, then try again.
Loading
base: master
Choose a base ref
...
head repository: GSA/https
Failed to load repositories. Confirm that selected head ref is valid, then try again.
Loading
compare: master
Choose a head ref
Checking mergeability… Don’t worry, you can still create the pull request.
  • 18 commits
  • 16 files changed
  • 9 contributors

Commits on Jul 2, 2018

  1. Fix typo (GSA#250)

    mlissner authored and konklone committed Jul 2, 2018
    Configuration menu
    Copy the full SHA
    6941283 View commit details
    Browse the repository at this point in the history

Commits on Aug 31, 2018

  1. Update external links to use https (GSA#251)

    * Use https links
    
    Use https links for caniuse.com
    
    * Use https link
    
    Use https link for nvlpubs.nist.gov
    
    * Fix dead link
    
    * Use https links
    
    Use https links for nvlpubs.nist.gov and social.technet.microsoft.com. Remove redirect for social.technet.microsoft.com
    
    * Replace dead link
    anand-bhat authored and konklone committed Aug 31, 2018
    Configuration menu
    Copy the full SHA
    c133215 View commit details
    Browse the repository at this point in the history
  2. fix fpki faq on certificates page (GSA#253)

    * fix fpki faq on certificates page 
    
    changed the links to point to fpki.idmanagement.gov pages
    updated to show that the mozilla application has been closed
    minor nit:  there are non-USG operated publicly trusted root CAs that still create valid paths in some trust stores to federal pki issued certs.  whether this is desirable or intentional is not addressed.
    
    * remove mozilla paragraph altogether
    lachellel authored and konklone committed Aug 31, 2018
    Configuration menu
    Copy the full SHA
    5369d23 View commit details
    Browse the repository at this point in the history

Commits on Sep 18, 2018

  1. Update FAQ to clarify referrer behavior (GSA#254)

    The origin-when-cross-origin Referrer-policy HTTP header (and meta tag) limits referrer information whether or not the request downgrades the URL scheme (https-to-http vs https-to-https; see examples at https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Referrer-Policy#Directives). The existing language seems to imply that a third-party website that upgrades to HTTPS can expect to receive resource URLs in their referrers after they update to HTTPS, which is not the case.
    
    Here I propose new language to clarify what third parties should expect from the recommended referrer policy.
    elucify authored and konklone committed Sep 18, 2018
    Configuration menu
    Copy the full SHA
    7292e8d View commit details
    Browse the repository at this point in the history

Commits on Nov 14, 2018

  1. Configuration menu
    Copy the full SHA
    75214df View commit details
    Browse the repository at this point in the history

Commits on Dec 10, 2018

  1. Configuration menu
    Copy the full SHA
    93e417a View commit details
    Browse the repository at this point in the history
  2. Configuration menu
    Copy the full SHA
    f35a77e View commit details
    Browse the repository at this point in the history
  3. Update CT section to include CAA and mandatory CT.

    - For the question of limiting which CAs can issue, there is now a much
      more responsive answer made possible by CAA.
    - Split out CT into a separate question on how to monitor / detect
      issuance.
    - Update CT language to reflect that CT is now mandatory in Chrome for
      new certificates.
    brodygov committed Dec 10, 2018
    Configuration menu
    Copy the full SHA
    3f2fc70 View commit details
    Browse the repository at this point in the history

Commits on Dec 19, 2018

  1. Add Safari CT policy.

    brodygov committed Dec 19, 2018
    Configuration menu
    Copy the full SHA
    1ed013d View commit details
    Browse the repository at this point in the history
  2. Add link to FPKI page on CT.

    brodygov committed Dec 19, 2018
    Configuration menu
    Copy the full SHA
    7994e1f View commit details
    Browse the repository at this point in the history

Commits on Dec 31, 2018

  1. Configuration menu
    Copy the full SHA
    7615277 View commit details
    Browse the repository at this point in the history
  2. Configuration menu
    Copy the full SHA
    8a8cda3 View commit details
    Browse the repository at this point in the history
  3. Configuration menu
    Copy the full SHA
    146557a View commit details
    Browse the repository at this point in the history

Commits on Aug 16, 2019

  1. Updating EV cert language (GSA#260)

    EV certificates no longer have the organization name generally appear in the browser bar.
    konklone authored and h-m-f-t committed Aug 16, 2019
    Configuration menu
    Copy the full SHA
    e6030eb View commit details
    Browse the repository at this point in the history

Commits on Mar 12, 2021

  1. Updating Node and Gulp for v12 (GSA#263)

    * update gulp to v4 and node to v12
    
    * update bundler to 2.2
    konklone authored Mar 12, 2021
    Configuration menu
    Copy the full SHA
    8f37fa4 View commit details
    Browse the repository at this point in the history
  2. fixing federalist builds (GSA#265)

    * emptying file
    
    * 2nd try
    
    * 3rd try - 12
    
    * trying again
    
    * Create .bundler-version
    gbinal authored Mar 12, 2021
    Configuration menu
    Copy the full SHA
    f099de9 View commit details
    Browse the repository at this point in the history

Commits on May 5, 2021

  1. Configuration menu
    Copy the full SHA
    9ba0b9f View commit details
    Browse the repository at this point in the history

Commits on Feb 21, 2024

  1. Create SECURITY.md (GSA#286)

    JJediny authored Feb 21, 2024
    Configuration menu
    Copy the full SHA
    8271c90 View commit details
    Browse the repository at this point in the history
Loading