commit 49d8b9f6d6d5b40843d554dfa750bdace87dff25
parent 18984600712631df8c47d1850b6ac47ec2ef778d
Author: Roman-Nopantski <Roman-Nopantski@users.noreply.github.com>
Date: Thu, 23 Feb 2017 02:36:16 +1300
description ambiguity fix
Diffstat:
1 file changed, 1 insertion(+), 1 deletion(-)
diff --git a/user.js b/user.js
@@ -658,7 +658,7 @@ user_pref("security.mixed_content.block_active_content", true);
user_pref("security.mixed_content.send_hsts_priming", false);
user_pref("security.mixed_content.use_hsts", false);
// 1219: disable HSTS preload list
- // recommended enabled, unless you fully understand the risks and trade-offs
+ // recommended left inactive and at default, unless you fully understand the risks and trade-offs
// user_pref("network.stricttransportsecurity.preloadlist", false);
// 1220: disable intermediate certificate caching (fingerprinting attack vector)
// NOTE: This affects login/cert/key dbs. AFAIK the only effect is all active logins start anew