[tor-bugs] #4055 [EFF-HTTPS Everywhere]: HTTPS Everywhere breaks LastPass saved login

Tor Bug Tracker & Wiki torproject-admin at torproject.org
Tue Sep 27 19:57:58 UTC 2011


#4055: HTTPS Everywhere breaks LastPass saved login
----------------------------------+-----------------------------------------
 Reporter:  Kaeltis               |          Owner:  pde
     Type:  defect                |         Status:  new
 Priority:  minor                 |      Milestone:     
Component:  EFF-HTTPS Everywhere  |        Version:     
 Keywords:                        |         Parent:     
   Points:                        |   Actualpoints:     
----------------------------------+-----------------------------------------

Comment(by pde):

 This is an instance of a general bug we have with extensions that make
 HTTP
 requests which HTTPS Everywhere tries to rewrite into HTTPS requests:

 https://trac.torproject.org/projects/tor/ticket/3190

 There are three possible fixes:

 1. We disable the LastPass rule :(

 2. LastPass modifies its code to always use HTTPS, or to be aware of HTTPS
    Everywhere in the same way that the Request Policy extension did:
    https://trac.torproject.org/projects/tor/ticket/1574

 3. Mozilla implements an official request rewriting API so that extensions
    don't have to know about each other.

 We can do 1, but perhaps someone should post in that forum to see if
 LastPass
 woudl like to do 2?

-- 
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/4055#comment:4>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list