New issue
Advanced search Search tips

Issue 870420 link

Starred by 3 users

Issue metadata

Status: Assigned
Owner:
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: ----
Pri: 3
Type: Feature



Sign in to add a comment

FR: Allow User exceptions for popups

Project Member Reported by norikob@chromium.org, Aug 2

Issue description

Description:
Requesting a policy that will allow an admin to fully block all popups but allow users to individually make exceptions for one-off sites but continue to prevent them from turning off blocking popups for all sites. 

Use case/Motivation:
Due to security compliance reasons - a policy must be in place to disable all-popups. Currently using the "DefaultPopupsSetting" policy plus whitelisting popups.  It is acceptable for users to make exceptions for popups but it is not acceptable for them to switch the blocking for all popups within the chrome://settings/content/popups site --- in other words the desire is to keep it blocked by admin. 
Currently it is cumbersome to manage one-off requests for admins to whitelist popups at scale and this hinders deployment more broadly of Chrome. And the preference is to maintain the whitelist for enterprise-wide exceptions. 

Existing workarounds:
None.   While it is possible to disable the DefaultPopupsSettings and allow for users to allow exceptions, the possibility that a user can allow all popups goes against corporate security policy.  

 
Owner: privard@chromium.org
Assigning to Phil for prioritization.

Some tech feedback:

There is no way to safely expand the set of available values of an enum policy only replace them with more rich ones or if orthogonal dimension is added a new policy. In this case the second options seems more appropriate - we can add a policy. DefaultPopupSettingsUserExceptionsAllowed which we can expand to the other content settings eventually. This change might not be 100% trivial but should be still doable even as a starter project for a new member.
Cc: robertshield@chromium.org georgesak@chromium.org pastarmovj@chromium.org
 Issue 870006  has been merged into this issue.
Hi Phil is there any update on when this might be worked on?
Labels: Hotlist-Enterprise-Fixit
Status: Assigned (was: Untriaged)
Marking for next Enterprise Fixit

Sign in to add a comment