New issue
Advanced search Search tips

Issue 894802 link

Starred by 1 user

Issue metadata

Status: WontFix
Owner: ----
Closed: Oct 16
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Mac
Pri: 2
Type: Bug



Sign in to add a comment

Unable to delete domain security policies

Reported by geo...@essens.no, Oct 12

Issue description

UserAgent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/69.0.3497.100 Safari/537.36

Example URL:
chrome://net-internals/#hsts

Steps to reproduce the problem:
1. Open chrome://net-internals/#hsts
2. Add domain to the input field under "Delete domain security policies"
3. Click on delete button

What is the expected behavior?
A page with http protocol without SSL should be opened and not returned "ERR_SSL_PROTOCOL_ERROR".

What went wrong?
Did net log export and saw that:
{"params":{"headers":["HTTP/1.1 307 Internal Redirect","Location: https://....","Non-Authoritative-Reason: HSTS"]},"phase":0,"source":{"id":2870,"type":1},"time":"235846683","type":112},

Did this work before? N/A 

Chrome version: 71.0.3577.0  Channel: canary
OS Version: OS X 10.12.6
Flash Version: 

Had to completely clean the cache and history of this domain to be able to access it without httpS
 
On regular chrome, 69.0.3497.100, it dones not require a cache cleaning. Simply by adding the domain to the field and then clicking the delete button works, even having both protocols in history and browser cache.
Components: -Internals>Network Internals>Network>SSL
I tried it on Canary 71.0.3578.0 with OS X 10.13.6 and couldn't reproduce the issue. Are you still experiencing the issue? If so, would you mind sharing a specific domain that's failing on you? Thanks.
Components: -Internals>Network>SSL Internals>Network>DomainSecurityPolicy
Labels: Needs-Bisect Needs-Triage-M71
Labels: Triaged-ET Needs-Feedback
Tried testing the issue on chrome reported version# 71.0.3577.0 using Mac 10.12.6 with steps mentioned below:
1) Launched chrome reported version and navigated to chrome://net-internals/#hsts
2) Under 'Query HSTS/PKP domain', entered 'gmail.com' and clicked on Query, it shows some results
3) Under 'Delete domain security policies' entered 'gmail.com' and clicked on 'Delete', the data in the field cleared off.
4) Opened New Tab Page and navigated to 'gmail.com', after page navigation, seen 'https' in the omnibar

@Reporter: Please find the attached screencast screencast for your reference and let us know if we missed anything in reproducing the issue, provide your feedback on it which help in further triaging, if possible provide screencast of the issue which help in better understanding and please respond to Comment# 2.

Thanks!
894802.mp4
2.3 MB View Download
Sorry for the delay but didn't have time at weekend to answer back. Now got Canary updated and is not happening. Don't think anything was changed related with the networking since that version, but now is working fine.
Will report again if happens. Thanks for your time!
Project Member

Comment 7 by sheriffbot@chromium.org, Oct 15

Cc: viswa.karala@chromium.org
Labels: -Needs-Feedback
Thank you for providing more feedback. Adding the requester to the cc list.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
Labels: -Needs-Bisect
Status: WontFix (was: Unconfirmed)
As per comment# 6 from the reporter closing the issue and marking it as Won't fix.
Note: Feel free to raise a new one if the issue is seen again.

Thanks!

Sign in to add a comment