Reddit article on basilisk.
Moderator: Basilisk-Dev
-
- Board Warrior
- Posts: 1878
- Joined: 2015-09-30, 23:02
- Location: uk.
Reddit article on basilisk.
Heated discussion here in regard to basilsik which i thought i would bring to the attention of the forum.
https://www.reddit.com/r/firefox/commen ... code_from/
https://www.reddit.com/r/firefox/commen ... code_from/
user of multiple puppy linuxes..upup,fossapup.scpup,xenialpup.....
Pale moon 29.4.1
Pale moon 29.4.1
Re: Reddit article on basilisk.
A response from a redditor on /r/palemoon:Moonraker wrote:Heated discussion here in regard to basilsik which i thought i would bring to the attention of the forum.
https://www.reddit.com/r/firefox/commen ... code_from/
https://www.reddit.com/r/palemoon/comme ... k/dzmi0t7/
"Considering that e10s was never officially supported by Basilisk and sandboxing doesn't work without e10s, it's only a logical continuation of the chosen path of development."
Last edited by Latitude on 2018-05-27, 12:46, edited 2 times in total.
Re: Reddit article on basilisk.
But, I hope MC would confirm what that redditor says about the removal of sandboxing security feature.
-
- Board Warrior
- Posts: 1227
- Joined: 2013-04-19, 00:46
Re: Reddit article on basilisk.
Always fun to see the wanna-be-Chrome-clone fandom over at Reddit rant and spit poison.
Firefox has become a simple browser without reason to use it as there is no longer much customization and Pale Moon still has features. Clear case where my decision of usage is going
And also a perfect example why Mozilla is such a toxic developer today. The users, the developers/representatives - just a big joke
Firefox has become a simple browser without reason to use it as there is no longer much customization and Pale Moon still has features. Clear case where my decision of usage is going
And also a perfect example why Mozilla is such a toxic developer today. The users, the developers/representatives - just a big joke
Last edited by Sajadi on 2018-05-27, 15:37, edited 1 time in total.
-
- Pale Moon guru
- Posts: 35640
- Joined: 2011-08-28, 17:27
- Location: Motala, SE
Re: Reddit article on basilisk.
I will not involve myself with external discussions on reddit in the firefox board there.
If people have questions about Basilisk or its features, they are welcome to register on this forum and ask their questions.
If people have questions about Basilisk or its features, they are welcome to register on this forum and ask their questions.
"Sometimes, the best way to get what you want is to be a good person." -- Louis Rossmann
"Seek wisdom, not knowledge. Knowledge is of the past; wisdom is of the future." -- Native American proverb
"Linux makes everything difficult." -- Lyceus Anubite
"Seek wisdom, not knowledge. Knowledge is of the past; wisdom is of the future." -- Native American proverb
"Linux makes everything difficult." -- Lyceus Anubite
-
- Astronaut
- Posts: 725
- Joined: 2014-07-26, 23:03
- Location: Mare Serenitatis
Re: Reddit article on basilisk.
It's been a mostly boring read of always the same strategy of complaints that Pale Moon doesn't have exactly those features new Firefox has. Even the ghacks discussions were more interesting.
Other claims like "Pale Moon is the new IE",etc. are poor trolling and not worth a waste *of* time.
Other claims like "Pale Moon is the new IE",etc. are poor trolling and not worth a waste *of* time.
Last edited by loxodont on 2018-05-27, 17:30, edited 1 time in total.
-
- Pale Moon guru
- Posts: 35640
- Joined: 2011-08-28, 17:27
- Location: Motala, SE
Re: Reddit article on basilisk.
To answer the most pertinent question in this topic:
The Mozilla "content process sandbox" is an approach that only applies to having multiple processes where communication with a content process must be sanitized. It is as much about the inter-process communication involved as it is about isolation. That does not inherently mean that anything not using that particular approach is somehow "less secure" because it isn't -- it only means that using a multi-process approach apparently requires extra security measures despite it supposedly being "safer by design" (it's a "package deal"). It can in fact be argued that needing such a sandbox with IPC highlights a fundamental flaw of e10s and IPC that asks for something like that to be implemented (because low-integrity process isolation is clearly not enough...?).
For our development, since we will not be using the multi-process approach at all, the entire content process sandbox code is dead code, and as such removed.
The Mozilla "content process sandbox" is an approach that only applies to having multiple processes where communication with a content process must be sanitized. It is as much about the inter-process communication involved as it is about isolation. That does not inherently mean that anything not using that particular approach is somehow "less secure" because it isn't -- it only means that using a multi-process approach apparently requires extra security measures despite it supposedly being "safer by design" (it's a "package deal"). It can in fact be argued that needing such a sandbox with IPC highlights a fundamental flaw of e10s and IPC that asks for something like that to be implemented (because low-integrity process isolation is clearly not enough...?).
For our development, since we will not be using the multi-process approach at all, the entire content process sandbox code is dead code, and as such removed.
Last edited by Moonchild on 2018-05-28, 03:29, edited 1 time in total.
"Sometimes, the best way to get what you want is to be a good person." -- Louis Rossmann
"Seek wisdom, not knowledge. Knowledge is of the past; wisdom is of the future." -- Native American proverb
"Linux makes everything difficult." -- Lyceus Anubite
"Seek wisdom, not knowledge. Knowledge is of the past; wisdom is of the future." -- Native American proverb
"Linux makes everything difficult." -- Lyceus Anubite