Security/Features/Application Reputation Design Doc: Difference between revisions

→‎High-level overview: Reference allowlist
(→‎High-level overview: Reference blocklist)
(→‎High-level overview: Reference allowlist)
Line 21: Line 21:
# The target URL from which the file was downloaded, its referrer URL and any URLs in the redirect chain. These URLs are checked against goog-badbinurl-shavar.
# The target URL from which the file was downloaded, its referrer URL and any URLs in the redirect chain. These URLs are checked against goog-badbinurl-shavar.
# The SHA-256 hash of the contents of the file.
# The SHA-256 hash of the contents of the file.
# Any certificate verification information obtained through the Windows Authenticode APIs.
# Any certificate verification information obtained through the Windows Authenticode APIs. This certificate information is used to construct synthetic URLs with which to check goog-downloadwhite-digest256.
# The length of the file in bytes.
# The length of the file in bytes.
# The suggested filename for the download.
# The suggested filename for the download.
Confirmed users
238

edits