Security/Features/Identify which bits are unencrypted: Difference between revisions

From MozillaWiki
Jump to navigation Jump to search
No edit summary
Line 1: Line 1:
{{FeatureStatus
<p><span class="fck_mw_template">{{FeatureStatusfckLR|Feature name=Help users understand which bits are unencryptedfckLR|Feature stage=DraftfckLR|Feature health=OKfckLR|Feature status note=Brainstorming phasefckLR}}</span>
|Feature name=Help users understand which bits are unencrypted
<span class="fck_mw_template">{{FeatureTeamfckLR|Feature product manager=Sid StammfckLR|Feature lead engineer=Tanvi VyasfckLR|Feature security lead=Lucas AdamskifckLR|Feature privacy lead=Sid StammfckLR}}</span>
|Feature stage=Draft
<span class="fck_mw_template">{{FeaturePageBodyfckLR|Feature overview=Highlight passwords and other sensitive data that is not transmitted over ssl.  For the first stage, we will focus on type=password.fckLRfckLR|Feature users and use cases=* A user is asked to login on an http page.  The login form submits to an http destination.  Users password is sent in cleartext.fckLR* A user is asked to login on an https page.  The login form submits to an http destination.  Users password is sent in cleartext.fckLR* A user is asked to login on an http page. The login form submits to an https destination. An attacker can mitm the first request to the login page and replace the form with one that submits the password to the attackers webpage instead.fckLRfckLR|Feature requirements=When type=password, outline the password box in red.  Also add a note to the user that occurs onfocus so they know why the form is outlined in red.fckLR}}</span>
|Feature health=OK
<span class="fck_mw_template">{{FeatureInfofckLR|Feature priority=P2fckLR|Feature theme=Secure Network ConnectionsfckLR|Feature roadmap=PrivacyfckLR|Feature list=DesktopfckLR}}</span>
}}
<span class="fck_mw_template">{{FeatureTeamStatus}}</span>
{{FeatureTeam
</p>
|Feature product manager=Sid Stamm
}}
{{FeaturePageBody
|Feature overview=Help users understand which bits are unencrypted (e.g., identify form fields that will be transmitted in the clear)
}}
{{FeatureInfo
|Feature priority=P2
|Feature roadmap=Privacy
|Feature theme=Secure Network Connections
|Feature list=Desktop
}}
{{FeatureTeamStatus}}

Revision as of 00:27, 5 April 2012

Template:FeatureStatusfckLR Template:FeatureTeamfckLR Template:FeaturePageBodyfckLR Template:FeatureInfofckLR

Team status notes

  status notes
Products ` `
Engineering ` `
Security ` `
Privacy ` `
Localization ` `
Accessibility ` `
Quality assurance ` `
User experience ` `
Product marketing ` `
Operations ` `

{{#set:Feature products status=`

|Feature products notes=` |Feature engineering status=` |Feature engineering notes=` |Feature security status=` |Feature security health=` |Feature security notes=` |Feature privacy status=` |Feature privacy notes=` |Feature localization status=` |Feature localization notes=` |Feature accessibility status=` |Feature accessibility notes=` |Feature qa status=` |Feature qa notes=` |Feature ux status=` |Feature ux notes=` |Feature product marketing status=` |Feature product marketing notes=` |Feature operations status=` |Feature operations notes=` }}