I-Mozilla ishintshe indlela ekhiqiza ngayo unhlokweni we-HTTP Referer kuFirefox 87, ehlelelwe ukukhishwa kusasa. Ukuze uvimbele ukuvuza okungenzeka kobumfihlo lapho uzulazulela kwamanye amasayithi, isihloko se-HTTP Referer manje sizofaka isizinda kuphela, hhayi i-URL egcwele yesayithi umsuka. Indlela kanye namapharamitha wombuzo azosuswa. Lokhu kusho ukuthi esikhundleni sokuthi "Referer: https://www.example.com/path/?arguments," "Referer: https://www.example.com/" izodluliswa. Kusukela kuFirefox 59, lokhu kuhlanza kwenziwa ngemodi yokuphequlula yangasese, futhi manje kuzonwetshwa kumodi yomdabu yokuphequlula.
Ukuziphatha okusha kuzosiza ukuvimbela idatha yomsebenzisi engadingekile ukuthi yabiwe namanethiwekhi okukhangisa nezinye izinsiza zangaphandle. Amanye amawebhusayithi ezokwelapha acashunwe njengesibonelo, njengoba abantu besithathu bangathola ulwazi olubucayi, olufana neminyaka yesiguli kanye nokuxilongwa, lapho bebonisa izikhangiso. Ngaphezu kwalokho, ukususa imininingwane ku-Referer kungaba nomthelela omubi ekuqoqweni kwezibalo ze-clickstream ngabanikazi bewebhusayithi, njengoba ngeke besakwazi ukunquma ngokunembile ikheli lekhasi langaphambilini, isibonelo, ukunquma ukuthi iyiphi i-athikili umsebenzisi abevakashele kuyo. Kungase futhi kuphazamise amasistimu okukhiqiza okuqukethwe ashukumisayo ancozulula amagama angukhiye aholele ku-clickstream kusuka kunjini yokusesha.
Isihloko se-Referrer-Policy HTTP sisetshenziselwa ukulawula ukulungiselelwa kwe-Referrer. Abanikazi bewebhusayithi bangayisebenzisa ukuze babhale ngaphezulu ukuziphatha okuzenzakalelayo koshintsho olusuka kusayithi labo futhi babuyisele i-Referrer kulwazi olugcwele. Okwamanje, inqubomgomo ezenzakalelayo ithi "no-referrer-when-downgrade," okuvimbela i-Referrer ukuthi ithunyelwe lapho yehla isuka ku-HTTPS iye ku-HTTP, kodwa idlulisela i-Referrer egcwele lapho ilayisha izinsiza nge-HTTPS. Ukuqala ngeFirefox 87, inqubomgomo ethi "strict-origin-when-cross-origin" izosebenza. Le nqubomgomo ihlubula izindlela namapharamitha lapho ithumela izicelo kwabanye abasingathi nge-HTTPS, isusa i-Referrer lapho yehla isuka ku-HTTPS iye ku-HTTP, futhi idlulisela i-Referrer ephelele yoshintsho lwangaphakathi ngaphakathi kwesayithi elilodwa.
Ushintsho luzosebenza ezicelweni ezijwayelekile zokuzulazula (ukuchofoza isixhumanisi), ukuqondisa kabusha okuzenzakalelayo, nalapho kulayishwa izinsiza zangaphandle (izithombe, i-CSS, imibhalo). I-Chrome ishintshele kokuthi "strict-origin-when-cross-origin" ngokuzenzakalela ehlobo eledlule.
Source: opennet.ru
