4 ms·
This isn't the most unreasonable list I've seen, but beware you will break many websites with this, so you need to be prepared to deal with the fallout. Notably
by TD-Linux 9y ago
This isn't the most unreasonable list I've seen, but beware you will break many websites with this, so you need to be prepared to deal with the fallout. Notably, a lot of the breakage is hidden in user.js, including:
* No WebGL or WebRTC
* Aggressive TLS settings (will break many websites)
* Mixed-content upgrading (Nightly ran an experiment on this recently and it also broke a lot of websites)
* No history
The text warns about this, but it should at least be clear why Mozilla doesn't ship this as default.
- ams6110 9y agoYeah I've tried some of these extremely hardened configurations but ultimately there's too much breakage. My config now is basically: - uBlock Origin in default configuration - No 3rd party cookies (breaks some things, but not too many) - Clear history and cookies on exit Combined with an /etc/hosts file, and rather frequent browser restarts (generally daily).
- suprfnk 9y ago> Clear history [..] on exit Why the history? That's not readable by anyone except you, right? > Clear [..] cookies on exit So do you have to keep logging in to websites daily? Isn't that very annoying?
- maxerickson 9y agoYou can whitelist exceptions. Which of course trades off against privacy.
- KozmoNau7 9y agoI use Cookie AutoDelete, which autocleans cookies shortly after closing tabs. I whitelist sites where I want to stay logged in or save settings.
- pieter_mj 9y ago> Why the history? That's not readable by anyone except you, right? history sniffing
- Spivak 9y agoI'm a person who clears cookies on exit. With a password manager with autofill it's not much of a burden but it does ensure that people can't resurrect old sessions and can't access my accounts without my password DB unlocked.
- mikedelfino 9y agoI'm someone who clear cookies on exit to the sole purpose of having to login again every time. And I don't even use a password manager. It does get annoying because I have to type my credentials all the time, but it just takes a few seconds so it's not a big deal. I'm sure this is not preventing me from doing anything better with my time.
- chrisan 9y ago> Combined with an /etc/hosts file Check out pi-hole and manage that for your whole family
- tedcrilly 9y agoIf you're using OpenWRT/Lede you can implement this with the adblock package: https://github.com/openwrt/packages/tree/master/net/adblock/files https://github.com/openwrt/packages/tree/master/net/adblock/...
- driverdan 9y ago/etc/hosts travels with you. A LAN DNS server does not. It's a good idea to use both.