|
1 | | - |
2 | 1 | <!-- |
3 | | -Disabled by https-everywhere-checker because: |
4 | | -Fetch error: http://alphaville.ft.com/ => https://alphaville.ft.com/: (6, 'Could not resolve host: alphaville.ft.com') |
5 | | -Fetch error: http://alphaville-cdn.ft.com/ => https://alphaville-cdn.ft.com/: (6, 'Could not resolve host: alphaville-cdn.ft.com') |
6 | | -Non-2xx HTTP code: http://track.ft.com/ (200) => https://track.ft.com/ (404) |
7 | | -
|
8 | | - Financial Times |
9 | | -
|
10 | | - For rules causing MCB, see ft.com-mixedcontent.xml. |
11 | | -
|
12 | 2 | Other Financial Times rulesets: |
13 | | -
|
14 | | - - FT-static.com.xml |
15 | | - - on.ft.com (via Bitly_branded_short_domains.xml) |
16 | | -
|
17 | | -
|
18 | | - CDN buckets: |
19 | | -
|
20 | | - - media.ft.com.edgesuite.net |
21 | | - - s1.media.ft.com.edgesuite.net |
22 | | - - search.ft.com.edgesuite.net |
23 | | - - www.ft.com.edgesuite.net |
24 | | - - az592774.vo.msecnd.net |
25 | | -
|
26 | | -
|
27 | | - Nonfunctional hosts in *ft.com: |
28 | | -
|
29 | | - - discussions ʳ |
30 | | - - enterprise ᵈ |
31 | | - - ftcorporate ʰ |
32 | | - - funds ʳ |
33 | | - - help ʰ |
34 | | - - s1.media * |
35 | | - - test.media * |
36 | | - - reg.test.media * |
37 | | - - s[123].test.media * |
38 | | - - membership * |
39 | | - - nbe ʰ |
40 | | - - rankings * |
41 | | - - search * |
42 | | - - static-render-p (504, Akamai) |
43 | | - - the125 502, Akamai |
44 | | - - video ᵈ |
45 | | -
|
46 | | - * 503, akamai |
47 | | - * Redirects to www.ft.com, akamai |
48 | | - ᵈ Dropped |
49 | | - ʰ Redirects to http |
50 | | - ʳ Refused |
51 | | -
|
52 | | -
|
53 | | - Problematic hosts in *ft.com: |
54 | | -
|
55 | | - - aboutus ᴬ |
56 | | - - announce ˣ |
57 | | - - blogs ᴬ |
58 | | - - im.media ᴬ |
59 | | - - s4.media (works, akamai) |
60 | | - - origami ᵐ |
61 | | - - navigation.webservices ᴬ |
62 | | -
|
63 | | - ᴬ Akamai / mismatched |
64 | | - ᵐ Mismatched |
65 | | - ˣ Mixed css, see https://www.paulirish.com/2010/the-protocol-relative-url/ |
66 | | -
|
67 | | -
|
68 | | - Partially covered hosts in *ft.com: |
69 | | -
|
70 | | - - markets * |
71 | | -
|
72 | | - * Some pages redirect to http |
73 | | -
|
74 | | -
|
75 | | - Insecure cookies are set for these domains and hosts: ᶜ |
76 | | -
|
77 | | - - .ft.com |
| 3 | + + ft-static.com.xml |
| 4 | +
|
| 5 | + Non-functional hosts |
| 6 | + Couldn't connect to server: |
| 7 | + - discussions.ft.com |
| 8 | + - funds.ft.com |
| 9 | + - membership.ft.com |
| 10 | + - nbe.ft.com |
| 11 | +
|
| 12 | + SSL connect error: |
| 13 | + - ftcorporate.ft.com |
| 14 | +
|
| 15 | + SSL peer certificate was not OK: |
| 16 | + - blogs.ft.com |
| 17 | + - im.media.ft.com |
| 18 | + - s1.media.ft.com |
| 19 | + - s4.media.ft.com |
| 20 | + - test.media.ft.com |
| 21 | + - reg.test.media.ft.com |
| 22 | + - s1.test.media.ft.com |
| 23 | + - s2.test.media.ft.com |
| 24 | + - s3.test.media.ft.com |
| 25 | + - origami.ft.com |
| 26 | + - rankings.ft.com |
| 27 | + - search.ft.com |
| 28 | + - static-render-p.ft.com |
| 29 | + - webservices.ft.com |
| 30 | + - navigation.webservices.ft.com |
| 31 | +
|
| 32 | + Status code mismatch: |
| 33 | + - h2.ft.com |
| 34 | +
|
| 35 | + 5xx server error: |
| 36 | + - registration.ft.com |
| 37 | +
|
| 38 | + Secure connection redirects to plaintext: |
78 | 39 | - announce.ft.com |
79 | | - - ftepaper.ft.com |
80 | | - - cdn.markets.ft.com |
81 | | - - myaccount.ft.com |
82 | | - - propertylistings.ft.com |
83 | | - - sub.ft.com |
84 | | - - .sub.ft.com |
85 | | -
|
86 | | - ᶜ See https://owasp.org/index.php/SecureFlag |
87 | | -
|
88 | | -
|
89 | | - Mixed content: |
90 | | -
|
91 | | - - css, on: |
92 | | -
|
93 | | - - announce from static-render-p.ft.com |
94 | | - - announce from navigation.webservices.ft.com |
95 | | -
|
96 | | - - Images, on: |
97 | | -
|
98 | | - - announce from navigation.webservices.ft.com |
99 | | - - announce, ftalphaville from im.ft-static.com ˢ |
100 | | - - ftalphaville from im.media.ft.com ˢ |
101 | | -
|
102 | | - - Ads/bugs, on: |
103 | | -
|
104 | | - - announce, ftalphaville from ad.doubleclick.net |
105 | | - - announce, ftalphaville, ftepaper from media.ft.com ˢ |
106 | | - - announce, ftalphaville, ftepaper from stats.ft.com ˢ |
107 | | - - announce, ftalphaville, ftepaper from track.ft.com ˢ |
108 | | -
|
109 | | - ˢ Secured by us, see https://www.paulirish.com/2010/the-protocol-relative-url/ |
110 | | -
|
111 | 40 | --> |
112 | | -<ruleset name="FT.com (partial)" default_off='failed ruleset test'> |
113 | | - |
114 | | - <!-- Direct rewrites: |
115 | | - --> |
| 41 | +<ruleset name="Financial Times (partial)"> |
116 | 42 | <target host="ft.com" /> |
| 43 | + <target host="www.ft.com" /> |
| 44 | + <target host="aboutus.ft.com" /> |
117 | 45 | <target host="accounts.ft.com" /> |
118 | | - <target host="alphaville.ft.com" /> |
119 | | - <target host="alphaville-cdn.ft.com" /> |
120 | | - <!--target host="announce.ft.com" /--> |
121 | 46 | <target host="buildservice.ft.com" /> |
| 47 | + <target host="enterprise.ft.com" /> |
122 | 48 | <target host="force.ft.com" /> |
123 | 49 | <target host="ftepaper.ft.com" /> |
124 | | - <target host="h2.ft.com" /> |
| 50 | + <target host="help.ft.com" /> |
125 | 51 | <target host="howtospendit.ft.com" /> |
| 52 | + <target host="live.ft.com" /> |
126 | 53 | <target host="markets.ft.com" /> |
127 | 54 | <target host="cdn.markets.ft.com" /> |
128 | 55 | <target host="media.ft.com" /> |
129 | | - <target host="live.ft.com" /> |
130 | 56 | <target host="myaccount.ft.com" /> |
131 | 57 | <target host="next.ft.com" /> |
132 | 58 | <target host="next-geebee.ft.com" /> |
133 | 59 | <target host="build.origami.ft.com" /> |
134 | 60 | <target host="origami-build.ft.com" /> |
135 | 61 | <target host="propertylistings.ft.com" /> |
136 | 62 | <target host="register.ft.com" /> |
137 | | - <target host="registration.ft.com" /> |
138 | 63 | <target host="s3o.ft.com" /> |
139 | 64 | <target host="spoor-api.ft.com" /> |
140 | 65 | <target host="stats.ft.com" /> |
141 | 66 | <target host="sub.ft.com" /> |
142 | 67 | <target host="subscribe.ft.com" /> |
| 68 | + <target host="the125.ft.com" /> |
143 | 69 | <target host="track.ft.com" /> |
| 70 | + <target host="video.ft.com" /> |
144 | 71 | <target host="image.webservices.ft.com" /> |
145 | | - <target host="www.ft.com" /> |
146 | | - |
147 | | - <!-- Complications: |
148 | | - --> |
149 | | - <target host="im.media.ft.com" /> |
150 | | - <target host="s4.media.ft.com" /> |
151 | | - |
152 | | - <!-- Redirects to http: |
153 | | - --> |
154 | | - <!--exclusion pattern="^http://markets\.ft\.com/research/Markets/Overview$" /--> |
155 | | - <!-- |
156 | | - Exceptions: |
157 | | - --> |
158 | | - <exclusion pattern="^http://markets\.ft\.com/(?!favicon\.ico|RESEARCH/uploadhandler/)" /> |
159 | | - |
160 | | - <!-- +ve: |
161 | | - --> |
162 | | - <test url="http://markets.ft.com/research/Markets/Currencies" /> |
163 | | - <test url="http://markets.ft.com/research/Markets/Overview" /> |
164 | | - |
165 | | - <!-- -ve: |
166 | | - --> |
167 | | - <test url="http://markets.ft.com/favicon.ico" /> |
168 | | - |
169 | | - <!--exclusion pattern="^http://registration\.ft\.com/(?!Common/|favicon\.ico|registration/barrier)" /--> |
170 | | - |
171 | | - <!-- Set cookie without Secure: |
172 | | - --> |
173 | | - <!--test url="http://h2.ft.com/image/v1/images/raw/fticon:brand-ft-masthead?format=svg&source=memb-header" /--> |
174 | | - <!--test url="http://spoor-api.ft.com/px.gif?data=%7B%22category%22%3A%22page%22%2C%22action%22%3A%22view%22%2C%22system%22%3A%7B%22api_key%22%3A%22qUb9maKfKbtpRsdp0p2J7uWxRPGJEP%22%2C%22source%22%3A%22o-tracking%22%2C%22version%22%3A%221.0.5%22%7D%2C%22context%22%3A%7B%22url%22%3A%22https%3A%2F%2Fsubscription.ft.com%2F%22%2C%22product%22%3A%22ft.com%22%2C%22funnel%22%3A%7B%22funnel_name%22%3A%22Subs%20sign-up%22%2C%22funnel_steps%22%3A3%2C%22step_name%22%3A%22start%22%2C%22step_number%22%3A1%7D%7D%7D" /--> |
175 | | - |
176 | | - <test url="http://ftalphaville-cdn.ft.com/wp-content/uploads/2012/10/100_57_Murphy.jpg" /><!-- 2789 --> |
177 | | - <test url="http://ig.ft.com/static/widgets/story-collection-widget/brexit.png" /> |
178 | | - <test url="http://cdn.markets.ft.com/Research/ResourceManager/KNjVD_ltbtze6itZMl4bnQ2/u/f/635575616825479587/Research/Content/Images/Tabs.Sprite.png" /> |
179 | | - <test url="http://next.ft.com/__opt-in?optedvia=clippingshelp&referrer=https%3A%2F%2Fnext.ft.com%2Fmyft%2Fsaved-articles" /> |
180 | | - <test url="http://next-geebee.ft.com/hashed-assets/myft-page/53451626/main.css" /> |
181 | | - <test url="http://next-geebee.ft.com/image/v1/images/raw/http%3A%2F%2Fnext-geebee.ft.com%2Fassets%2Ficons%2Fhamburger.svg?source=next&tint=%23FFFFFF,%23FFFFFF&format=svg" /> |
182 | | - <test url="http://origami-build.ft.com/files/o-footer@5.0.3/img/nikkei_logo.svg" /><!-- 1516 --> |
183 | | - <test url="http://registration.ft.com/registration/subscription-service/bpsp" /> |
184 | | - <test url="http://registration.ft.com/registration/subscription-service/signuppsp" /> |
185 | | - <test url="http://image.webservices.ft.com/v1/images/raw/http%3A%2F%2Fassets1.howtospendit.ft-static.com%2Fimages%2Fa6%2F9e%2F9c%2Fa69e9c7b-781a-492d-bc7c-637b35a7fbe4_grid_crop.jpg?width=125&height=125&dpr=2&format=jpg&source=howtospendit" /><!-- 4547 --> |
186 | | - |
187 | | - |
188 | | - <!-- Not secured by server: |
189 | | - --> |
190 | | - <!--securecookie host="^\.ft\.com$" name="^(?:\d+_\d|AYSC|AYSC_C|FT_SITE|FTAllocation|FTUserTrack|anon-opt-in|h2_rtt|h2_spd|spoor-id)$" /--> |
191 | | - <!--securecookie host="^(?:announce|cdn\.markets)\.ft\.com$" name="^GZIP$" /--> |
192 | | - <!--securecookie host="^ftepaper\.ft\.com$" name="^FTEpaper$" /--> |
193 | | - <!--securecookie host="^myaccount\.ft\.com$" name="^AWSELB$" /--> |
194 | | - <!--securecookie host="^propertylistings\.ft\.com$" name="^(?:ASP\.NET_SessionId|PropGoLuxuryCookie_Lang)$" /--> |
195 | | - <!--securecookie host="^sub\.ft\.com$" name="^PHPSESSID$" /--> |
196 | | - <!--securecookie host="^\.sub\.ft\.com$" name="^mb_sessid_/\w+$" /--> |
197 | | - |
198 | | - <!-- Tracking cookies set by track: |
199 | | - --> |
200 | | - <securecookie host="^\." name="^(?:_ga|AYSC$|AYSC_C$|FTUserTrack$)" /> |
201 | | - |
202 | | - |
203 | | - <rule from="^http://(im|s4)\.media\.ft\.com/" |
204 | | - to="https://$1.ft-static.com/" /> |
205 | | - |
206 | | - <test url="http://im.media.ft.com/m/img/masthead_print.gif" /> |
207 | | - <test url="http://s4.media.ft.com/opentag/opentag-27295-31253.js" /> |
208 | | - |
209 | | - <rule from="^http:" |
210 | | - to="https:" /> |
211 | 72 |
|
| 73 | + <rule from="^http:" to="https:" /> |
212 | 74 | </ruleset> |
0 commit comments