<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "https://bugs.webkit.org/page.cgi?id=bugzilla.dtd">

<bugzilla version="5.0.4.1"
          urlbase="https://bugs.webkit.org/"
          
          maintainer="admin@webkit.org"
>

    <bug>
          <bug_id>198236</bug_id>
          
          <creation_ts>2019-05-24 15:30:20 -0700</creation_ts>
          <short_desc>Update sandbox rules for more News use cases</short_desc>
          <delta_ts>2019-05-28 10:34:05 -0700</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>WebKit</product>
          <component>WebKit Misc.</component>
          <version>WebKit Nightly Build</version>
          <rep_platform>Unspecified</rep_platform>
          <op_sys>Unspecified</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>FIXED</resolution>
          
          
          <bug_file_loc></bug_file_loc>
          <status_whiteboard></status_whiteboard>
          <keywords>InRadar</keywords>
          <priority>P2</priority>
          <bug_severity>Normal</bug_severity>
          <target_milestone>---</target_milestone>
          
          
          <everconfirmed>1</everconfirmed>
          <reporter name="Brent Fulgham">bfulgham</reporter>
          <assigned_to name="Brent Fulgham">bfulgham</assigned_to>
          <cc>ap</cc>
    
    <cc>bfulgham</cc>
    
    <cc>pvollan</cc>
    
    <cc>thorton</cc>
          

      

      

      

          <comment_sort_order>oldest_to_newest</comment_sort_order>  
          <long_desc isprivate="0" >
    <commentid>1539089</commentid>
    <comment_count>0</comment_count>
    <who name="Brent Fulgham">bfulgham</who>
    <bug_when>2019-05-24 15:30:20 -0700</bug_when>
    <thetext>Update the WebContent and Network process sandboxes so that News has the same set of allowed service access as regular WebKit views.</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1539090</commentid>
    <comment_count>1</comment_count>
    <who name="Brent Fulgham">bfulgham</who>
    <bug_when>2019-05-24 15:30:53 -0700</bug_when>
    <thetext>&lt;rdar://problem/50054027&gt;</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1539091</commentid>
    <comment_count>2</comment_count>
      <attachid>370597</attachid>
    <who name="Brent Fulgham">bfulgham</who>
    <bug_when>2019-05-24 15:33:27 -0700</bug_when>
    <thetext>Created attachment 370597
Patch</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1539118</commentid>
    <comment_count>3</comment_count>
      <attachid>370597</attachid>
    <who name="Alexey Proskuryakov">ap</who>
    <bug_when>2019-05-24 16:58:38 -0700</bug_when>
    <thetext>Comment on attachment 370597
Patch

View in context: https://bugs.webkit.org/attachment.cgi?id=370597&amp;action=review

&gt; Source/WebKit/NetworkProcess/mac/com.apple.WebKit.NetworkProcess.sb.in:46
&gt; +#if __MAC_OS_X_VERSION_MIN_REQUIRED &gt;= 101300 || PLATFORM(IOSMAC)

Please remove most of these #ifs. 10.13 is the minimum.</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1539635</commentid>
    <comment_count>4</comment_count>
    <who name="Brent Fulgham">bfulgham</who>
    <bug_when>2019-05-28 10:32:54 -0700</bug_when>
    <thetext>(In reply to Alexey Proskuryakov from comment #3)
&gt; Comment on attachment 370597 [details]
&gt; Patch
&gt; 
&gt; View in context:
&gt; https://bugs.webkit.org/attachment.cgi?id=370597&amp;action=review
&gt; 
&gt; &gt; Source/WebKit/NetworkProcess/mac/com.apple.WebKit.NetworkProcess.sb.in:46
&gt; &gt; +#if __MAC_OS_X_VERSION_MIN_REQUIRED &gt;= 101300 || PLATFORM(IOSMAC)
&gt; 
&gt; Please remove most of these #ifs. 10.13 is the minimum.

I don&apos;t think that&apos;s true until we ship in the fall? 10.14 is current shipping, and we support current and two back.</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1539637</commentid>
    <comment_count>5</comment_count>
    <who name="Brent Fulgham">bfulgham</who>
    <bug_when>2019-05-28 10:34:05 -0700</bug_when>
    <thetext>Committed r245817: &lt;https://trac.webkit.org/changeset/245817&gt;</thetext>
  </long_desc>
      
          <attachment
              isobsolete="0"
              ispatch="1"
              isprivate="0"
          >
            <attachid>370597</attachid>
            <date>2019-05-24 15:33:27 -0700</date>
            <delta_ts>2019-05-24 16:58:38 -0700</delta_ts>
            <desc>Patch</desc>
            <filename>bug-198236-20190524153327.patch</filename>
            <type>text/plain</type>
            <size>4247</size>
            <attacher name="Brent Fulgham">bfulgham</attacher>
            
              <data encoding="base64">U3VidmVyc2lvbiBSZXZpc2lvbjogMjQ1NzU2CmRpZmYgLS1naXQgYS9Tb3VyY2UvV2ViS2l0L0No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</data>
<flag name="review"
          id="386550"
          type_id="1"
          status="+"
          setter="ap"
    />
    <flag name="commit-queue"
          id="386556"
          type_id="3"
          status="-"
          setter="ap"
    />
          </attachment>
      

    </bug>

</bugzilla>