- Joined
- Nov 14, 2012
It does.In addition to that, the Chat link at the top (home page) should open directly to the current tab's chat, not just General Chat.
Follow along with the video below to see how to install our site as a web app on your home screen.
Note: This feature may not be available in some browsers.
It does.In addition to that, the Chat link at the top (home page) should open directly to the current tab's chat, not just General Chat.
The URL on the home page is always https://kiwifarms.net/chat/general-chat.1/ no matter what tab I click. Could be a security thing since it's outside the iframe.It does.
I need information about your device and browser.All I get is this message...
I'm using a Windows desktop PC.I need information about your device and browser.
Do you have any extensions?I'm using a Windows desktop PC.
I have AdBlock Plus. If I turn it off, it still gives me the same message.Do you have any extensions?
Security level: Standard (default setting)
I've thought about it some more. Before auto-redirect to onion service fuckery got fixed, if you were logged into the forum on a regular clearnet domain and got randomly thrown onto the hidden service, you would have to log in again. The iframe page is requested through the proper Tor domain so cookies are saved, but the WSS rust-chat request is made to kiwifarms.net. This may be the reason, something to do with cross-origin policy and cookies.Haven't been able to figure out what breaks, so here are my headers. Hopefully they help someone.
TL;DR Cookies are inside the iFrame.Code:Request GET /test-chat#8 HTTP/1.1 Host: uquusqsaaad66cvub4473csdu4uu7ahxou3zqc35fpw5d4ificedzyqd.onion User-Agent: Mozilla/5.0 (Windows NT 10.0; rv:91.0) Gecko/20100101 Firefox/91.0 Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,*/*;q=0.8 Accept-Language: en-US,en;q=0.5 Accept-Encoding: gzip, deflate Referer: http://uquusqsaaad66cvub4473csdu4uu7ahxou3zqc35fpw5d4ificedzyqd.onion/chat/autistic-shitspigots.8/ Connection: keep-alive Cookie: xf_csrf=[EDIT]; xf_user=[EDIT]; xf_session=[EDIT] Upgrade-Insecure-Requests: 1 Sec-Fetch-Dest: iframe Sec-Fetch-Mode: navigate Sec-Fetch-Site: same-origin Response HTTP/1.1 200 OK Server: nginx Date: Tue, 07 Jun 2022 15:04:33 GMT Content-Type: text/html; charset=utf-8 Transfer-Encoding: chunked Connection: keep-alive Vary: Accept-Encoding Content-Encoding: gzip
TL;DR Only Sec-Websocket-Key and no cookie on the WSS connection. Is it a websocket thing and it's normal or is this where things fuck up?Code:Request GET /rust-chat HTTP/1.1 Host: kiwifarms.net User-Agent: Mozilla/5.0 (Windows NT 10.0; rv:91.0) Gecko/20100101 Firefox/91.0 Accept: */* Accept-Language: en-US,en;q=0.5 Accept-Encoding: gzip, deflate, br Sec-WebSocket-Version: 13 Origin: http://uquusqsaaad66cvub4473csdu4uu7ahxou3zqc35fpw5d4ificedzyqd.onion Sec-WebSocket-Extensions: permessage-deflate Sec-WebSocket-Key: [EDIT] Connection: keep-alive, Upgrade Sec-Fetch-Dest: websocket Sec-Fetch-Mode: websocket Sec-Fetch-Site: cross-site Pragma: no-cache Cache-Control: no-cache Upgrade: websocket TE: trailers Response HTTP/1.1 101 Switching Protocols Date: Tue, 07 Jun 2022 15:04:37 GMT Connection: upgrade upgrade: websocket sec-websocket-accept: [EDIT] CF-Cache-Status: DYNAMIC Expect-CT: max-age=604800, report-uri="https://report-uri.cloudflare.com/cdn-cgi/beacon/expect-ct" Server: cloudflare CF-RAY: 717a47ff58ebfd9d-PDX alt-svc: h2="cflarenuttlfuyn7imozr4atzvfbiw3ezgbdjdldmdx7srterayaozid.onion:443"; ma=86400; persist=1
Did the report work? I think I broke chat when I tried one to see.yeah right
View attachment 3363156
, and a delete option for mistakes , all I could do was report it.