Firefox 28 Release Notes
mozilla.org
mozilla.org
[1] http://w3techs.com/technologies/segmentation/ce-spdy/web_ser...
(edit: clarified wording)
Anyway, doesn't spdy/2 have a huge security flaw in certificate management? I don't remember it well. If that's the case, it's good that they droped it.
Also the current mainline 1.5 version has implementation of spdy/3.
For more discussion on this topic, please refer to these discussion threads: https://groups.google.com/forum/#!topic/spdy-dev/_uvxTJkeCP0 https://groups.google.com/forum/#!topic/spdy-dev/XDudMZSq3e4
And note that your reference is slightly misleading (I don't think you intended this). It's true, the vast majority of hosts supporting SPDY are running nginx. In practice though, the vast majority of these hosts are Cloudflare or WordPress.com hosted sites. Both run newer versions of nginx with SPDY/3.1 support.
I just made the (implied) observation that anyone deploying nginx shouldn't even bother enabling spdy in 1.4 (stable) because effectively nothing will use it anymore. It was something that people who use "stable" software were able to benefit from starting in May 2013, but it is now no longer and won't be again until nginx reaches 1.6. That is, unless spdy/3 is dropped in favor of spdy/4 by then.
(edit: fixed date)
As the posts below, "mainline" is considered stable enough for production.
A rose by any other name?
Yours - "So unless someone has the resources to test and deploy unstable web servers, it effectively means you shouldn't bother with spdy at this point."
Mine - "I think it's a fair assessment that supporting experimental technologies requires more engineering resources. Everyone has to do the cost/benefit analysis themselves."
Don't even bother building nginx 1.4 with spdy support or configuring it since no one can use it. From May 2013 until now there was a benefit to end-users. There no longer is.
If you want to provide the speed benefits of spdy to users, you now need to run unstable nginx or mod_spdy.
Pattern 1:
> Statement
>> Counterstatement!
>>> You're saying the same thing.
>>>> I am? Oh. I *am*. Whoops!
Pattern 2: > Statement
>> Agree with tone of disagreement.
>>> Disagree on disagreement, while offering up facts to somehow agree *harder*
>>>> Rebuttal, optional restatement of disagreement, optional statement(s) further
>>>> reinforcing the common point on which we just can't agree to agreeSource: http://forum.nginx.org/read.php?2,221377,221390#msg-221390
The current nginx 1.5.12 has patches to fix an overflow issue with the spdy support so it's gotten at least some attention paid to it since the feature was released. I expect spdy3.1 support will only get better as more and more people move to the latest version of nginx.
Check http://nginx.org/en/CHANGES for the changelog.
The fact that FF runs in a single process seems to be a major security issue since the web views are not sandboxed. I know Mozilla is working on their multiprocess project Electrolysis https://wiki.mozilla.org/Electrolysis that is experimental in FF 30. Hopefully, this project will help harden FF security.
Only to people who don't really understand security. This whole "multi process" "sandboxed" meme started by chrome guys has really got out of hand.
This stuff is described at http://code.google.com/p/chromium/wiki/LinuxSandboxing - if after reading that you still don't think it provides a significant additional layer of security, it would be interesting to hear what flaws you see.
Running content in multiple processes, by itself, doesn't help security at all. It does help stability, since if one process crashes the rest of the browser need not; that's particularly important if running plugins like Flash, which crash in a stiff breeze. But if untrusted content manages to exploit a separate browser process that doesn't have any additional sandboxing applied, there's nothing standing between it and the rest of your system.
Additional security, however, comes from then applying sandboxing features to those separate processes, following the principle of least privilege.
Also, splitting process is bogosecurity like "I run SSH on a non-22 port". I thought the general consensus here is that security by obscurity is bad.
How is running web views in separate processes "security by obscurity"? I agree that there is nothing inherently secure about it, though it has other benefits, but it doesn't increase obscurity as such (you could argue that the need for well-defined message-passing semantics leads to more decoupled code, decreasing 'obscurity').
Edit : Chrome feels subtle, lighter & perceptually faster (specifically : tabs, scrollbars). Although after updating Firefox today, I can notice that there's improvement in Firefox.
Right click in the tab area, select "Customize" and then drag it to the available icons panel. Searching works from the address bar too.
It is also probably there still because you can select where you want to search, so you can pull down the menu and search in Twitter, or Amazon, eBay, Google translate, Google maps, The Pirate Bay, Wolfram|Alpha, YouTube, ....
Edit: judging from the other comments, maybe you have already.
If you don't have a separated search bar, your only options are enabling or disabling autocomplete. There is no option of using autocomplete just when you want it.
Also, the local autocomplete of the address bar is great. Count me as another one that does not want to miss it.
The urlbar is already capable of searching though. It just doesn't give you suggestions for the reason above.
Presumed privacy - Some prefer to not send their direct traffic and history title strings through a google search input.
Usability - search engine autocomplete/suggest can interfere when typing a page title from your history.
Money - traffic volume referred to search engines is significantly increased by merging URL and search inputs.
Edit: wow, parent had zero responses when I started typing this!
Otherwise every keystroke you made would be sent to Google.
This lets you do queries like such:
Type "g hello" into the url bar - googles "hello"
wa integral from 0 to 1 of ln(x^4)dx - can be set to wolframalpha
w France - my wikipedia one
What I like about Firefox (versus Chrome specifically) is that the AwesomeBar gives much better suggestions from your history, doing full-text searches in titles - within Chrome I can rarely find something in my history without opening the history view and seriously, most searches that I do are for things that I've already seen and it saves a lot of roundtrips to Google (hint, hint), plus searching for things you can barely remember on Google, which you end up doing in Chrome, is like searching for the metaphorical needle in a haystack.
Plus, as others said, I like it when the browser cares about my privacy. On Android on the other hand there's only a single bar due to a lack of space, but it asks you if you want to activate Google's search suggestions.
Yes. And bookmarks, for me. Back when I had switched from Firefox to Chrome, I thought it hadn't imported most of my bookmarks. Chrome would hardly ever show me the things I expected/wanted.
Having switched back to Firefox, I'm delighted with the experience of it actually suggesting the things I want, again.
The only time I use Chrome these days, is for something Google can't be arsed to make work correctly in other browsers (e.g. photo editing on G+, label dropdowns in Gmail, ad nauseum).
You have three somewhat simple options for the search/url thing:
1) Have a single box, do not offer search suggestions. 2) Have a single box, offer search suggestions for the stuff users type in it. 3) Have separate boxes; offer search suggestions for the stuff typed in the search box but not the stuff typed in the url box.
#2 involves sending everything the user types in the url bar to the search suggestion provider to check for suggestions
Firefox does #3, because #2 is not considered acceptable from a user privacy perspective.
There are probably more complicated options here like only offering search suggestions if the string typed so far doesn't look like a URL or something that might protect user privacy better than a straight up #2. But it gets easy to screw it up and leak private user data to the search provider....
How would this work? Lets say I wanted to search for Wikipedia, perhaps because I know there's news about it. How would Firefox know I was going to type "Wikipedia" and not "Wikipedia.com"?
For example, "^ hacker news" will only search your history, and "* hacker news" only in your bookmarks.
Context Search (adds a context menu dropdown when you right click highlighted text; think plaintext words you search in trouble ticket type stuff) https://addons.mozilla.org/en-US/firefox/addon/context-searc...
Add To Search Bar (adds an option to search-engine-ify any submit text box) https://addons.mozilla.org/en-US/firefox/addon/add-to-search... (might as well mention https://addons.mozilla.org/en-US/firefox/addon/organize-sear...)
Bonus productivity favorite: https://addons.mozilla.org/en-US/firefox/addon/tree-style-ta...
So yeah, you'll pry Firefox away from my cold dead hands.
Anyway, as someone else said, setting browser.ctrlTab.previews to true in about:config should work. For me, it successfully changes the behavior of Ctrl-Tab to most-recently-visited order, and it causes hitting Tab while keeping Ctrl held to pop up previews of the tabs, just like Alt-Tab does on Windows. If you still can’t get that to work, there is also an no-restart add-on for what you want, MRU Tabs: https://addons.mozilla.org/en-US/firefox/addon/mru-tabs/.
You're right about browser.ctrlTab.previews in any case - I must have only just tried option-tab, not restarted, or something similar when I responded to the other comment. How one is expected to dig up that option is a mystery to me though. Is it really such an unusual request?
If you want chrome (or opera, which is little more than a chrome clone these days), you know where to find it. Firefox is supposed to be the customisable browser that gives the user the freedom to have what they want and not what Big Google decides they do.
And: https://developer.mozilla.org/en-US/Firefox/Releases/28/Site...
They have more detailed information than the release notes.
I found that Firefox 27 had huge speed improvements in canvas 2D compared to Firefox 26, at least in Linux without hardware accelerated canvas.
I couldn't find anything related to that in 27's release notes, sooo (still happy though!).
Problem is, this does not convince Average Joe about the slimness of Fx. I asked them to set up a main chart using only the stable ones with the latest changes (allocation), but it was ignored. IMHO that would help them see the what the end user would see over the long course, and A. Joe would see what actually effects him (as he is unlikely to use dev channels).
Edit: the charts also do not show the improvements in Garbage Collection (IGC in Fx16, upcoming ICC and GGC) and the memory management with add-os (Hueyfix in Fx15).
More generally, AWSY is useful for identifying some regressions, but it's one specific, unrealistic workload. You can't use it to judge Firefox's overall memory consumption.
For example, looking at AWSY you'd think Firefox 13 had the best memory consumption. But I guarantee you that Firefox 28 has better memory consumption. In particular, Firefox 28 has fewer bad cases where memory consumption spirals out of control, and those are the cases that really hurt performance and stability. Using 10 or 20% more memory at start-up, for example, isn't a big deal in comparison.
-representative of things Google knows it's faster at
-representative of things Google thinks should be fast and prioritizes... and is thus faster.
or a little of column A little of column b in a feedback loop.My memory was that originally V8 was out-performing everyone else primarily because the initial allocation (into the nursery) was way quicker than anyone else did. Or maybe it was freeing the nodes that die young?
Certainly I remember both SpiderMonkey and Carakan spending huge amounts of time on GC on Splay, and Carakan's massive speed-up came when the object representation was changed (GC actually asymptotically regressed as a result, but in almost every practical case cache-locality (and reduction of memory accesses) outweighed it).
This is awkward since in general I find Firefox's performance to be on par with Chrome, sometimes slightly better, but these charts make me open Chrome and it's a pity since I prefer Firefox.
Maybe HighCharts is not optimized properly for Firefox and of course, those charts being a work in progress are not optimized. But I do wonder, what's the difference here? Is it something about hardware acceleration?
If you are able to provide such a test account, please file a bug at https://bugzilla.mozilla.org/enter_bug.cgi; use "Core :: General" in the "find product" box; and don't worry too much about most of the fields, the title and description are the most important; and also add ":njn" to the "CC" field. Say something like "I can provide login details privately".
If you can do that, I'll try to find the right person to address it.
https://www.mozilla.org/security/announce/2014/mfsa2014-31.h...
Edit: here's a comparison of the audio UI between versions: https://mediacru.sh/2528762308f7, looks butt-ugly imo
The relnote is presumably talking about https://bugzilla.mozilla.org/show_bug.cgi?id=649490
Had swapped back to using the default version from nightly in anticipation, but it seems that was a bit premature on my part.
https://wiki.mozilla.org/Features/Release_Tracking#Almost_De...
PS: I'm not expert on servers :)
https://en.wikipedia.org/wiki/SPDY#Protocol_versions
Spdy really shows how fast people are willing to put immature technology in production as long as Google claims it better. Amazing.
What's even wise is the attitude towards abandoning published protocols and contracts. This is not how a lasting and stable internet was built.
This clearly shows why spdy can't be a candidate for http 2.0
Spdy is not an established standard, it's an experimental protocol developed by Google to improve the transmission of data on top of HTTP. So yes, it is normal to have Google and Firefox drop the older versions to push forward on the iterations, it's an experiment to see how they can improve Spdy and in the end, how HTTP 2.0 can benefit from those results.
It is more irresponsible to keep and use an older experimental protocol that nobody will use.
HTTP 1.0 is an established standard agreed by everybody and that's why it hasn't changed in 30 years, something Spdy is not.
HTTP 2.0 working group is already establishing majority of Spdy's experiment results as a working draft for HTTP 2.0.
(i.e. is it feasible to completely drop VP8 and use VP9 instead?)
Best way to delay the pain (and that of their general too-frequent breakage) is to switch to the ESR version: https://www.mozilla.org/en-US/firefox/organizations/all/ , which should give enough time for addon writers to undo the australis damage.
It might turn off some Firefox users but I really dig it.
"< input type=color > and < input type=number > have been implemented, disabled by default."
http://www.raymondhill.net/voronoi/rhill-voronoi-demo1.html
The difference has narrowed though, FF used to be much, much slower than chromium.
Can we finally add custom search providers like desktop version from http://mycroftproject.com/. It really seems to be an odd exclusion since sync takes care of everything else.
I get a scripting error, and it won't load it!