Firefox 36.0 released
mozilla.org
mozilla.org
(I'm sure others have made similar remarks about other features that were added over time that were originally in extensions)
A little icon appeared in the url bar on some website (it's orange when reader view is active, otherwise it's pale blue). I don't know how or why Firefox decides to show this icon. Even better, I just revisited the webpage in the screenshot annnd... no more reader view icon. SoFTWare.
ps: the reader view icon doesn't show anymore. FTWustrating.
As for which WM specifically, it would be impossible to say for certainty since every one of them can be configured to look like the other - so only the OP would know for sure.
I'd speculate that you're right about Linux, but only because the article exampled was about ArchLinux. However that could be a red herring and the aforementioned WMs would also compile on most modern *nixes (or at the very least, a few of the notable BSDs)
I prefer having an extension/built-in tool to a bookmarklet, though.
Others have also mentioned that the subpixel order differs from monitor to monitor, so if the screenshot was taken on a monitor with BGR subpixels and your monitor has RGB subpixels, the text will look much, much, worse than if there had been no subpixel rendering at all. Or perhaps you, like me, have a CRT and subpixel rendering always looks wrong. It's hardly Firefox's fault.
agreed ;)
Not really. Just learning about how to adjust preferences for FontConfig. Antialiasing, hinting and subpixel rendering have a lot of effect on the visual appearance especially. You can read about it here:
https://wiki.archlinux.org/index.php/Font_configuration#Font...
There can be also some monitor specific tweaks like LCD filtering.
More feature rich DEs give quite easy to use interfaces for managing all that (for example KDE). So if you are using some barebones DE / WM, then you should be ready to do all that manually in the config files.
The xml config files seems overly complex (I admit, I suffer from acute xml ad-formatem) for my tastes.
I tried to diff manjaro linux /etc/fontconfig actually, just to see what they were doing right to have such nice visuals and couldn't find anything.
It's in the same basket as some famous audio server, which I replaced by it's very naive ancestor.
About general idea of what all those settings are, here is a brief overview: https://en.wikipedia.org/wiki/Font_rasterization
FontConfig rules can even be applied to Web fonts, which at times can be messed up by default. Example of such rule for fixing some mess on DuckDuckGo:
<match target="font">
<test name="family">
<string>@font-face:DDG_ProximaNova</string>
</test>
<edit mode="assign" name="autohint">
<bool>true</bool>
</edit>
<edit mode="assign" name="lcdfilter">
<const>lcddefault</const>
</edit>
</match>
The difference it made for me (note the word Wikipedia and messed up letter i):Without the rule: https://i.imgur.com/SsicEFJ.png
With the rule: https://i.imgur.com/Ehh0rZU.png
I guess you haven't used Ubuntu lately, which ships with better fonts than my Windows machine.
Is not about font taste, is about brokenness, you can clearly see in the screenshot that the fonts are rendered poorly, some letters are lighter than others, half of a letter is lighter than the other half, some don't look smooth, etc...
I use debian and arch with http://www.infinality.net/blog/ and the fonts have never looked better.
In practice, I think we'd be better off darkening the background a little and lightening the foreground just a touch; #333 text on #F8F8F8 background still "feels" like black and white, but (assuming you've chosen a reasonable text size) it'll be a lot easier to read if you're dealing with long-form text.
Experiment, write this css into your dev tools:
body * {
color: #000 !important;
}BTW, is there already support for 4096 certs? Or is that coming later?
http://bitsup.blogspot.com/2015/02/http2-is-live-in-firefox....
(I know we're not there yet :P)
There's also folks who don't entirely trust ECC because it's "too new". To be fair, RSA isn't broken, and 4k is sufficiently big to be safe even with a partial break.
Isn't RSA much more computationally expensive than ECC? What hardware can do RSA but not ECC?
/me sits down to be schooled
EDIT: Unless you're referring to embedded systems that can't be updated?
Actually, not just embedded systems. There's HSMs (hardware security modules) which also can't be updated to support new functions. Often this is because the underlying primitives have been implemented in fixed-function hardware to prevent timing, power and even RF analysis.
(or just add to this list)
- css sprites
- monolith js/css-files
- rotating through 'alias'-subdomains for resources
- trimming cookies / cookie-less domains (for request-headers)
If you're using every single image, line of JavaScript, etc. as soon as the page loads, a single large file will probably still be faster. If, however, you have a mix of things which are only used for optional features, not on every page, etc. there's room for some nice improvements because independent resources can be loaded immediately whereas a huge concatenated JavaScript file has to wait for the entire transfer before it can be safely executed. If your site really needs jQuery and 90 plugins to work at all, that doesn't help, but if a fair amount of your code can be loaded independently the overall load time can be shorter if some of the code executes while other resources are still fetching rather than waiting until it has everything.
The independent fetch + caching is also more valuable for repeat visitors who have cached copies of everything which didn't change – i.e. if you only touched an icon in the footer of your page, the experience is better if your header logo displays instantly out of the cache rather than having to wait for an entire sprite to reload.
I'm also skeptical that sprites must necessarily be significantly more demanding memory-wise than smaller images. Implementations may vary, but at least in current browsers, when you make an Image tag/object with the same source as one you've already loaded, the second one loads instantly. This at least makes it appear that both image tags are getting some kind of lightweight view into the same image data -maybe just a pointer to the same bucket of bits- as opposed to having to re-download and/or re-copy the image data for each instance.
The memory usage of CSS sprites (which are implemented as css background images rather than Image objects) was definitely an issue a couple of years back. Inlining the images as base64 data uris seems much better.
I really wish there were a way to more easily identify if the problem is an addon or inherent to Firefox.
firefox.exe -p -new-instance
Should open a new instance of Firefox in the profile dialog, where you can create a new profile.I'm not sure about "-new-instance". I've only used -no-remote but the release notes say remote commands have been removed. Some quick research turned up -new-instance as a substitute.
You can also restore Firefox to its default settings with Help menu > Troubleshooting Information > Give Nightly a tune up > Refresh Firefox button. It will uninstall your add-ons but retain your bookmarks, browsing history, and saved passwords.
A good example is the Network tab. In Chrome, I need only have the developer tools open to capture information about requests. In FF, I must not only have the tools open, but I must also be viewing the tab.
Another minor annoyance is the state of add-ons. It seems that new versions of the add-ons I use regularly are several versions behind their Chrome counterparts. And have you tried to develop an add-on? Wow. The docs are kind of harsh. They could really use a guided example.
Firefox has a few of these irritating UX quirks that I just can't get over. Having to restart after installing an extension is another. Every time I see the request, I can't help lose a bit of respect for it.
This is such a small thing but it drives me insane (and keeps me on Chrome, among other things).
> Having to restart after installing an extension is another. Every time I see the request, I can't help lose a bit of respect for it.
Yeah, I've enjoyed the last few years with not having to worry about restarting idk if I could go back...
Restart-less add-ons have been around for long years, so if you see one that wants you to restart Fx, you can blame it on the addon's creator (I know there may be some edge cases where it is a must, but those are pretty rare).
Another one is not being able to use shift-home or shift-end to select to the beginning or end of a css property.
Because it's part of your everyday workflow to install extensions one after another, right?
It depends on the extension. Only some (particularly, older) extensions require restarting.
About writing extensions we had this on HN in September 2014 https://news.ycombinator.com/item?id=8285744
Really? I uninstalled Firebug not so long ago, having concluded that it offered little added value any more, while measurably, repeatably, and dramatically reducing Firefox's performance. Has either or both of these things changed in the last few months?
[1] https://blog.getfirebug.com/2014/03/26/firebug-2-0-alpha-1/ [2] https://blog.getfirebug.com/2014/06/10/firebug-2-0/
The problem with current system is more if our add-ons are based on a specific website like mine. When that website changes, it breaks my add-on and I upload the fix immediately. But Firefox takes days to approve it, making my add-on look bad in public.
Having to hunt down the option to turn on Sync for each extension explicitly and not even having that option for some extensions makes for a rather poor user experience.
Also, as someone who customizes the browser layout rather extensively, I'd like to see layout settings included in Sync as well (which toolbars are visible/how buttons are organized on toolbars/etc).
It's totally unreasonable that I should have to start up applications in a sandbox after each upgrade and/or hire a team of lawyers to go over the EULA/TOS to find what new & interesting ways have been found to sell my personal info.
(Responding to your general point btw rather than specifically against Mozilla, who compared to the alternatives do seem to care about their users privacy, nor Sync which which you have to opt in for)
If you are unfamiliar, I recommend you also checkout firefox developer edition.
Google do allow you to use your own passphrase, so conceivably at this point Chrome is at least somewhat more secure than Mozilla.
It's a crying shame.
On Chrome, non-technical people won't be able to change default search engine.
Thanks Mozilla.
By design. Thanks Google.
Aside from that, what is the benefit of the new design supposed to be? It looks like it's designed for touch, but Firefox on touch-based platforms has a completely different UI anyway. And even if someone were to use the desktop version of Firefox with touch input, the targets look a bit small. So I don't understand the point of making the UI worse for keyboard and mouse input.
See the bottom of this screen shot:
https://bugzilla.mozilla.org/showdependencytree.cgi?id=34298...
[1]: https://wingolog.org/archives/2014/11/14/generators-in-firef...
What do they mean with "whenever possible"? If there is a downgrade attack ongoing, will it be possible to avoid RC4?
What sort of bug is this that only affects Facebook & Google?
https://bugzilla.mozilla.org/show_bug.cgi?id=950399
This would of course affect any site, but the two common instances were FB and google.
A proxy could inject cookies on a 407 response and even bypass the authentication prompt - could have been used for session fixation attacks.
> 4.0 and up
:(
The major drive was Chrome's poor handling of dozens of open tabs, which was slowing down my Macbook to a crawl (8GB Core i7 2012 13" Retina on Yosemite) way too often. "The great suspender" extension helped somewhat, but it felt like a lot of manual work for something I believe the browser should handle much more smartly on its own.
Firefox is better in this respect, with sane native behavior like not trying to restore 100+ tabs in parallel upon restart, and extensions like UnloadTab that automatically suspend tabs after some timeout.
However, I'm about to switch back to Chrome :
- I only have 3-4 active tabs in FF at the moment, but as I type this I can feel noticeable lag, and firefox+WindowServer fighting for CPU.
- Embedded video is jerky and looks like it's 10-12fps no matter what the site. Going full screen fixes it, but still..
- No FF extension I've found integrates Google Translate as seamlessly as Chrome does.
I'm not looking forward to handling dozens of tabs in Chrome again, but its baseline performance for everything else is noticeably better for me.
tl;dr there are other command line options to do everything -remote does in a more sensible way.
https://addons.mozilla.org/en-US/firefox/addon/spdy-indicato...
Gee, Thanks.
See also: https://lists.w3.org/Archives/Public/ietf-http-wg/2015JanMar...
I really wonder whether there is a measurable change in traffic and whether it goes up or down.
It crashes. A lot. Like, at least once a day I have to ctrl+alt+del and restart it on my laptop. It freezes and the window stops responding, it doesn't even paint.
In the inspector, the DOM breadcrumb area scrolls and moves around. It's like the blink tag, only worse.
JS debugger feels worse and clunky compared to Chrome.
Element inspector feels like duplo to chromes lego (does that make sense?)
I opened firefox yesterday and found a new speach bubble icon asking me to connect to O2 for something. WTF?! WTactualF is that all about?
/rant
I used Chrome, IE11, and Firefox all day. FF is the only one that locks up and crashes on me. Its so rare in the other browsers I'm shocked when it happens in FF. I run almost no extensions and I think my copy at work has zero extensions and I don't even have flash installed, so the idea that it must be a plugin problem is questionable. Once a day lockups or crashes are still, unfortunately, common. I really wish it was a better QA'd project. Its such a nice piece of software, but I imagine its reached the point where it can and should be forked to a lightweight browser the same way FF forked from the big ugly Mozilla suite. Current leadership at Mozilla just don't seem to make crashes and resource usage a priority.
I also dont like how it switched on me from google to yahoo as my default search engine. If MS did this in IE people on HN would be losing their shit, but because this project is a FOSS darling, everyone just made excuses for it. At the very least it should have asked me if I wanted to change to whatever search engine they've gotten into bed with this year.
I know for a fact that Mozilla leadership does prioritize crashes and resource usage (in fact, this is one reason for all of the work on the process separation feature called Electrolysis), but of course they will prioritize crashes that affect lots of users. For various reasons, it could be that your crashes are different from those. (I'll assume that you're on the most recent version of Firefox already.)
FF just has poor QA. That's a problem and all the excuse making actually hurts the product as FF leadership isn't seeing enough complaints apparantly, when an army of nerds are refusing to acknowledged these problems.
Extensions are commonly blamed because of the way that Firefox implements extensions.
They essentially become a fully integrated part of the browser with full privileges. When extensions do things that they shouldn't be doing (but can anyway, because what's stopping them?), the extensions are blamed.
Of course there have been many lessons learned from a decade-old extension ecosystem. Other, newer browsers have benefitted from those lessons (ie. Chrome). Mozillians know the problems with the current extension model but the hard part is having the resources to do something about it.
"Yet somehow Chrome/Chromium exists just fine without me writing big reports for it, same for Safari, IE, etc."
SOMEBODY is writing bug reports. FWIW, there are what, 50000 Google employees, a majority of which could be dogfooding prerelease Chrome and filing bugs. Mozilla has 1/50 of that to dogfood Firefox and depends heavily on its community to make contributions.
No need for excuses, I use FF and my default search engine is Google. It was two "clicks" to change back but sorry if that was to dramatic for you. Most people realize Mozilla is not going to make someone's search engine the default for free and that contracts end.
People will complain about anything...
It's this, people HATE when you criticize FF (as I found the other week when I got downvoted for raising, what I thought were, valid points about crashes, lockups, and not being multi-process). I upvoted you and your parent but it won't be enough to stem the tide of downvotes (this is probably going to get downvoted as well).
Dear downvoters,
How about you actually respond with your reasoning instead of proving my point perfectly.
If they changed people that had set it to google, sure.
But changing the default? That's not something to be mad about.
Not sure why you saw O2 but I saw Telefonica which is the company that works with Firefox to deliver their Firefox OS phones. I suppose Telefonica/O2 is needed because even though WebRTC is a real-time direct connection between you and somebody else, you may need a 3rd party to help you connect to one another at first.
You know there are a myriad of ways to use the browser to do video chat already - websites that offer WebRTC video chat. You follow a URL, maybe from a bookmark, and use the one you want (eg http://appear.in).
None of that requires modifying browser chrome nor forcing buttons on to established users toolbars.
This is a marketing deal disguised as browser development.
..to see long-standing issues being ignored or back-burnered in the march to add all the new features. Duplicate SSL certs still cause sites to be unviewable without stupid and security-breaking workarounds that are not necessary in other browsers, for nearly 7 years now[1], making the browser completely unsuited to enterprise administration uses. One misbehaving tab can still kill your entire session. I understand that they're working on this with the electrolysis project, but end of 2015 goal?[2] I don't mean to be overly snarky here, but congratulations on getting to where Chrome/ium was back in 2008.
I seriously question how the priorities are being decided at Mozilla. These are basic usability things that were solved in other browsers a long time ago.
How much of the work that went into deprecating certs and removing obscure command line flags and setting up HTTP/2 (which isn't even really used by anyone yet) could have went into electrolysis?
I agree with you on older bugs just lingering around. This is a serious issue for many open source projects. JWZ was complaining about it years ago[2]. My favourite example is the problem of putting the tabs at the bottom of the window in gnome-terminal[3], which has been reported over 12 ago, has a patch available posted in the bugzilla, and it's still not fixed.
[1] https://addons.mozilla.org/en-US/firefox/addon/spdy-indicato...
Another thing to keep in mind is that patch notes are a list of user-facing changes, not a breakdown of where the engineering effort went in a particular 5 week release cycle. Removing the command line flag probably took an engineer an hour or two to do. In the same time frame, I spent weeks analyzing and fixing a variety of leaks that only show up in multiprocess Firefox, but none of that shows up in the patch notes.
How often do tabs crash for you? That's the real issue if you ask me. I'm on Nightly (with Electrolysis!) and the last crash was over 2 months ago.
Firefox = rock solid. Flash = porous rock, at best :)
If you're getting a lot of Flash-induced crashing, you may want to check into alternate implementations of Flash, like Gnash, Lightspark, or even Mozilla's Shumway.
Yeah, because it only loads a single page. It doesn't actually restore anything. Sometimes the pages it restores aren't even the live version but a cached one, I have no idea when or why it does that. It's absolutely infuriating.
That said, it is easy to recover from simply by re-opening FF and you're right back where you were and I haven't had a total browser crash in a long time. I do experience lock up issues though
1) Nothing I've found that works nearly as well as Tree Style Tab.
2) Chrome always reloads all tabs when the browser starts up. Firefox, at least with Session Manager, will only load old tabs when I activate them.
3) Chrome takes up way more memory. That's partly due to #2, but partly inherent in the multi-process model.
The Chrome UI also gets weird under load. With Firefox, it's easy to tell when it's laggy. With Chrome, the UI seems asynchronous, but there's no consideration for actions taking a long time, so you can get the annoying feeling of clicking with nothing obvious happening.
The only reason tabs generally misbehave is if Flash crashes. Firefox separates Flash out to a separate process so it won't crash the browser, even the tab the crashed Flash plugin is in. It just takes it a few more seconds than I'd like to realize the crash. (You can adjust the timing yourself, though). I haven't had a non-Flash-related Firefox issue in a very long time.
Other offenders off the top of my head: BMC interface on Intel boards, HP iLO for blade management, F5 load balancers.
Yeah, they shouldn't be doing that, but the only thing being asked for here is a bleeding override button.
That's never good and it feels dangerously close to professional negligence when it's a password which gives privileged access to a server.
EDIT: just to be clear, I don't think this is “these people are crazy” so much as “what reason is good enough to justify leaving yourself exposed like this?” Even the cheap devices I bought in the early 2000s allowed you to install SSL certs and installing something real was a routine part of the first-time install.
Personally, I usually end up using plain unencrypted http instead, which is a net negative in terms of security (doesn't even protect against passive adversaries), but that seems to be what the SSL implementers prefer.
I mean, it would be great for a few people if they added the ability to ignore this check but it's not a surprise that it's a lower priority compared to implementing HTML5/ES6 features which will provide a better web experience for millions of people.