summaryrefslogtreecommitdiffstats
path: root/dom/tests/mochitest/geolocation/test_crossorigin_iframe.html
blob: 47af6f45eeccaf95e998949bf952201afba0cdfc (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
<!DOCTYPE HTML>
<html>
<head>
  <title>Test for geolocation is disabled by default, and set
    allow="geolocation" in iframe could enable geolcation</title>
  <script src="/tests/SimpleTest/SimpleTest.js"></script>
  <link rel="stylesheet" type="text/css" href="/tests/SimpleTest/test.css" />
</head>
<body>
<script class="testbody" type="text/javascript">

SimpleTest.waitForExplicitFinish();

var tests = [
  // default cross-origin permission is denied
  [ null, "denied" ],
  [ "geolocation", "allowed"],
];

function checkGeolocationResult(test) {
  return new Promise(resolve => {
    function onMessage(event) {
      is(event.data, test[1], "Expected " + test[1] + " for " + test[0]);
      window.removeEventListener("message", onMessage);
      resolve();
    }

    window.addEventListener("message", onMessage);
  });
}

async function nextTest() {
  if (tests.length == 0) {
    SimpleTest.finish();
    return;
  }

  let test = tests.shift();

  var iframe = document.createElement("iframe");
  if (test[0]) {
    iframe.allow = test[0];
  }

  let geolocationPromise = checkGeolocationResult(test);
  iframe.src =
    "https://example.org/tests/dom/tests/mochitest/geolocation/crossorigin_iframe.html";
  document.body.appendChild(iframe);
  await geolocationPromise;

  document.body.removeChild(iframe);
  SimpleTest.executeSoon(nextTest);
}

SpecialPowers.pushPrefEnv({"set": [
  ["dom.security.featurePolicy.header.enabled", true],
  ["dom.security.featurePolicy.webidl.enabled", true],
]}).then(nextTest);
</script>
</body>
</html>