Skip to content

Support Chrome policy for the Ona URL - #241

Draft
kylos101 wants to merge 1 commit into
mainfrom
kb/ona-enterprise-policy
Draft

kylos101 wants to merge 1 commit into
mainfrom
kb/ona-enterprise-policy

Conversation

@kylos101

Copy link
Copy Markdown

Allow administrators to centrally configure the Ona URL through Chrome policy while retaining users’ preferences after policy removal. Host access still requires separate permission.

Validated with Chrome and Firefox builds, 63 tests, TypeScript, ESLint, and Prettier.

Co-authored-by: Codex <noreply@openai.com>
Comment thread docs/enterprise-policy.md

Deploy an extension version containing the `OnaInstanceUrl` policy schema before applying this policy. The Chrome Web Store extension ID is `dodmmooeoklaejobgleioelladacbeki`; confirm the installed ID at `chrome://extensions`. Unpacked builds can have a different ID.

`OnaInstanceUrl` is an optional string containing an absolute HTTP(S) origin, for example `https://ona.example.com` or `https://ona.example.com:8443/`. HTTPS is recommended. A trailing slash is normalized away. Credentials, non-root paths, query strings, fragments, whitespace, missing schemes, and other protocols are invalid. This policy does not test server reachability or authentication.

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

HTTPS is recommended

I believe HTTPS is enforced on our end. Could be wrong though

Comment thread docs/enterprise-policy.md
4. Change the policy URL and reload policies while leaving the popup or SCM page open. The displayed URL and links should update. Visit a different Ona instance with hopping previously enabled and confirm it cannot replace the managed URL.
5. Remove the policy and reload policies. Editing should become available and the previously saved user URL should return, or the built-in default if no URL was saved. An invalid policy value should also fall back.

## Host access is separate

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

this section feels a bit superfluous / irrelevant, think we should consider removing it.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants