Replies: 1 comment
|
This is a useful boundary report because it proves the native picker and filesystem are not reached. In rc.8, the API trust fence parses We incorporated the reproduction into the source-backed Remote Web runbook, including DevTools capture, clean-profile and scoped-extension A/B tests, managed-extension handling, and why The report also correctly avoids two unsafe shortcuts: changing generated DNR files directly and weakening the Harness trust fence. |
Uh oh!
There was an error while loading. Please reload this page.
Uh oh!
There was an error while loading. Please reload this page.
问题描述:
问题排查:(gpt 排查)
它配置了一条规则,将所有发往 127.0.0.1 的请求头:
Origin: http://127.0.0.1:3080
改写成:
Origin: http://127.0.0.1
而 Harness 会严格比较 Origin 与 Host,端口不一致便返回 403。规则位于:
/Users/yuhb/Library/Application Support/Google/Chrome/Default/DNR Extension Rules/
jfgfiigpkhlkbnfnbobbkinehhfdhndo/rules.json
立即可用的解决办法是访问:
http://localhost:3080
已验证该地址当前返回 HTTP 200,并且 Page Assist 的规则只匹配 127.0.0.1,不会改写 localhost。
根治方法是在 Chrome 打开:
chrome://extensions/?id=jfgfiigpkhlkbnfnbobbkinehhfdhndo
禁用 Page Assist,然后重新打开 http://127.0.0.1:3080。不要修改 Harness 的 Origin 安全校验,也不要使用
--trusted-host,后者不能绕过 host.pickDirectory 的回环同源限制。此次排查没有修改 DeepSeek Harness 源码。
解决方式:
禁用 Page Assist 插件,或者使用 http://localhost:3080 地方访问,亲测可行
优化建议:
不建议放宽端口比较,也不建议让 --trusted-host 绕过 host.pickDirectory 的回环限制。
可以在使用说明上加上失败则建议使用 http://localhost:3080 访问。
或者大佬们研究下有没有更好的方式
All reactions