Do not clobber dynamic public key pins when handling the Strict-Transport-Security header.
Rather than unilaterally calling EnableHost, do like
ProcessPublicKeyPinsHeader and first look up any existing state for the
given host.
BUG=109691
TEST=Set a pin for a domain that serves HSTS, visit that domain, and then make sure the pin is still present
Review URL: http://codereview.chromium.org/9231029
git-svn-id: svn://svn.chromium.org/chrome/trunk/src@118126 0039d316-1c4b-4281-b951-d872f2087c98
1 file changed