Weekly github digest (HTTP Activity Summary)

Repository Activity Summary Bot <do_not_reply@mnot.net> Sun, 21 August 2022 07:41 UTC

Return-Path: <ietf-http-wg-request+bounce-httpbisa-archive-bis2juki=lists.ie@listhub.w3.org>
X-Original-To: ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com
Delivered-To: ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4128BC14CF1F for <ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com>; Sun, 21 Aug 2022 00:41:28 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.459
X-Spam-Level:
X-Spam-Status: No, score=-2.459 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_INVALID=0.1, DKIM_SIGNED=0.1, HEADER_FROM_DIFFERENT_DOMAINS=0.249, HTML_MESSAGE=0.001, MAILING_LIST_MULTI=-1, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=fail (2048-bit key) reason="fail (message has been altered)" header.d=mnot.net header.b=Hg5QXIgm; dkim=fail (2048-bit key) reason="fail (message has been altered)" header.d=messagingengine.com header.b=XG1nyv26
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id RSFx13lbiXuh for <ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com>; Sun, 21 Aug 2022 00:41:23 -0700 (PDT)
Received: from lyra.w3.org (lyra.w3.org [128.30.52.18]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange ECDHE (P-256) server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1DD9BC14F73D for <httpbisa-archive-bis2Juki@lists.ietf.org>; Sun, 21 Aug 2022 00:41:22 -0700 (PDT)
Received: from lists by lyra.w3.org with local (Exim 4.94.2) (envelope-from <ietf-http-wg-request@listhub.w3.org>) id 1oPfXR-001QrS-Vm for ietf-http-wg-dist@listhub.w3.org; Sun, 21 Aug 2022 07:38:30 +0000
Resent-Date: Sun, 21 Aug 2022 07:38:29 +0000
Resent-Message-Id: <E1oPfXR-001QrS-Vm@lyra.w3.org>
Received: from mimas.w3.org ([128.30.52.79]) by lyra.w3.org with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.94.2) (envelope-from <do_not_reply@mnot.net>) id 1oPfXP-001QqT-La for ietf-http-wg@listhub.w3.org; Sun, 21 Aug 2022 07:38:27 +0000
Received: from out2-smtp.messagingengine.com ([66.111.4.26]) by mimas.w3.org with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.94.2) (envelope-from <do_not_reply@mnot.net>) id 1oPfXN-000XhE-Sn for ietf-http-wg@w3.org; Sun, 21 Aug 2022 07:38:27 +0000
Received: from compute4.internal (compute4.nyi.internal [10.202.2.44]) by mailout.nyi.internal (Postfix) with ESMTP id 43FF45C00C8 for <ietf-http-wg@w3.org>; Sun, 21 Aug 2022 03:38:14 -0400 (EDT)
Received: from mailfrontend1 ([10.202.2.162]) by compute4.internal (MEProxy); Sun, 21 Aug 2022 03:38:14 -0400
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=mnot.net; h=cc :content-type:date:from:from:in-reply-to:mime-version:reply-to :sender:subject:subject:to:to; s=fm2; t=1661067494; x= 1661153894; bh=lj3S2cfr25Qo2C+6CQ6iZwV/GF5hAAOX68hsc+qSH+Y=; b=H g5QXIgmVgVhSgaUF2Z6lbDAzjQijegpa6BeWNr2znJAu9oSqyXRUZLXoKzOZFt8O 0ya8M7TOy8l+LzDGaF72acR/i37xqXC7wxybdGOXFAWM4W+zBKlj7jUeEi6Ci41A zL/MH3akx9VSSHG7+gU88Nekyxb9lSOu56o27yG9p62+lwUMuFYqvGpmPsxQDuUx 1N4IkMujkcyWpp8tRpIX+KovDt6exte3DF25vSaZrWYGNkz94tH9C75HIEVcLrct W6JlGDPyl7xO9QK4j5TMoexQxpCn1uEdGPf6wPtMVueB0H1qr81nc3okHnS6qtYb jCDnxAjISRRGVNPimVoyw==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:content-type:date:feedback-id :feedback-id:from:from:in-reply-to:mime-version:reply-to:sender :subject:subject:to:to:x-me-proxy:x-me-proxy:x-me-sender :x-me-sender:x-sasl-enc; s=fm1; t=1661067494; x=1661153894; bh=l j3S2cfr25Qo2C+6CQ6iZwV/GF5hAAOX68hsc+qSH+Y=; b=XG1nyv264iQb48DaT yyvWZAObB5YgNWlXMXi3zQIA+vvTcRoFPDO7wM9XpAD5K2oGi6N4/BIW7Oc0+mJg WLQ+IWUtpVbZswS1VBrAfsRaPvhUYGVkmodp2E00lAr/MxKWIdKknfI4p+3TLJXu vs9Zb4GMTMAOgpHKpG6CyG69wJgiGMDKGGaXCSrqBktnycbw5uhpzi0hLu7LlI8n u0k0bFvNMK+7eJCUXTbu+6tYC3Zk/4dO1EgZgCR7Z31yRlrVRUadh1fFwnA+E2WE ehjRGw5vPf1IuqquIcpVSdZhMRu7wgk+cBv0Bbx27PODTzzsJs56Hde5UGHRpwTv obbvQ==
X-ME-Sender: <xms:5uABY9yeww6D4dUMP0enh9gqiu3fUzuWrv8FK8qHSg9NN_HEnMbTTQ> <xme:5uABY9RnyozARKEUMp4X64d_zEy_9_Sw71f-wQJk_WwHClG9nAYCrMMkHrGwk0WD2 ODxe4vFzbrK7jSWYQ>
X-ME-Received: <xmr:5uABY3UFR1Kci9FXy5lMkF2uOfnR7p2FKDI52Q-1zZ2ScQ4e613flU7ddo3ttcGWKXgK-UaeaVYBMjJHZjkrIWl2zvw6M03sKn8R-MjNZal3YByV8HgxJA7nb64iyrXaERSf>
X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvfedrvdeigedguddvhecutefuodetggdotefrod ftvfcurfhrohhfihhlvgemucfhrghsthforghilhdpqfgfvfdpuffrtefokffrpgfnqfgh necuuegrihhlohhuthemuceftddtnecupfhoucgurghtvgcufhhivghlugculdegledmne cujfgurheptggghffvufesrgdttdertddtjeenucfhrhhomheptfgvphhoshhithhorhih ucettghtihhvihhthicuufhumhhmrghrhicuuehothcuoeguohgpnhhothgprhgvphhlhi esmhhnohhtrdhnvghtqeenucggtffrrghtthgvrhhnpeekfedvudetjedvfeekheeiveeu gfefhfetteevgeffkefffeetffdvleehudeiteenucffohhmrghinhepghhithhhuhgsrd gtohhmnecuvehluhhsthgvrhfuihiivgeptdenucfrrghrrghmpehmrghilhhfrhhomhep ughopghnohhtpghrvghplhihsehmnhhothdrnhgvth
X-ME-Proxy: <xmx:5uABY_jc45nquljvWXxOTh8hNLzIU4vkvu3qMjx1PKbVs5vudbE_bA> <xmx:5uABY_Cpbz_1PMQTGygVisnpks_DOPrdCvRvJfF064R0e4J104Ubfw> <xmx:5uABY4KXX58qskCC9uqInO3kQq4IHNV8nlrj7HGiJkunNHctwtKZHw> <xmx:5uABYy9B_Pl0gYiKGTX6-q72hvyW34SSR-lMqx-JdvEk836V8W28mA>
Feedback-ID: i1c3946f2:Fastmail
Received: by mail.messagingengine.com (Postfix) with ESMTPA for <ietf-http-wg@w3.org>; Sun, 21 Aug 2022 03:38:13 -0400 (EDT)
Content-Type: multipart/alternative; boundary="===============3260761092345645504=="
MIME-Version: 1.0
From: Repository Activity Summary Bot <do_not_reply@mnot.net>
To: ietf-http-wg@w3.org
Received-SPF: pass client-ip=66.111.4.26; envelope-from=do_not_reply@mnot.net; helo=out2-smtp.messagingengine.com
X-W3C-Hub-DKIM-Status: validation passed: (address=do_not_reply@mnot.net domain=mnot.net), signature is good
X-W3C-Hub-DKIM-Status: validation passed: (address=do_not_reply@mnot.net domain=messagingengine.com), signature is good
Message-ID: <E1oPfXN-000XhE-Sn@mimas.w3.org>
X-W3C-Hub-Spam-Status: No, score=-3.0
X-W3C-Hub-Spam-Report: BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, MISSING_DATE=1.36, MISSING_MID=0.497, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, W3C_AA=-1, W3C_WL=-1
X-W3C-Scan-Sig: mimas.w3.org 1oPfXN-000XhE-Sn e9a8d8ae5f4dc82b9a11a9db01da8b39
Date: Sun, 21 Aug 2022 07:38:27 +0000
X-Original-To: ietf-http-wg@w3.org
Subject: Weekly github digest (HTTP Activity Summary)
Archived-At: <https://www.w3.org/mid/E1oPfXN-000XhE-Sn@mimas.w3.org>
Resent-From: ietf-http-wg@w3.org
X-Mailing-List: <ietf-http-wg@w3.org> archive/latest/40335
X-Loop: ietf-http-wg@w3.org
Resent-Sender: ietf-http-wg-request@w3.org
Precedence: list
List-Id: <ietf-http-wg.w3.org>
List-Help: <https://www.w3.org/Mail/>
List-Post: <mailto:ietf-http-wg@w3.org>
List-Unsubscribe: <mailto:ietf-http-wg-request@w3.org?subject=unsubscribe>



Events without label "editorial"

Issues
------
* httpwg/http-extensions (+0/-2/💬11)
  3 issues received 11 new comments:
  - #2231 Case sensitive matching of the `__Secure-` and `__Host-` cookie prefixes leads to bypasses for insecurely implemented servers (8 by ddworken, dveditz, martinthomson, mikewest, sbingler)
    https://github.com/httpwg/http-extensions/issues/2231 [6265bis] 
  - #2185 cookie-octet reality check (2 by bagder, mnot)
    https://github.com/httpwg/http-extensions/issues/2185 [6265bis] 
  - #1399 RFC 6265bis: Set-Cookie parsing algorithm should enforce more of the syntax requirements (1 by mnot)
    https://github.com/httpwg/http-extensions/issues/1399 [6265bis] 

  2 issues closed:
  - cookie-octet reality check https://github.com/httpwg/http-extensions/issues/2185 [6265bis] 
  - Signature Context https://github.com/httpwg/http-extensions/issues/2133 [signatures] [discuss] 



Pull requests
-------------
* httpwg/http-extensions (+0/-1/💬0)
  1 pull requests merged:
  - Add signature context
    https://github.com/httpwg/http-extensions/pull/2222 [signatures] 


Repositories tracked by this digest:
-----------------------------------
* https://github.com/httpwg/http-core
* https://github.com/httpwg/http-extensions
* https://github.com/httpwg/http2-spec