Weekly github digest (HTTP Activity Summary)

Repository Activity Summary Bot <do_not_reply@mnot.net> Sun, 06 June 2021 08:25 UTC

Return-Path: <ietf-http-wg-request+bounce-httpbisa-archive-bis2juki=lists.ie@listhub.w3.org>
X-Original-To: ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com
Delivered-To: ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0D57A3A1037 for <ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com>; Sun, 6 Jun 2021 01:25:01 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.748
X-Spam-Level:
X-Spam-Status: No, score=-2.748 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HEADER_FROM_DIFFERENT_DOMAINS=0.249, HTML_MESSAGE=0.001, MAILING_LIST_MULTI=-1, RCVD_IN_MSPIKE_H4=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=mnot.net header.b=MLPQw6Gr; dkim=pass (2048-bit key) header.d=messagingengine.com header.b=n3QEQvC2
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id IQcevrrinco1 for <ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com>; Sun, 6 Jun 2021 01:24:55 -0700 (PDT)
Received: from lyra.w3.org (lyra.w3.org [128.30.52.18]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id DFA533A1031 for <httpbisa-archive-bis2Juki@lists.ietf.org>; Sun, 6 Jun 2021 01:24:54 -0700 (PDT)
Received: from lists by lyra.w3.org with local (Exim 4.92) (envelope-from <ietf-http-wg-request@listhub.w3.org>) id 1lpo1s-0005oL-7O for ietf-http-wg-dist@listhub.w3.org; Sun, 06 Jun 2021 08:21:16 +0000
Resent-Date: Sun, 06 Jun 2021 08:21:08 +0000
Resent-Message-Id: <E1lpo1s-0005oL-7O@lyra.w3.org>
Received: from titan.w3.org ([128.30.52.76]) by lyra.w3.org with esmtps (TLS1.3:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.92) (envelope-from <do_not_reply@mnot.net>) id 1lpo0f-0005aU-LK for ietf-http-wg@listhub.w3.org; Sun, 06 Jun 2021 08:19:56 +0000
Received: from wout3-smtp.messagingengine.com ([64.147.123.19]) by titan.w3.org with esmtps (TLS1.3:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.92) (envelope-from <do_not_reply@mnot.net>) id 1lpo0W-0001cv-A7 for ietf-http-wg@w3.org; Sun, 06 Jun 2021 08:19:49 +0000
Received: from compute3.internal (compute3.nyi.internal [10.202.2.43]) by mailout.west.internal (Postfix) with ESMTP id 1DFE417D2 for <ietf-http-wg@w3.org>; Sun, 6 Jun 2021 04:19:29 -0400 (EDT)
Received: from mailfrontend2 ([10.202.2.163]) by compute3.internal (MEProxy); Sun, 06 Jun 2021 04:19:29 -0400
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=mnot.net; h= content-type:mime-version:from:to:subject; s=fm2; bh=jrxhI/KDjrQ b4XaVl7mS71PsJwVGcmRbRmgOqSXhndA=; b=MLPQw6GrC9z9+bPKCNhZTcDD7G+ 9tU7ofdaRUdwHG3gJLI3HCjrMvQE5H/mzn3jYSbIY4GGR5mHQxOPKH4JzRePjaF8 2sJA/k6BxYtNEedbaiS/NqBCccWmeVngXlZ24w5xKncAfuAVd477wMcBXAHwpev7 fK51H/qpZgsf5yh4EfNtPP9E6anXAhCj4z08pMyrfjotr8du6Tqr5c4FiY27Jm8T wB/QSclzH8QvphpgRHb4C/ZDVR/05covnXxPA9jOgIWHANKUWA44eNdPp8LwVZV5 bXfF7HcW7dzeqddfHTuK7QiAbcTsxNdPEfFAmARX0DS6p7h7tPFtBPjdhlA==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=content-type:from:mime-version:subject:to :x-me-proxy:x-me-proxy:x-me-sender:x-me-sender:x-sasl-enc; s= fm3; bh=jrxhI/KDjrQb4XaVl7mS71PsJwVGcmRbRmgOqSXhndA=; b=n3QEQvC2 rmRVKPJFnpd9iwDPyhUXWVyIGDGh/tmJi9h5eA43dffzRvLrYNGhSM9fLJAgpaiF bmg3elu9keRcXEZ4QJWgURwGnvKHZSX9jjzSrhQJBJ8SJGxGNGLJ+phaBQyTtpIK mWfr8tpdn6TqGlNEESsGpCBRm09s3YBxK5XoiK34CO070bV+LdkcynckNMj4Ni8j qoLSzRQSh0mBZiF2vVXhny58MuJ3OD0LqTTBwixCPBc7dlygnqZNES9efvk0ox1f /VP3Kd5dA8gIIDttFxrG5qCH+UwEEqQg/tuoyImhFOwkK/wEU+7QnJNu0hqZwpG4 5fuu2PP+vGZ1kw==
X-ME-Sender: <xms:D4W8YE9KyRQoW8UwsAZk4Pz6tcebBr7zcSV4lBthqwGPQLLyj5J8MA> <xme:D4W8YMu5Qf2SWBC0tmnhmzXc6QJ3ajpTo7xvA_bwmKAiH8oPdjhaw2xVFvAC9I8rs 8q2mugChUd7Lyb7Eg>
X-ME-Received: <xmr:D4W8YKDVbCoEFasR-H5LDu6C3LMchbdsMd9BymBDNSEUaqShm_YZKtszDZhQ_klLx2x0pFMHxyTMIH6WsYo4kWneCrcyT3JZdHy1Y5NILIV6A6KhSF0V2lYYaILkYGChM6guUQ>
X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgeduledrfedthedgtdefucetufdoteggodetrfdotf fvucfrrhhofhhilhgvmecuhfgrshhtofgrihhlpdfqfgfvpdfurfetoffkrfgpnffqhgen uceurghilhhouhhtmecufedttdenucfpohcuuggrthgvuchfihgvlhguucdlgeelmdenuc fjughrpegtggfhvffusegrtddtredttdejnecuhfhrohhmpeftvghpohhsihhtohhrhicu tegtthhivhhithihucfuuhhmmhgrrhihuceuohhtuceoughopghnohhtpghrvghplhihse hmnhhothdrnhgvtheqnecuggftrfgrthhtvghrnhepkeefvdduteejvdefkeehieevuefg fefhteetveegffekffefteffvdelheduieetnecuffhomhgrihhnpehgihhthhhusgdrtg homhenucevlhhushhtvghrufhiiigvpedtnecurfgrrhgrmhepmhgrihhlfhhrohhmpegu ohgpnhhothgprhgvphhlhiesmhhnohhtrdhnvght
X-ME-Proxy: <xmx:D4W8YEchqMxM24pr4EVRDdnNA4Tk5aA1PvmJ-kGsvd9WZrMf2Vl0rQ> <xmx:D4W8YJO5M60C50eT3RMrBb3RaapP6_1jKPc4bSX6AJ2r66o88ZqO9g> <xmx:D4W8YOmxKkbS709l-56vA63GJ7MMelEioJbeKgycCFFL3DkP-EUcBQ> <xmx:EIW8YCZG909XEIgxhRiOQDBs1shUxSIBXELpyjZe9EvkOi0aeNf3PQ>
Received: by mail.messagingengine.com (Postfix) with ESMTPA for <ietf-http-wg@w3.org>; Sun, 6 Jun 2021 04:19:27 -0400 (EDT)
Content-Type: multipart/alternative; boundary="===============1974624705618882172=="
MIME-Version: 1.0
From: Repository Activity Summary Bot <do_not_reply@mnot.net>
To: ietf-http-wg@w3.org
Received-SPF: pass client-ip=64.147.123.19; envelope-from=do_not_reply@mnot.net; helo=wout3-smtp.messagingengine.com
X-W3C-Hub-DKIM-Status: validation passed: (address=do_not_reply@mnot.net domain=mnot.net), signature is good
X-W3C-Hub-DKIM-Status: validation passed: (address=do_not_reply@mnot.net domain=messagingengine.com), signature is good
Message-ID: <E1lpo0W-0001cv-A7@titan.w3.org>
X-W3C-Hub-Spam-Status: No, score=-3.0
X-W3C-Hub-Spam-Report: BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, MISSING_DATE=1.36, MISSING_MID=0.497, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_MSPIKE_H4=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001, W3C_AA=-1, W3C_WL=-1
X-W3C-Scan-Sig: titan.w3.org 1lpo0W-0001cv-A7 d0860705dc5ff27c3995b0f92eb31115
Date: Sun, 06 Jun 2021 08:19:53 +0000
X-Original-To: ietf-http-wg@w3.org
Subject: Weekly github digest (HTTP Activity Summary)
Archived-At: <https://www.w3.org/mid/E1lpo0W-0001cv-A7@titan.w3.org>
Resent-From: ietf-http-wg@w3.org
X-Mailing-List: <ietf-http-wg@w3.org> archive/latest/38855
X-Loop: ietf-http-wg@w3.org
Resent-Sender: ietf-http-wg-request@w3.org
Precedence: list
List-Id: <ietf-http-wg.w3.org>
List-Help: <https://www.w3.org/Mail/>
List-Post: <mailto:ietf-http-wg@w3.org>
List-Unsubscribe: <mailto:ietf-http-wg-request@w3.org?subject=unsubscribe>



Events without label "editorial"

Issues
------
* httpwg/http-core (+0/-1/๐Ÿ’ฌ1)
  1 issues received 1 new comments:
  - #845 What is the correct behavior if HTTP/2.0 is mentioned over HTTP/1.1 syntax? (1 by reschke)
    https://github.com/httpwg/http-core/issues/845 [h1-messaging] [semantics] 

  1 issues closed:
  - What is the correct behavior if HTTP/2.0 is mentioned over HTTP/1.1 syntax? https://github.com/httpwg/http-core/issues/845 [h1-messaging] [semantics] 

* httpwg/http-extensions (+3/-3/๐Ÿ’ฌ11)
  3 issues created:
  - RFC 6265bis: Truncating cookie values may enable attack (by chlily1)
    https://github.com/httpwg/http-extensions/issues/1531 [6265bis] 
  - Fix or replace table for request-target (by jricher)
    https://github.com/httpwg/http-extensions/issues/1530 [signatures] 
  - RFC 6265bis: possibility of taking the port into account for "schemeful-cookies" (aka same-origin cookies) (by randomstuff)
    https://github.com/httpwg/http-extensions/issues/1526 

  10 issues received 11 new comments:
  - #1526 RFC 6265bis: possibility of taking the port into account for "schemeful-cookies" (aka same-origin cookies) (2 by chlily1)
    https://github.com/httpwg/http-extensions/issues/1526 [6265bis] 
  - #1509 Modernize test vectors from RSA -> Ed25519 (1 by jricher)
    https://github.com/httpwg/http-extensions/issues/1509 [signatures] 
  - #1503 Add examples and discussion of signed responses (1 by jricher)
    https://github.com/httpwg/http-extensions/issues/1503 [signatures] 
  - #1493 Signatures 04: Typo in multiple Signatures signature string? (1 by jricher)
    https://github.com/httpwg/http-extensions/issues/1493 [signatures] 
  - #1492 Signatures 04: Use lists instead of Inner lists for ยง2.3 Prefixes (1 by jricher)
    https://github.com/httpwg/http-extensions/issues/1492 [signatures] 
  - #1475 Signatures: Difficulty verifying B.2 examples (1 by jricher)
    https://github.com/httpwg/http-extensions/issues/1475 [signatures] 
  - #1340 [6265bis] Clarification on cookie size limits (1 by miketaylr)
    https://github.com/httpwg/http-extensions/issues/1340 [6265bis] 
  - #1233 Specify how non-HTTP cookies should be exposed to sites (1 by chlily1)
    https://github.com/httpwg/http-extensions/issues/1233 [6265bis] 
  - #1163 document.cookie should not be able to access SameSite cookies in cross-site iframes (1 by chlily1)
    https://github.com/httpwg/http-extensions/issues/1163 [6265bis] [samesite] 
  - #769 Clarify SameSite behavior for non-HTTP API (1 by chlily1)
    https://github.com/httpwg/http-extensions/issues/769 [6265bis] [samesite] 

  3 issues closed:
  - document.cookie should not be able to access SameSite cookies in cross-site iframes https://github.com/httpwg/http-extensions/issues/1163 [6265bis] [samesite] 
  - Clarify SameSite behavior for non-HTTP API https://github.com/httpwg/http-extensions/issues/769 [6265bis] [samesite] 
  - Specify how non-HTTP cookies should be exposed to sites https://github.com/httpwg/http-extensions/issues/1233 [6265bis] 

* httpwg/http2-spec (+1/-1/๐Ÿ’ฌ3)
  1 issues created:
  - Minimum value setting mechanism of HTTP2.0 Window and Window_update (by Maisy-ML)
    https://github.com/httpwg/http2-spec/issues/863 

  1 issues received 3 new comments:
  - #863 Minimum value setting mechanism of HTTP2.0 Window and Window_update (3 by Maisy-ML, martinthomson)
    https://github.com/httpwg/http2-spec/issues/863 

  1 issues closed:
  - characters allowed in field values https://github.com/httpwg/http2-spec/issues/815 



Pull requests
-------------
* httpwg/http-extensions (+3/-2/๐Ÿ’ฌ3)
  3 pull requests submitted:
  - Remove List Prefixes (by jricher)
    https://github.com/httpwg/http-extensions/pull/1529 
  - Update signature algorithm definitions (by jricher)
    https://github.com/httpwg/http-extensions/pull/1528 
  - Fixes #1301 - Consistently use "header field" (by miketaylr)
    https://github.com/httpwg/http-extensions/pull/1527 

  3 pull requests received 3 new comments:
  - #1527 Fixes #1301 - Consistently use "header field" (1 by chlily1)
    https://github.com/httpwg/http-extensions/pull/1527 
  - #1512 Fix layout of table 4 (1 by jricher)
    https://github.com/httpwg/http-extensions/pull/1512 [signatures] 
  - #1317 Fix: #1315. Remove subheader covered content. (1 by jricher)
    https://github.com/httpwg/http-extensions/pull/1317 [signatures] 

  2 pull requests merged:
  - Fix small typo
    https://github.com/httpwg/http-extensions/pull/1513 [signatures] 
  - Fixes #1301 - Consistently use "header field"
    https://github.com/httpwg/http-extensions/pull/1527 

* httpwg/http2-spec (+1/-4/๐Ÿ’ฌ5)
  1 pull requests submitted:
  - Improve on fix for #815 (by gregw)
    https://github.com/httpwg/http2-spec/pull/861 

  4 pull requests received 5 new comments:
  - #861 Improve on fix for #815 (1 by gregw)
    https://github.com/httpwg/http2-spec/pull/861 
  - #859 Discuss flow control performance (1 by martinthomson)
    https://github.com/httpwg/http2-spec/pull/859 
  - #850 Clean closed state (1 by martinthomson)
    https://github.com/httpwg/http2-spec/pull/850 
  - #846 What characters are permitted (2 by gregw, martinthomson)
    https://github.com/httpwg/http2-spec/pull/846 

  4 pull requests merged:
  - What characters are permitted
    https://github.com/httpwg/http2-spec/pull/846 
  - Clean closed state
    https://github.com/httpwg/http2-spec/pull/850 
  - Experimental begone
    https://github.com/httpwg/http2-spec/pull/853 
  - Discuss flow control performance
    https://github.com/httpwg/http2-spec/pull/859 


Repositories tracked by this digest:
-----------------------------------
* https://github.com/httpwg/http-core
* https://github.com/httpwg/http-extensions
* https://github.com/httpwg/http2-spec