<feed xmlns='http://www.w3.org/2005/Atom'>
<title>delta/curl.git/tests/data, branch bagder/test493-https</title>
<subtitle>github.com: bagder/curl.git
</subtitle>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/curl.git/'/>
<entry>
<title>test 493: require https in curl to run</title>
<updated>2021-04-20T07:38:31+00:00</updated>
<author>
<name>Daniel Stenberg</name>
<email>daniel@haxx.se</email>
</author>
<published>2021-04-20T07:38:31+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/curl.git/commit/?id=e2f8d4bf69deeac781a737f7ae09d3f23cd8e7f7'/>
<id>e2f8d4bf69deeac781a737f7ae09d3f23cd8e7f7</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>hsts: enable by default</title>
<updated>2021-04-19T06:22:16+00:00</updated>
<author>
<name>Daniel Stenberg</name>
<email>daniel@haxx.se</email>
</author>
<published>2021-03-08T07:30:32+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/curl.git/commit/?id=d71ff2b9db566b3f4b2eb29441c2df86715d4339'/>
<id>d71ff2b9db566b3f4b2eb29441c2df86715d4339</id>
<content type='text'>
No longer considered experimental.

Closes #6700
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
No longer considered experimental.

Closes #6700
</pre>
</div>
</content>
</entry>
<entry>
<title>test972: verify the json output with jsonlint</title>
<updated>2021-04-17T09:03:40+00:00</updated>
<author>
<name>Daniel Stenberg</name>
<email>daniel@haxx.se</email>
</author>
<published>2021-04-16T21:53:22+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/curl.git/commit/?id=6fc805d0c1f82363836f1c6199cebdd3c41cbc5b'/>
<id>6fc805d0c1f82363836f1c6199cebdd3c41cbc5b</id>
<content type='text'>
Make sure one of the azure jobs has jsonlint installed so that the test
runs there.

Ref: #6905
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Make sure one of the azure jobs has jsonlint installed so that the test
runs there.

Ref: #6905
</pre>
</div>
</content>
</entry>
<entry>
<title>tool_writeout: fix the HTTP_CODE json output</title>
<updated>2021-04-17T09:03:30+00:00</updated>
<author>
<name>Jay Satiro</name>
<email>raysatiro@yahoo.com</email>
</author>
<published>2021-04-16T22:34:48+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/curl.git/commit/?id=2f78be51ebe8578bce5469924cedf7ac8bc06a85'/>
<id>2f78be51ebe8578bce5469924cedf7ac8bc06a85</id>
<content type='text'>
Update test 970 accordingly.

Reported-by: Michal Rus
Fixes #6905
Closes #6906
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Update test 970 accordingly.

Reported-by: Michal Rus
Fixes #6905
Closes #6906
</pre>
</div>
</content>
</entry>
<entry>
<title>tool_getparam: replace (in-place) '%20' by '+' according to RFC1866</title>
<updated>2021-04-15T11:45:12+00:00</updated>
<author>
<name>Victor Vieux</name>
<email>victorvieux@gmail.com</email>
</author>
<published>2021-04-15T04:45:21+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/curl.git/commit/?id=0d7c55bd57ffd5fedb5862e123673d35704b58ac'/>
<id>0d7c55bd57ffd5fedb5862e123673d35704b58ac</id>
<content type='text'>
Signed-off-by: Victor Vieux &lt;victorvieux@gmail.com&gt;

Closes #6895
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Signed-off-by: Victor Vieux &lt;victorvieux@gmail.com&gt;

Closes #6895
</pre>
</div>
</content>
</entry>
<entry>
<title>cookie: CURLOPT_COOKIEFILE set to NULL switches off cookies</title>
<updated>2021-04-14T21:09:36+00:00</updated>
<author>
<name>Daniel Stenberg</name>
<email>daniel@haxx.se</email>
</author>
<published>2021-04-14T07:15:19+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/curl.git/commit/?id=520bd5225c70a5c4cceee08f1aa7447eb0ec6653'/>
<id>520bd5225c70a5c4cceee08f1aa7447eb0ec6653</id>
<content type='text'>
Add test 676 to verify that setting CURLOPT_COOKIEFILE to NULL again clears
the cookiejar from memory.

Reported-by: Stefan Karpinski
Fixes #6889
Closes #6891
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Add test 676 to verify that setting CURLOPT_COOKIEFILE to NULL again clears
the cookiejar from memory.

Reported-by: Stefan Karpinski
Fixes #6889
Closes #6891
</pre>
</div>
</content>
</entry>
<entry>
<title>ntlm: fix negotiated flags usage</title>
<updated>2021-04-09T07:40:56+00:00</updated>
<author>
<name>Patrick Monnerat</name>
<email>patrick@monnerat.net</email>
</author>
<published>2021-04-06T17:32:21+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/curl.git/commit/?id=9c1e1a6105f34ffe3b5a16e874a92c9558ddbd96'/>
<id>9c1e1a6105f34ffe3b5a16e874a92c9558ddbd96</id>
<content type='text'>
According to Microsoft document MS-NLMP, current flags usage is not
accurate: flag NTLMFLAG_NEGOTIATE_NTLM2_KEY controls the use of
extended security in an NTLM authentication message and NTLM version 2
cannot be negotiated within the protocol.

The solution implemented here is: if the extended security flag is set,
prefer using NTLM version 2 (as a server featuring extended security
should also support version 2). If version 2 has been disabled at
compile time, use extended security.

Tests involving NTLM are adjusted to this new behavior.

Fixes #6813
Closes #6849
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
According to Microsoft document MS-NLMP, current flags usage is not
accurate: flag NTLMFLAG_NEGOTIATE_NTLM2_KEY controls the use of
extended security in an NTLM authentication message and NTLM version 2
cannot be negotiated within the protocol.

The solution implemented here is: if the extended security flag is set,
prefer using NTLM version 2 (as a server featuring extended security
should also support version 2). If version 2 has been disabled at
compile time, use extended security.

Tests involving NTLM are adjusted to this new behavior.

Fixes #6813
Closes #6849
</pre>
</div>
</content>
</entry>
<entry>
<title>http_proxy: only loop on 407 + close if we have credentials</title>
<updated>2021-04-05T20:49:07+00:00</updated>
<author>
<name>Daniel Stenberg</name>
<email>daniel@haxx.se</email>
</author>
<published>2021-04-05T10:11:30+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/curl.git/commit/?id=605aa03ac198e049e6779df5ccc433b0934e40aa'/>
<id>605aa03ac198e049e6779df5ccc433b0934e40aa</id>
<content type='text'>
... to fix the retry-loop.

Add test 718 to verify.

Reported-by: Daniel Kurečka
Fixes #6828
Closes #6850
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
... to fix the retry-loop.

Add test 718 to verify.

Reported-by: Daniel Kurečka
Fixes #6828
Closes #6850
</pre>
</div>
</content>
</entry>
<entry>
<title>file: support GETing directories again</title>
<updated>2021-04-05T10:22:07+00:00</updated>
<author>
<name>Luke Granger-Brown</name>
<email>git@lukegb.com</email>
</author>
<published>2021-04-03T19:12:48+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/curl.git/commit/?id=6d930d730600771f15ab048a123f253ce4751786'/>
<id>6d930d730600771f15ab048a123f253ce4751786</id>
<content type='text'>
After 957bc1881e686f9714c4e6a01bf33535091f0e21, we no longer compute an
expected_size for directories. This has the upshot that when we compare
even an empty Range with the available size, we fail.

This brings back the previous behaviour, which was to succeed, but with
empty content. This also removes the "Accept-ranges: bytes" header,
which is nonsensical on directories.

Adds test 3016
Fixes #6845
Closes #6846
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
After 957bc1881e686f9714c4e6a01bf33535091f0e21, we no longer compute an
expected_size for directories. This has the upshot that when we compare
even an empty Range with the available size, we fail.

This brings back the previous behaviour, which was to succeed, but with
empty content. This also removes the "Accept-ranges: bytes" header,
which is nonsensical on directories.

Adds test 3016
Fixes #6845
Closes #6846
</pre>
</div>
</content>
</entry>
<entry>
<title>transfer: strip credentials from the auto-referer header field</title>
<updated>2021-03-28T21:19:55+00:00</updated>
<author>
<name>Viktor Szakats</name>
<email>commit@vsz.me</email>
</author>
<published>2021-02-23T13:54:46+00:00</published>
<link rel='alternate' type='text/html' href='http://git.baserock.org/cgit/delta/curl.git/commit/?id=7214288898f5625a6cc196e22a74232eada7861c'/>
<id>7214288898f5625a6cc196e22a74232eada7861c</id>
<content type='text'>
Added test 2081 to verify.

CVE-2021-22876

Bug: https://curl.se/docs/CVE-2021-22876.html
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Added test 2081 to verify.

CVE-2021-22876

Bug: https://curl.se/docs/CVE-2021-22876.html
</pre>
</div>
</content>
</entry>
</feed>
