On 30/01/18 19:24, Mark Thomas wrote:
> On 30/01/18 15:25, Mark Thomas wrote:
>> On 30/01/18 15:15, Konstantin Kolinko wrote:
>>> -1.
>>>
>>> Reading the algorithm in Host.parse(Reader), I think that http://610.ru/en/
>>> and a number of popular Chinese web sites won't pass this validation.
>>> https://www.chinacheckup.com/blogs/articles/chinese-website-names-numbers
>>>
>>> https://domains-index.com/nine-millions-domain-names-just-numbers/
>>
>> ACK.
>>
>> The host header validation was written from the RFCs. Given that those
>> sites all work, I'm assuming I missed something. Let me go back to the
>> RFCs and figure out what. Once I have done that, I'll update the parser
>> and/or this thread as appropriate.
> 
> I was working from RFC 952. I missed RFC 1123. Updating the host name
> parser has just moved to the top of my TODO list.

This should be fixed in trunk now. I need to back-port it and I have
some ideas about making a little more efficient I want to test.

Mark

---------------------------------------------------------------------
To unsubscribe, e-mail: dev-unsubscr...@tomcat.apache.org
For additional commands, e-mail: dev-h...@tomcat.apache.org

Reply via email to