[Bug 67926] PEMFile prints unidentifiable string representation of ASN.1 OIDs

2023-10-27 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=67926 --- Comment #5 from Michael Osipov --- (In reply to Mark Thomas from comment #4) > +1 - we are already using that class in the SPNEGO authenticator I'll try prepare a PR for this. -- You are receiving this mail because: You are the assignee

[Bug 67927] TLSCertificateReloadListener triggers race condition (?) in OpenSSL code which causes the JVM to die

2023-10-27 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=67927 --- Comment #11 from Michael Osipov --- (In reply to Mark Thomas from comment #10) > We need to allow in-progress usage of the old SSLContext to continue while > new requests get the new SSLContext. We don't want new requests to have to > wait

[Bug 67628] OpenSSLCipherConfigurationParser#parse() produces misleading false positive cipher warnings

2023-10-27 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=67628 --- Comment #4 from Michael Osipov --- (In reply to Mark Thomas from comment #3) > I think this is a documentation issue. > > The intention was to: > - allow OpenSSL notation to be used with JSSE > - track ciphers and behaviour of latest OpenS

[Bug 67793] FORM authenticator does not remember original max inactive interval in all use-cases

2023-10-27 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=67793 --- Comment #1 from Channa --- Hi All, We are also facing same issue, it is same as mail sent to mailing list "us...@tomcat.apache.org" with subject "Tomcat 9.0.75 ignoring session timeout configured in tomcat conf web.xml" Details Below ===

[Bug 67793] FORM authenticator does not remember original max inactive interval in all use-cases

2023-10-27 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=67793 --- Comment #2 from Mircea Butmalai --- Hi Channa, Yes it is the same issue and the proposed code correction (or any equivalent form) actually solves your problem too. The proposed code correction actually preserves the added functionality do

[Bug 67934] APR connectors will fail to load when tcnative-1 and tcnative-2 are installed in parallel

2023-10-27 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=67934 Michael Osipov changed: What|Removed |Added CC||micha...@apache.org -- You are recei

[Bug 67934] New: APR connectors will fail to load when tcnative-1 and tcnative-2 are installed in parallel

2023-10-27 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=67934 Bug ID: 67934 Summary: APR connectors will fail to load when tcnative-1 and tcnative-2 are installed in parallel Product: Tomcat 9 Version: 9.0.x Hardware: All

(tomcat) branch main updated: Fix resolver count

2023-10-27 Thread remm
This is an automated email from the ASF dual-hosted git repository. remm pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/main by this push: new becb942dec Fix resolver count becb942dec is described

(tomcat) branch main updated: Using cleanups here to improve safety

2023-10-27 Thread remm
This is an automated email from the ASF dual-hosted git repository. remm pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/main by this push: new fd0d1d0273 Using cleanups here to improve safety fd0d1

(tomcat) branch 10.1.x updated: Using cleanups here to improve safety

2023-10-27 Thread remm
This is an automated email from the ASF dual-hosted git repository. remm pushed a commit to branch 10.1.x in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/10.1.x by this push: new 7ed0893eb5 Using cleanups here to improve safety 7

(tomcat) branch 9.0.x updated: Using cleanups here to improve safety

2023-10-27 Thread remm
This is an automated email from the ASF dual-hosted git repository. remm pushed a commit to branch 9.0.x in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/9.0.x by this push: new ed195d2ff8 Using cleanups here to improve safety ed1

Re: [tomcat] branch main updated: Add support to EL for Records

2023-10-27 Thread Rémy Maucherat
On Wed, Oct 25, 2023 at 4:25 PM wrote: > > This is an automated email from the ASF dual-hosted git repository. > > markt pushed a commit to branch main > in repository https://gitbox.apache.org/repos/asf/tomcat.git > > > The following commit(s) were added to refs/heads/main by this push: > ne

Re: [tomcat] branch main updated: Add support to EL for Records

2023-10-27 Thread Mark Thomas
27 Oct 2023 14:30:25 Rémy Maucherat : On Wed, Oct 25, 2023 at 4:25 PM wrote: This is an automated email from the ASF dual-hosted git repository. markt pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/head

Re: (tomcat) branch main updated: Fix resolver count

2023-10-27 Thread Mark Thomas
27 Oct 2023 12:37:00 r...@apache.org: This is an automated email from the ASF dual-hosted git repository. remm pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/main by this push: new becb942dec Fi

(tomcat-native) branch main updated: Remove an unreachable if condition around CRLs in sslcontext.c

2023-10-27 Thread michaelo
This is an automated email from the ASF dual-hosted git repository. michaelo pushed a commit to branch main in repository https://gitbox.apache.org/repos/asf/tomcat-native.git The following commit(s) were added to refs/heads/main by this push: new ac6f59b81 Remove an unreachable if conditio

(tomcat-native) branch 1.2.x updated: Remove an unreachable if condition around CRLs in sslcontext.c

2023-10-27 Thread michaelo
This is an automated email from the ASF dual-hosted git repository. michaelo pushed a commit to branch 1.2.x in repository https://gitbox.apache.org/repos/asf/tomcat-native.git The following commit(s) were added to refs/heads/1.2.x by this push: new de660b456 Remove an unreachable if condit

[Bug 67793] FORM authenticator does not remember original max inactive interval in all use-cases

2023-10-27 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=67793 Mircea Butmalai changed: What|Removed |Added CC|mircea.butma...@radcom.ro | -- You are receiving this mail bec

[Bug 67938] New: Tomcat mishandles large client hello messages

2023-10-27 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=67938 Bug ID: 67938 Summary: Tomcat mishandles large client hello messages Product: Tomcat 10 Version: 10.1.15 Hardware: PC OS: Linux Status: NEW Severity: no

[Bug 67938] Tomcat mishandles large client hello messages

2023-10-27 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=67938 --- Comment #1 from Aaron Ogburn --- A backport (https://bugs.openjdk.org/browse/JDK-8318950) is being pursued to reduce the message size from a client in such a case on OpenJDK 17. But a Tomcat level fix may still be required in the end for a

[Bug 67938] Tomcat mishandles large client hello messages

2023-10-27 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=67938 --- Comment #2 from Aaron Ogburn --- Source code references pertaining to the above: [1] - https://github.com/apache/tomcat/blob/10.1.9/java/org/apache/tomcat/util/net/SecureNioChannel.java#L147 [2] - https://github.com/apache/tomcat/blob/10.1

[Bug 67938] Tomcat mishandles large client hello messages

2023-10-27 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=67938 --- Comment #3 from Aaron Ogburn --- Credit and thanks to Francisco Ferrari and Martin Balao from the OpenJDK engineering team for their analysis leading to this report. -- You are receiving this mail because: You are the assignee for the bug