From nobody Thu May 16 12:24:14 2024 Delivered-To: importer@patchew.org Received-SPF: pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) client-ip=192.237.175.120; envelope-from=xen-devel-bounces@lists.xenproject.org; helo=lists.xenproject.org; Authentication-Results: mx.zohomail.com; spf=pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) smtp.mailfrom=xen-devel-bounces@lists.xenproject.org Return-Path: Received: from lists.xenproject.org (lists.xenproject.org [192.237.175.120]) by mx.zohomail.com with SMTPS id 1677357491251696.5585426489191; Sat, 25 Feb 2023 12:38:11 -0800 (PST) Received: from list by lists.xenproject.org with outflank-mailman.501868.773677 (Exim 4.92) (envelope-from ) id 1pW1Ic-0007gT-Dw; Sat, 25 Feb 2023 20:37:42 +0000 Received: by outflank-mailman (output) from mailman id 501868.773677; Sat, 25 Feb 2023 20:37:42 +0000 Received: from localhost ([127.0.0.1] helo=lists.xenproject.org) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1pW1Ic-0007gH-A2; Sat, 25 Feb 2023 20:37:42 +0000 Received: by outflank-mailman (input) for mailman id 501868; Sat, 25 Feb 2023 20:37:41 +0000 Received: from se1-gles-sth1-in.inumbo.com ([159.253.27.254] helo=se1-gles-sth1.inumbo.com) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1pW1Ib-0007PG-34 for xen-devel@lists.xenproject.org; Sat, 25 Feb 2023 20:37:41 +0000 Received: from wout1-smtp.messagingengine.com (wout1-smtp.messagingengine.com [64.147.123.24]) by se1-gles-sth1.inumbo.com (Halon) with ESMTPS id 3eb0e9ef-b54c-11ed-88bb-e56d68cac8db; Sat, 25 Feb 2023 21:37:40 +0100 (CET) Received: from compute2.internal (compute2.nyi.internal [10.202.2.46]) by mailout.west.internal (Postfix) with ESMTP id 0E00932007E8; Sat, 25 Feb 2023 15:37:37 -0500 (EST) Received: from mailfrontend1 ([10.202.2.162]) by compute2.internal (MEProxy); Sat, 25 Feb 2023 15:37:38 -0500 Received: by mail.messagingengine.com (Postfix) with ESMTPA; Sat, 25 Feb 2023 15:37:36 -0500 (EST) X-Outflank-Mailman: Message body and most headers restored to incoming version X-BeenThere: xen-devel@lists.xenproject.org List-Id: Xen developer discussion List-Unsubscribe: , List-Post: List-Help: List-Subscribe: , Errors-To: xen-devel-bounces@lists.xenproject.org Precedence: list Sender: "Xen-devel" X-Inumbo-ID: 3eb0e9ef-b54c-11ed-88bb-e56d68cac8db DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= invisiblethingslab.com; h=cc:cc:content-transfer-encoding:date :date:from:from:in-reply-to:in-reply-to:message-id:mime-version :references:reply-to:sender:subject:subject:to:to; s=fm1; t= 1677357457; x=1677443857; bh=+fUifg3+9Sx5Ngno/T4jBLJLFOiv4d2p9UY Hj/k/F/0=; b=GjRCenfuZRaTxh3/zFIbA1iNlWi0h98bXO8KvuU3ykmRm5LDtpX CyDxnMRpJwkmdZ9R7xRbanMxhMet/qiCsM8W77O869bbnd0U14AvT6JHqgsbIa1A Q16ikHtslrSEHkxnWwWaUV8BPAdkk4MpULCvfrkkukQ8i+DQ4syERJvqechE/UzG RcBfm370/G1d1wwc+pSeW8LWaR7ex+XV01aTjCSYZKpvHdIgrdzACm2y5Ws4rSxS 5/Xjhx/dqI5l9+mghmaXjH58opK87fp37G+IU4bD4thckxXFDvzCCNYnPN50+ZcQ Fw0UoB6Vg3lZfQ1h4Zvne+J6yPB+aq1Nfqg== DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:cc:content-transfer-encoding:date:date :feedback-id:feedback-id:from:from:in-reply-to:in-reply-to :message-id:mime-version:references:reply-to:sender:subject :subject:to:to:x-me-proxy:x-me-proxy:x-me-sender:x-me-sender :x-sasl-enc; s=fm1; t=1677357457; x=1677443857; bh=+fUifg3+9Sx5N gno/T4jBLJLFOiv4d2p9UYHj/k/F/0=; b=jd7yvf37WWvrzLms1i7Wte/TCopwN k6FBV7CB2uMy6ZXqdilcLHpI3JiixfCxaHwdVFwaPi6Hq3pIlZpGlXzG1QA+14lb ZJ61P/HsTmItCSjGhWDlCcSPhTxNAh6lEAMenFnW0VEM0ABfd4qLRwFUiYV6XQe/ WVlB3ULfpvDayE3WI8Fl2lmf04VfY046epmo5MBTlu3SwVOTxqh4fPswBenwA6/o tKOKl8qVsuUKBsjZEizV8BJ0vg15dtSpBW+NjE5uuu2Yy6zgFHLOV+EpNUeMN5Em Dx0XZYx5eYz6KhgjsYAGlfvbJv5OnjOwOL7thrcUr0ZxepUZb3luA41tg== X-ME-Sender: X-ME-Received: X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvhedrudekiedgjeeiucetufdoteggodetrfdotf fvucfrrhhofhhilhgvmecuhfgrshhtofgrihhlpdfqfgfvpdfurfetoffkrfgpnffqhgen uceurghilhhouhhtmecufedttdenucesvcftvggtihhpihgvnhhtshculddquddttddmne cujfgurhephffvvefufffkofgjfhgggfestdekredtredttdenucfhrhhomhepffgvmhhi ucforghrihgvucfqsggvnhhouhhruceouggvmhhisehinhhvihhsihgslhgvthhhihhngh hslhgrsgdrtghomheqnecuggftrfgrthhtvghrnhepuefgffeihefhffelkeehffeljeeu teeihfeiudejgeeufffhheeugfekhfeiffeinecuffhomhgrihhnpeigvghnrdhorhhgpd igvghnphhrohhjvggtthdrohhrghenucevlhhushhtvghrufhiiigvpedtnecurfgrrhgr mhepmhgrihhlfhhrohhmpeguvghmihesihhnvhhishhisghlvghthhhinhhgshhlrggsrd gtohhm X-ME-Proxy: Feedback-ID: iac594737:Fastmail From: Demi Marie Obenour To: xen-devel@lists.xenproject.org Cc: Demi Marie Obenour , =?UTF-8?q?Marek=20Marczykowski-G=C3=B3recki?= , Andrew Cooper , George Dunlap , Jan Beulich , Julien Grall , Stefano Stabellini , Wei Liu , Konrad Rzeszutek Wilk , Ross Lagerwall Subject: [PATCH v5 1/5] Use HTTPS for all xenbits.xen.org Git repos Date: Sat, 25 Feb 2023 15:37:11 -0500 Message-Id: <9cb98cb9aaca22bbc88de9fd8cbd7f9463b4d425.1677356813.git.demi@invisiblethingslab.com> X-Mailer: git-send-email 2.39.2 In-Reply-To: References: MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable X-ZM-MESSAGEID: 1677357492454100001 Content-Type: text/plain; charset="utf-8" Obtaining code over an insecure transport is a terrible idea for blatently obvious reasons. Even for non-executable data, insecure transports are considered deprecated. This patch enforces the use of secure transports for all xenbits.xen.org Git repositories. It was generated with the following shell script: git ls-files -z | xargs -0 -- sed -Ei -- 's@(git://xenbits\.xen\.org|http://xenbits\.xen\= .org/git-http)/@https://xenbits.xen.org/git-http/@g' All altered links have been tested and are known to work. Signed-off-by: Demi Marie Obenour --- Config.mk | 18 +++++------------- docs/misc/livepatch.pandoc | 2 +- docs/process/xen-release-management.pandoc | 2 +- scripts/get_maintainer.pl | 2 +- 4 files changed, 8 insertions(+), 16 deletions(-) diff --git a/Config.mk b/Config.mk index 10eb443b17d85381b2d1e2282f8965c3e99767e0..75f1975e5e78af44d36c2372cba= 6e89b425267a5 100644 --- a/Config.mk +++ b/Config.mk @@ -215,19 +215,11 @@ ifneq (,$(QEMU_TAG)) QEMU_TRADITIONAL_REVISION ?=3D $(QEMU_TAG) endif =20 -ifeq ($(GIT_HTTP),y) -OVMF_UPSTREAM_URL ?=3D http://xenbits.xen.org/git-http/ovmf.git -QEMU_UPSTREAM_URL ?=3D http://xenbits.xen.org/git-http/qemu-xen.git -QEMU_TRADITIONAL_URL ?=3D http://xenbits.xen.org/git-http/qemu-xen-traditi= onal.git -SEABIOS_UPSTREAM_URL ?=3D http://xenbits.xen.org/git-http/seabios.git -MINIOS_UPSTREAM_URL ?=3D http://xenbits.xen.org/git-http/mini-os.git -else -OVMF_UPSTREAM_URL ?=3D git://xenbits.xen.org/ovmf.git -QEMU_UPSTREAM_URL ?=3D git://xenbits.xen.org/qemu-xen.git -QEMU_TRADITIONAL_URL ?=3D git://xenbits.xen.org/qemu-xen-traditional.git -SEABIOS_UPSTREAM_URL ?=3D git://xenbits.xen.org/seabios.git -MINIOS_UPSTREAM_URL ?=3D git://xenbits.xen.org/mini-os.git -endif +OVMF_UPSTREAM_URL ?=3D https://xenbits.xen.org/git-http/ovmf.git +QEMU_UPSTREAM_URL ?=3D https://xenbits.xen.org/git-http/qemu-xen.git +QEMU_TRADITIONAL_URL ?=3D https://xenbits.xen.org/git-http/qemu-xen-tradit= ional.git +SEABIOS_UPSTREAM_URL ?=3D https://xenbits.xen.org/git-http/seabios.git +MINIOS_UPSTREAM_URL ?=3D https://xenbits.xen.org/git-http/mini-os.git OVMF_UPSTREAM_REVISION ?=3D 7b4a99be8a39c12d3a7fc4b8db9f0eab4ac688d5 QEMU_UPSTREAM_REVISION ?=3D master MINIOS_UPSTREAM_REVISION ?=3D 5bcb28aaeba1c2506a82fab0cdad0201cd9b54b3 diff --git a/docs/misc/livepatch.pandoc b/docs/misc/livepatch.pandoc index d38e4ce074b399946aecdaedb4cb6fe5b8043b66..a94fb57eb568e85a25c93bf6a98= 8f123d4e48443 100644 --- a/docs/misc/livepatch.pandoc +++ b/docs/misc/livepatch.pandoc @@ -993,7 +993,7 @@ The design of that is not discussed in this design. This is implemented in a seperate tool which lives in a seperate GIT repo. =20 -Currently it resides at git://xenbits.xen.org/livepatch-build-tools.git +Currently it resides at https://xenbits.xen.org/git-http/livepatch-build-t= ools.git =20 ### Exception tables and symbol tables growth =20 diff --git a/docs/process/xen-release-management.pandoc b/docs/process/xen-= release-management.pandoc index 8f80d61d2f1aa9e63da9b1e61b77a67c826efe6f..7826419dad563a3b70c3c97fc4c= 0fb5339bd58e9 100644 --- a/docs/process/xen-release-management.pandoc +++ b/docs/process/xen-release-management.pandoc @@ -271,7 +271,7 @@ Hi all, =20 Xen X.Y rcZ is tagged. You can check that out from xen.git: =20 -git://xenbits.xen.org/xen.git X.Y.0-rcZ +https://xenbits.xen.org/git-http/xen.git X.Y.0-rcZ =20 For your convenience there is also a tarball at: https://downloads.xenproject.org/release/xen/X.Y.0-rcZ/xen-X.Y.0-rcZ.tar.gz diff --git a/scripts/get_maintainer.pl b/scripts/get_maintainer.pl index 48e07370e8d462ced70a1de13ec8134b4eed65ba..cf629cdf3c44e4abe67214378c4= 9a3a9d858d9b5 100755 --- a/scripts/get_maintainer.pl +++ b/scripts/get_maintainer.pl @@ -1457,7 +1457,7 @@ sub vcs_exists { warn("$P: No supported VCS found. Add --nogit to options?\n"); warn("Using a git repository produces better results.\n"); warn("Try latest git repository using:\n"); - warn("git clone git://xenbits.xen.org/xen.git\n"); + warn("git clone https://xenbits.xen.org/git-http/xen.git\n"); $printed_novcs =3D 1; } return 0; --=20 Sincerely, Demi Marie Obenour (she/her/hers) Invisible Things Lab From nobody Thu May 16 12:24:14 2024 Delivered-To: importer@patchew.org Received-SPF: pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) client-ip=192.237.175.120; envelope-from=xen-devel-bounces@lists.xenproject.org; helo=lists.xenproject.org; Authentication-Results: mx.zohomail.com; spf=pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) smtp.mailfrom=xen-devel-bounces@lists.xenproject.org Return-Path: Received: from lists.xenproject.org (lists.xenproject.org [192.237.175.120]) by mx.zohomail.com with SMTPS id 1677357496430978.5996579492893; Sat, 25 Feb 2023 12:38:16 -0800 (PST) Received: from list by lists.xenproject.org with outflank-mailman.501870.773687 (Exim 4.92) (envelope-from ) id 1pW1Ik-0007zt-L7; Sat, 25 Feb 2023 20:37:50 +0000 Received: by outflank-mailman (output) from mailman id 501870.773687; Sat, 25 Feb 2023 20:37:50 +0000 Received: from localhost ([127.0.0.1] helo=lists.xenproject.org) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1pW1Ik-0007zk-Hw; Sat, 25 Feb 2023 20:37:50 +0000 Received: by outflank-mailman (input) for mailman id 501870; Sat, 25 Feb 2023 20:37:49 +0000 Received: from se1-gles-flk1-in.inumbo.com ([94.247.172.50] helo=se1-gles-flk1.inumbo.com) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1pW1Ij-0007yc-Oh for xen-devel@lists.xenproject.org; Sat, 25 Feb 2023 20:37:49 +0000 Received: from out2-smtp.messagingengine.com (out2-smtp.messagingengine.com [66.111.4.26]) by se1-gles-flk1.inumbo.com (Halon) with ESMTPS id 4162fbfc-b54c-11ed-a82a-c9ca1d2f71af; Sat, 25 Feb 2023 21:37:48 +0100 (CET) Received: from compute5.internal (compute5.nyi.internal [10.202.2.45]) by mailout.nyi.internal (Postfix) with ESMTP id 67C5E5C009D; Sat, 25 Feb 2023 15:37:43 -0500 (EST) Received: from mailfrontend1 ([10.202.2.162]) by compute5.internal (MEProxy); Sat, 25 Feb 2023 15:37:43 -0500 Received: by mail.messagingengine.com (Postfix) with ESMTPA; Sat, 25 Feb 2023 15:37:41 -0500 (EST) X-Outflank-Mailman: Message body and most headers restored to incoming version X-BeenThere: xen-devel@lists.xenproject.org List-Id: Xen developer discussion List-Unsubscribe: , List-Post: List-Help: List-Subscribe: , Errors-To: xen-devel-bounces@lists.xenproject.org Precedence: list Sender: "Xen-devel" X-Inumbo-ID: 4162fbfc-b54c-11ed-a82a-c9ca1d2f71af DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= invisiblethingslab.com; h=cc:cc:content-transfer-encoding:date :date:from:from:in-reply-to:in-reply-to:message-id:mime-version :references:reply-to:sender:subject:subject:to:to; s=fm1; t= 1677357463; x=1677443863; bh=DLRFynjeQ7h4Iqriku9OW2YC9py/QqyZn5H hylUDGk4=; b=Tis2+b/6AIiQ1NA/82TuNQnJfHqUecgC6ERoIGxnyOzHDpuRazo 2vnA9m0GuMWjjB6WeREqIJaymDHrshqceKTOsNCZWkcG4e9gKfM4zvIBK2137PC5 QA+pOQ08wqbEWYc8L38ydflFFzebLFpYto9ZPxtziCjpnZSqFn3w3LW6DE6Fa69D FG3Z8rO73KboK4CtJ3urBwvcoibTbDtmcFWufFevyDuEse4zXUEJUGj8ouLZEPKB g5fEXmpPt3ZtCcNx9FYjpjadX/z4yl0zKnCmz05r28Pc6dfhF1sFstcpH10Jfde6 VQ9w0EC6M7xmKxZnV/mgrlB7dKleklsp+Kw== DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:cc:content-transfer-encoding:date:date :feedback-id:feedback-id:from:from:in-reply-to:in-reply-to :message-id:mime-version:references:reply-to:sender:subject :subject:to:to:x-me-proxy:x-me-proxy:x-me-sender:x-me-sender :x-sasl-enc; s=fm1; t=1677357463; x=1677443863; bh=DLRFynjeQ7h4I qriku9OW2YC9py/QqyZn5HhylUDGk4=; b=I7VtMLO6MqopveuFt8AQ6r462eTti qCQMelgBYgJRgGNjKIt8+bN1rqGzJkp7P6jjo8yAxjqgePrbcx4reXyXDm+y9ZdN 7hA74nd2wJEFNNZnF6bQkABMUlgCTBGTJt3ia6qPViccwIKTqXwb1lHy//ihga8N 5Xbi/JHhu8PsYcrg4kctcheknQup7bXhDXoF2ptUWnvJaMZafPbAsfeOmUcxP+K1 WdED7UlylDimE8wtLF78BUwob+sES9wrEMwA6Q1FDec1cvbWrIt+ONrbjNsLc/Mg UsujPeQitaoku4K7mBfmUZ1fvm07CRd01KGdMKTXXSgZ1Fahnjw+gzzgA== X-ME-Sender: X-ME-Received: X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvhedrudekiedgjeeiucetufdoteggodetrfdotf fvucfrrhhofhhilhgvmecuhfgrshhtofgrihhlpdfqfgfvpdfurfetoffkrfgpnffqhgen uceurghilhhouhhtmecufedttdenucesvcftvggtihhpihgvnhhtshculddquddttddmne cujfgurhephffvvefufffkofgjfhgggfestdekredtredttdenucfhrhhomhepffgvmhhi ucforghrihgvucfqsggvnhhouhhruceouggvmhhisehinhhvihhsihgslhgvthhhihhngh hslhgrsgdrtghomheqnecuggftrfgrthhtvghrnheptdeutddvfedtgeejfeehjefffedv tddvkefhgefgueegjefhveevueegtdfhkeehnecuffhomhgrihhnpeigvghnphhrohhjvg gtthdrohhrghdpgigvnhdrohhrghenucevlhhushhtvghrufhiiigvpedtnecurfgrrhgr mhepmhgrihhlfhhrohhmpeguvghmihesihhnvhhishhisghlvghthhhinhhgshhlrggsrd gtohhm X-ME-Proxy: Feedback-ID: iac594737:Fastmail From: Demi Marie Obenour To: xen-devel@lists.xenproject.org Cc: Demi Marie Obenour , =?UTF-8?q?Marek=20Marczykowski-G=C3=B3recki?= , Andrew Cooper , George Dunlap , Jan Beulich , Julien Grall , Stefano Stabellini , Wei Liu , Anthony PERARD Subject: [PATCH v5 2/5] Change remaining xenbits.xen.org links to HTTPS Date: Sat, 25 Feb 2023 15:37:12 -0500 Message-Id: X-Mailer: git-send-email 2.39.2 In-Reply-To: References: MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable X-ZM-MESSAGEID: 1677357498018100005 Content-Type: text/plain; charset="utf-8" Also fix an old xenbits.xenproject.org link. Signed-off-by: Demi Marie Obenour Acked-by: Jan Beulich --- Config.mk | 2 +- tools/misc/mkrpm | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/Config.mk b/Config.mk index 75f1975e5e78af44d36c2372cba6e89b425267a5..b2bef45b059976d5a6320eabada= 6073004eb22ee 100644 --- a/Config.mk +++ b/Config.mk @@ -191,7 +191,7 @@ APPEND_CFLAGS +=3D $(foreach i, $(APPEND_INCLUDES), -I$= (i)) EMBEDDED_EXTRA_CFLAGS :=3D -fno-pie -fno-stack-protector -fno-stack-protec= tor-all EMBEDDED_EXTRA_CFLAGS +=3D -fno-exceptions -fno-asynchronous-unwind-tables =20 -XEN_EXTFILES_URL ?=3D http://xenbits.xen.org/xen-extfiles +XEN_EXTFILES_URL ?=3D https://xenbits.xen.org/xen-extfiles # All the files at that location were downloaded from elsewhere on # the internet. The original download URL is preserved as a comment # near the place in the Xen Makefiles where the file is used. diff --git a/tools/misc/mkrpm b/tools/misc/mkrpm index 68819b2d739cea5491b53f9b944ee2bd20d92c2b..548db4b5da2691547438df5d7d5= 8e5b4c3bd90d0 100644 --- a/tools/misc/mkrpm +++ b/tools/misc/mkrpm @@ -34,7 +34,7 @@ Version: $version Release: $release License: GPL Group: System/Hypervisor -URL: http://xenbits.xenproject.org/xen.git +URL: https://xenbits.xen.org/git-http/xen.git =20 BuildRoot: %{_tmppath}/%{name}-%{version}-%{release}-root %define _binary_payload w1.gzdio --=20 Sincerely, Demi Marie Obenour (she/her/hers) Invisible Things Lab From nobody Thu May 16 12:24:14 2024 Delivered-To: importer@patchew.org Received-SPF: pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) client-ip=192.237.175.120; envelope-from=xen-devel-bounces@lists.xenproject.org; helo=lists.xenproject.org; Authentication-Results: mx.zohomail.com; spf=pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) smtp.mailfrom=xen-devel-bounces@lists.xenproject.org Return-Path: Received: from lists.xenproject.org (lists.xenproject.org [192.237.175.120]) by mx.zohomail.com with SMTPS id 1677357493959183.16748778716385; Sat, 25 Feb 2023 12:38:13 -0800 (PST) Received: from list by lists.xenproject.org with outflank-mailman.501871.773691 (Exim 4.92) (envelope-from ) id 1pW1Ik-00082W-V1; Sat, 25 Feb 2023 20:37:50 +0000 Received: by outflank-mailman (output) from mailman id 501871.773691; Sat, 25 Feb 2023 20:37:50 +0000 Received: from localhost ([127.0.0.1] helo=lists.xenproject.org) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1pW1Ik-00081i-Pj; Sat, 25 Feb 2023 20:37:50 +0000 Received: by outflank-mailman (input) for mailman id 501871; Sat, 25 Feb 2023 20:37:49 +0000 Received: from se1-gles-sth1-in.inumbo.com ([159.253.27.254] helo=se1-gles-sth1.inumbo.com) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1pW1Ij-0007PG-Lf for xen-devel@lists.xenproject.org; Sat, 25 Feb 2023 20:37:49 +0000 Received: from wout1-smtp.messagingengine.com (wout1-smtp.messagingengine.com [64.147.123.24]) by se1-gles-sth1.inumbo.com (Halon) with ESMTPS id 43e179d2-b54c-11ed-88bb-e56d68cac8db; Sat, 25 Feb 2023 21:37:49 +0100 (CET) Received: from compute2.internal (compute2.nyi.internal [10.202.2.46]) by mailout.west.internal (Postfix) with ESMTP id 1C2263200201; Sat, 25 Feb 2023 15:37:47 -0500 (EST) Received: from mailfrontend1 ([10.202.2.162]) by compute2.internal (MEProxy); Sat, 25 Feb 2023 15:37:47 -0500 Received: by mail.messagingengine.com (Postfix) with ESMTPA; Sat, 25 Feb 2023 15:37:46 -0500 (EST) X-Outflank-Mailman: Message body and most headers restored to incoming version X-BeenThere: xen-devel@lists.xenproject.org List-Id: Xen developer discussion List-Unsubscribe: , List-Post: List-Help: List-Subscribe: , Errors-To: xen-devel-bounces@lists.xenproject.org Precedence: list Sender: "Xen-devel" X-Inumbo-ID: 43e179d2-b54c-11ed-88bb-e56d68cac8db DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= invisiblethingslab.com; h=cc:cc:content-transfer-encoding:date :date:from:from:in-reply-to:in-reply-to:message-id:mime-version :references:reply-to:sender:subject:subject:to:to; s=fm1; t= 1677357466; x=1677443866; bh=FZjY6VSlLEVa0awh+ywsTVIuCBsoJnJElTE 5z586qAs=; b=gqVpRUc6sxtBQeu4DDxHSq2nLLyhQth028RTnrTm0Ql0aul1hHs KnwVzThu9LAB4GuMtjVHP3W5wYM2BXOu6uyoCHRp59g8Wm58QF7Ln8/VPKq0w272 HLTun8Z7+ffm6MBr5G4WIp6liOBkhwfHO1PGSdsr7MFKctYm4ZV+WkPYrLWcYW30 rmd4FFGTU5qXmDUYwl8y7atl/NKZhhQ0vJLQxXLKFEpUzeK0PaEJXSWO6d2ZvJVn QHOnPEoZ1bsGDW01T4vRFXBPCJrzgTLw2geu59GxTysaaCs2cFY5zn6cBGPOsfOB L2lQ4J797EYA52cTCUi4kxG/pztMxzvLIgQ== DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:cc:content-transfer-encoding:date:date :feedback-id:feedback-id:from:from:in-reply-to:in-reply-to :message-id:mime-version:references:reply-to:sender:subject :subject:to:to:x-me-proxy:x-me-proxy:x-me-sender:x-me-sender :x-sasl-enc; s=fm1; t=1677357466; x=1677443866; bh=FZjY6VSlLEVa0 awh+ywsTVIuCBsoJnJElTE5z586qAs=; b=IQNhbDoNb8lCii53GsOYZjWCAo7tP ylT3BrAYO7ilfm76HeQP0S5quLj0inbjMHDwPN8yaKbh91+xrWBx1Z9NcYeTFTGl QMMKK9ytqp8MK6H7Je+m99l3j0xGmETyP/F7z9f0WgWJ/VDi3VhWW8AkeejlwlY7 UFDP5zdA/KDE1G8F2jeaJAxh0KVBO25HJFElcfmhpRCveLAKK0EZuzLilCUJJgJn roYYS1qaYySfVv4FTDm0iPRJoOQW6fSc3c3+h5BnRy9vBXxblVZUc7uqZqM8mBZO QiJkAA5nGqJQKDyLBEk0nMvd2syhHWiDcQATv2nHMH582RHHdqzgbp8Mg== X-ME-Sender: X-ME-Received: X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvhedrudekiedgjeeiucetufdoteggodetrfdotf fvucfrrhhofhhilhgvmecuhfgrshhtofgrihhlpdfqfgfvpdfurfetoffkrfgpnffqhgen uceurghilhhouhhtmecufedttdenucesvcftvggtihhpihgvnhhtshculddquddttddmne cujfgurhephffvvefufffkofgjfhgggfestdekredtredttdenucfhrhhomhepffgvmhhi ucforghrihgvucfqsggvnhhouhhruceouggvmhhisehinhhvihhsihgslhgvthhhihhngh hslhgrsgdrtghomheqnecuggftrfgrthhtvghrnhepheehgefghfdvieduuddthefhhfeu gffhjedtgedvhfetheehgeduieegjeekfeetnecuffhomhgrihhnpeiilhhisgdrnhgvth dpphholhgrrhhsshhlrdhorhhgpdgsvghrlhhiohhsrdguvgdpkhgvrhhnvghlrdhorhhg pdhrvgguhhgrthdrtghomhdpghhnuhdrohhrghdpihhnrhhirgdrfhhrpdhgmhhplhhisg drohhrghenucevlhhushhtvghrufhiiigvpedtnecurfgrrhgrmhepmhgrihhlfhhrohhm peguvghmihesihhnvhhishhisghlvghthhhinhhgshhlrggsrdgtohhm X-ME-Proxy: Feedback-ID: iac594737:Fastmail From: Demi Marie Obenour To: xen-devel@lists.xenproject.org Cc: Demi Marie Obenour , =?UTF-8?q?Marek=20Marczykowski-G=C3=B3recki?= , Samuel Thibault , Wei Liu , Anthony PERARD Subject: [PATCH v5 3/5] Build system: Do not try to use broken links Date: Sat, 25 Feb 2023 15:37:13 -0500 Message-Id: <8122a5118079b87904724d61859880cc3672be06.1677356813.git.demi@invisiblethingslab.com> X-Mailer: git-send-email 2.39.2 In-Reply-To: References: MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable X-ZM-MESSAGEID: 1677357495790100001 Content-Type: text/plain; charset="utf-8" The upstream URLs for zlib, PolarSSL, and the TPM emulator do not work anymore, so do not attempt to use them. Signed-off-by: Demi Marie Obenour --- m4/stubdom.m4 | 5 +++-- stubdom/configure | 21 +++------------------ stubdom/configure.ac | 6 +++--- 3 files changed, 9 insertions(+), 23 deletions(-) diff --git a/m4/stubdom.m4 b/m4/stubdom.m4 index 6aa488b8e229dabbe107cfe115b5f2ac7e5ae824..26f10595d1c1250b1dc8a5be626= 142325e8d4673 100644 --- a/m4/stubdom.m4 +++ b/m4/stubdom.m4 @@ -78,10 +78,11 @@ done AC_DEFUN([AX_STUBDOM_LIB], [ AC_ARG_VAR([$1_URL], [Download url for $2]) AS_IF([test "x$$1_URL" =3D "x"], [ - AS_IF([test "x$extfiles" =3D "xy"], + m4_if([$#],[3],[$1_URL=3D\@S|@\@{:@XEN_EXTFILES_URL\@:}@], + [$#],[4],[AS_IF([test "x$extfiles" =3D "xy"], [$1_URL=3D\@S|@\@{:@XEN_EXTFILES_URL\@:}@], [$1_URL=3D"$4"]) - ]) +],[m4_fatal([AX_STUBDOM_LIB expects 3 or 4 arguments, not $#])])]) $1_VERSION=3D"$3" AC_SUBST($1_URL) AC_SUBST($1_VERSION) diff --git a/stubdom/configure b/stubdom/configure index b8bffceafdd46181e26a79b85405aefb8bc3ff7d..4ea95baa9192f3b319349ac2a14= a3055a21ce705 100755 --- a/stubdom/configure +++ b/stubdom/configure @@ -3532,12 +3532,7 @@ fi =20 if test "x$ZLIB_URL" =3D "x"; then : =20 - if test "x$extfiles" =3D "xy"; then : - ZLIB_URL=3D\$\(XEN_EXTFILES_URL\) -else - ZLIB_URL=3D"http://www.zlib.net" -fi - + ZLIB_URL=3D\$\(XEN_EXTFILES_URL\) fi ZLIB_VERSION=3D"1.2.3" =20 @@ -3633,12 +3628,7 @@ GMP_VERSION=3D"4.3.2" =20 if test "x$POLARSSL_URL" =3D "x"; then : =20 - if test "x$extfiles" =3D "xy"; then : - POLARSSL_URL=3D\$\(XEN_EXTFILES_URL\) -else - POLARSSL_URL=3D"http://polarssl.org/code/releases" -fi - + POLARSSL_URL=3D\$\(XEN_EXTFILES_URL\) fi POLARSSL_VERSION=3D"1.1.4" =20 @@ -3648,12 +3638,7 @@ POLARSSL_VERSION=3D"1.1.4" =20 if test "x$TPMEMU_URL" =3D "x"; then : =20 - if test "x$extfiles" =3D "xy"; then : - TPMEMU_URL=3D\$\(XEN_EXTFILES_URL\) -else - TPMEMU_URL=3D"http://download.berlios.de/tpm-emulator" -fi - + TPMEMU_URL=3D\$\(XEN_EXTFILES_URL\) fi TPMEMU_VERSION=3D"0.7.4" =20 diff --git a/stubdom/configure.ac b/stubdom/configure.ac index e20d99edac0da88098f4806333edde9f31dbc1a7..c648b1602c227ed5fe63b9fbdf3= fa52fd2e1654b 100644 --- a/stubdom/configure.ac +++ b/stubdom/configure.ac @@ -55,15 +55,15 @@ AC_PROG_INSTALL AX_DEPENDS_PATH_PROG([vtpm], [CMAKE], [cmake]) =20 # Stubdom libraries version and url setup -AX_STUBDOM_LIB([ZLIB], [zlib], [1.2.3], [http://www.zlib.net]) +AX_STUBDOM_LIB([ZLIB], [zlib], [1.2.3]) AX_STUBDOM_LIB([LIBPCI], [libpci], [2.2.9], [http://www.kernel.org/pub/sof= tware/utils/pciutils]) AX_STUBDOM_LIB([NEWLIB], [newlib], [1.16.0], [ftp://sources.redhat.com/pub= /newlib]) AX_STUBDOM_LIB([LWIP], [lwip], [1.3.0], [http://download.savannah.gnu.org/= releases/lwip]) AX_STUBDOM_LIB([GRUB], [grub], [0.97], [http://alpha.gnu.org/gnu/grub]) AX_STUBDOM_LIB_NOEXT([OCAML], [ocaml], [4.02.0], [http://caml.inria.fr/pub= /distrib/ocaml-4.02]) AX_STUBDOM_LIB([GMP], [libgmp], [4.3.2], [ftp://ftp.gmplib.org/pub/gmp-4.3= .2]) -AX_STUBDOM_LIB([POLARSSL], [polarssl], [1.1.4], [http://polarssl.org/code/= releases]) -AX_STUBDOM_LIB([TPMEMU], [berlios tpm emulator], [0.7.4], [http://download= .berlios.de/tpm-emulator]) +AX_STUBDOM_LIB([POLARSSL], [polarssl], [1.1.4]) +AX_STUBDOM_LIB([TPMEMU], [berlios tpm emulator], [0.7.4]) =20 #These stubdoms should be enabled if the dependent one is AX_STUBDOM_AUTO_DEPENDS([vtpmmgr], [vtpm]) --=20 Sincerely, Demi Marie Obenour (she/her/hers) Invisible Things Lab From nobody Thu May 16 12:24:14 2024 Delivered-To: importer@patchew.org Received-SPF: pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) client-ip=192.237.175.120; envelope-from=xen-devel-bounces@lists.xenproject.org; helo=lists.xenproject.org; Authentication-Results: mx.zohomail.com; spf=pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) smtp.mailfrom=xen-devel-bounces@lists.xenproject.org Return-Path: Received: from lists.xenproject.org (lists.xenproject.org [192.237.175.120]) by mx.zohomail.com with SMTPS id 1677357500280382.21257441617786; Sat, 25 Feb 2023 12:38:20 -0800 (PST) Received: from list by lists.xenproject.org with outflank-mailman.501874.773706 (Exim 4.92) (envelope-from ) id 1pW1Is-0000LY-6r; Sat, 25 Feb 2023 20:37:58 +0000 Received: by outflank-mailman (output) from mailman id 501874.773706; Sat, 25 Feb 2023 20:37:58 +0000 Received: from localhost ([127.0.0.1] helo=lists.xenproject.org) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1pW1Is-0000LP-3a; Sat, 25 Feb 2023 20:37:58 +0000 Received: by outflank-mailman (input) for mailman id 501874; Sat, 25 Feb 2023 20:37:56 +0000 Received: from se1-gles-flk1-in.inumbo.com ([94.247.172.50] helo=se1-gles-flk1.inumbo.com) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1pW1Iq-0007yc-Ov for xen-devel@lists.xenproject.org; Sat, 25 Feb 2023 20:37:56 +0000 Received: from wout1-smtp.messagingengine.com (wout1-smtp.messagingengine.com [64.147.123.24]) by se1-gles-flk1.inumbo.com (Halon) with ESMTPS id 4778e5b4-b54c-11ed-a82a-c9ca1d2f71af; Sat, 25 Feb 2023 21:37:55 +0100 (CET) Received: from compute3.internal (compute3.nyi.internal [10.202.2.43]) by mailout.west.internal (Postfix) with ESMTP id 1F2353200201; Sat, 25 Feb 2023 15:37:53 -0500 (EST) Received: from mailfrontend1 ([10.202.2.162]) by compute3.internal (MEProxy); Sat, 25 Feb 2023 15:37:53 -0500 Received: by mail.messagingengine.com (Postfix) with ESMTPA; Sat, 25 Feb 2023 15:37:52 -0500 (EST) X-Outflank-Mailman: Message body and most headers restored to incoming version X-BeenThere: xen-devel@lists.xenproject.org List-Id: Xen developer discussion List-Unsubscribe: , List-Post: List-Help: List-Subscribe: , Errors-To: xen-devel-bounces@lists.xenproject.org Precedence: list Sender: "Xen-devel" X-Inumbo-ID: 4778e5b4-b54c-11ed-a82a-c9ca1d2f71af DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= invisiblethingslab.com; h=cc:cc:content-transfer-encoding:date :date:from:from:in-reply-to:in-reply-to:message-id:mime-version :references:reply-to:sender:subject:subject:to:to; s=fm1; t= 1677357472; x=1677443872; bh=eE9rMkFJ8SK3XCHPmE4xntol477kdYevv8F tOH7Fe3I=; b=lyoz5gWVWeiiUc9rXtuLY6HQZk+S71tzEU5vht4aAPID/MtcUjh ni2VxOvFbRVXFE13LTvx7BF8M3DpvI+aPJs17J0yZu3JcInyKUgf/V5WMnrJOOJb ljMxH66EqTZtD9o6GDyr9fQRdspuh2b/tz7SaUeJUHgkClYETBCtIvj7Fqvu/Cbc F9XYESLX9cppZWSb34IHJqy1Tq0JmFkIlrX4q7yZXthZtfKODOljpRDcfZ+SCHzO lphOtzVYaS+Hpbzp2x+jL9g01kAtdbsnjjtpFwaYPmkMJNXpgQ0kqAw5lM3qZxUo xLDgx8qXDlkQs1Ur4I2Cr6J/mtqSsumAIDg== DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:cc:content-transfer-encoding:date:date :feedback-id:feedback-id:from:from:in-reply-to:in-reply-to :message-id:mime-version:references:reply-to:sender:subject :subject:to:to:x-me-proxy:x-me-proxy:x-me-sender:x-me-sender :x-sasl-enc; s=fm1; t=1677357472; x=1677443872; bh=eE9rMkFJ8SK3X CHPmE4xntol477kdYevv8FtOH7Fe3I=; b=a5d9p7LzmKi+Oo2B82T/0f6CIyjC5 Lt08s1uRrJjJTbF/qoE/MKcIHiCoL8tcAwwpPfQcceLzUj8a+OzoaQaJdLUuWJ3B jLQ2lSgqAseUDQlCeFg8cd0gQOzaGLZMKeWXOdj5I7ZbgGI7Lbx8ntkss6XYSLHP esAPLQZifeLXlLvRe+HY6e/CxqpQQ3jzmd2EnJrELeTDM8xR/Isxr0KypiSQKQzC 2+0HVNiB3905fg+oDf4DIP3hkSPPBZjIwWbAKSEVihmIaHSgn/jLLrINZFNGJD1a Km4W/rzrw8Xoj6CvarMxdtP3aAF9sYIrwbc+xh5a2k0TAMp+CvJrw9z0w== X-ME-Sender: X-ME-Received: X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvhedrudekiedgjeeiucetufdoteggodetrfdotf fvucfrrhhofhhilhgvmecuhfgrshhtofgrihhlpdfqfgfvpdfurfetoffkrfgpnffqhgen uceurghilhhouhhtmecufedttdenucesvcftvggtihhpihgvnhhtshculddquddttddmne cujfgurhephffvvefufffkofgjfhgggfestdekredtredttdenucfhrhhomhepffgvmhhi ucforghrihgvucfqsggvnhhouhhruceouggvmhhisehinhhvihhsihgslhgvthhhihhngh hslhgrsgdrtghomheqnecuggftrfgrthhtvghrnhepuedtueeutedtfefgkedtueefteeu ffdvuedtudekkedvhffgfffhheefgeeutdejnecuffhomhgrihhnpehkvghrnhgvlhdroh hrghdprhgvughhrghtrdgtohhmpdhsohhurhgtvgifrghrvgdrohhrghdpghhnuhdrohhr ghdpihhnrhhirgdrfhhrpdhgmhhplhhisgdrohhrghdpihhpgigvrdhorhhgpdhgihhthh husgdrtghomhenucevlhhushhtvghrufhiiigvpedtnecurfgrrhgrmhepmhgrihhlfhhr ohhmpeguvghmihesihhnvhhishhisghlvghthhhinhhgshhlrggsrdgtohhm X-ME-Proxy: Feedback-ID: iac594737:Fastmail From: Demi Marie Obenour To: xen-devel@lists.xenproject.org Cc: Demi Marie Obenour , =?UTF-8?q?Marek=20Marczykowski-G=C3=B3recki?= , Samuel Thibault , Wei Liu , Anthony PERARD Subject: [PATCH v5 4/5] Build system: Replace git:// and http:// with https:// Date: Sat, 25 Feb 2023 15:37:14 -0500 Message-Id: <85a65c8c5cbd7cab3b9eb57aed27a59443c7a6ff.1677356813.git.demi@invisiblethingslab.com> X-Mailer: git-send-email 2.39.2 In-Reply-To: References: MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable X-ZM-MESSAGEID: 1677357501830100001 Content-Type: text/plain; charset="utf-8" Obtaining code over an insecure transport is a terrible idea for blatently obvious reasons. Even for non-executable data, insecure transports are considered deprecated. This patch enforces the use of secure transports in the build system. Some URLs returned 301 or 302 redirects, so I replaced them with the URLs that were redirected to. Signed-off-by: Demi Marie Obenour --- stubdom/configure | 12 ++++++------ stubdom/configure.ac | 12 ++++++------ tools/firmware/etherboot/Makefile | 6 +----- 3 files changed, 13 insertions(+), 17 deletions(-) diff --git a/stubdom/configure b/stubdom/configure index 4ea95baa9192f3b319349ac2a14a3055a21ce705..540e9cd331888449b0e24c1aa97= 4bc22c5bcab54 100755 --- a/stubdom/configure +++ b/stubdom/configure @@ -3545,7 +3545,7 @@ if test "x$LIBPCI_URL" =3D "x"; then : if test "x$extfiles" =3D "xy"; then : LIBPCI_URL=3D\$\(XEN_EXTFILES_URL\) else - LIBPCI_URL=3D"http://www.kernel.org/pub/software/utils/pciutils" + LIBPCI_URL=3D"https://mirrors.edge.kernel.org/pub/software/utils/pciutil= s" fi =20 fi @@ -3560,7 +3560,7 @@ if test "x$NEWLIB_URL" =3D "x"; then : if test "x$extfiles" =3D "xy"; then : NEWLIB_URL=3D\$\(XEN_EXTFILES_URL\) else - NEWLIB_URL=3D"ftp://sources.redhat.com/pub/newlib" + NEWLIB_URL=3D"https://sourceware.org/ftp/newlib" fi =20 fi @@ -3575,7 +3575,7 @@ if test "x$LWIP_URL" =3D "x"; then : if test "x$extfiles" =3D "xy"; then : LWIP_URL=3D\$\(XEN_EXTFILES_URL\) else - LWIP_URL=3D"http://download.savannah.gnu.org/releases/lwip" + LWIP_URL=3D"https://download.savannah.gnu.org/releases/lwip" fi =20 fi @@ -3590,7 +3590,7 @@ if test "x$GRUB_URL" =3D "x"; then : if test "x$extfiles" =3D "xy"; then : GRUB_URL=3D\$\(XEN_EXTFILES_URL\) else - GRUB_URL=3D"http://alpha.gnu.org/gnu/grub" + GRUB_URL=3D"https://alpha.gnu.org/gnu/grub" fi =20 fi @@ -3602,7 +3602,7 @@ GRUB_VERSION=3D"0.97" =20 if test "x$OCAML_URL" =3D "x"; then : =20 - OCAML_URL=3D"http://caml.inria.fr/pub/distrib/ocaml-4.02" + OCAML_URL=3D"https://caml.inria.fr/pub/distrib/ocaml-4.02" =20 fi OCAML_VERSION=3D"4.02.0" @@ -3616,7 +3616,7 @@ if test "x$GMP_URL" =3D "x"; then : if test "x$extfiles" =3D "xy"; then : GMP_URL=3D\$\(XEN_EXTFILES_URL\) else - GMP_URL=3D"ftp://ftp.gmplib.org/pub/gmp-4.3.2" + GMP_URL=3D"https://gmplib.org/download/gmp/archive" fi =20 fi diff --git a/stubdom/configure.ac b/stubdom/configure.ac index c648b1602c227ed5fe63b9fbdf3fa52fd2e1654b..471e371e14a82aedc10314c95bc= af39ce9f89f90 100644 --- a/stubdom/configure.ac +++ b/stubdom/configure.ac @@ -56,12 +56,12 @@ AX_DEPENDS_PATH_PROG([vtpm], [CMAKE], [cmake]) =20 # Stubdom libraries version and url setup AX_STUBDOM_LIB([ZLIB], [zlib], [1.2.3]) -AX_STUBDOM_LIB([LIBPCI], [libpci], [2.2.9], [http://www.kernel.org/pub/sof= tware/utils/pciutils]) -AX_STUBDOM_LIB([NEWLIB], [newlib], [1.16.0], [ftp://sources.redhat.com/pub= /newlib]) -AX_STUBDOM_LIB([LWIP], [lwip], [1.3.0], [http://download.savannah.gnu.org/= releases/lwip]) -AX_STUBDOM_LIB([GRUB], [grub], [0.97], [http://alpha.gnu.org/gnu/grub]) -AX_STUBDOM_LIB_NOEXT([OCAML], [ocaml], [4.02.0], [http://caml.inria.fr/pub= /distrib/ocaml-4.02]) -AX_STUBDOM_LIB([GMP], [libgmp], [4.3.2], [ftp://ftp.gmplib.org/pub/gmp-4.3= .2]) +AX_STUBDOM_LIB([LIBPCI], [libpci], [2.2.9], [https://mirrors.edge.kernel.o= rg/pub/software/utils/pciutils]) +AX_STUBDOM_LIB([NEWLIB], [newlib], [1.16.0], [https://sourceware.org/ftp/n= ewlib]) +AX_STUBDOM_LIB([LWIP], [lwip], [1.3.0], [https://download.savannah.gnu.org= /releases/lwip]) +AX_STUBDOM_LIB([GRUB], [grub], [0.97], [https://alpha.gnu.org/gnu/grub]) +AX_STUBDOM_LIB_NOEXT([OCAML], [ocaml], [4.02.0], [https://caml.inria.fr/pu= b/distrib/ocaml-4.02]) +AX_STUBDOM_LIB([GMP], [libgmp], [4.3.2], [https://gmplib.org/download/gmp/= archive]) AX_STUBDOM_LIB([POLARSSL], [polarssl], [1.1.4]) AX_STUBDOM_LIB([TPMEMU], [berlios tpm emulator], [0.7.4]) =20 diff --git a/tools/firmware/etherboot/Makefile b/tools/firmware/etherboot/M= akefile index 4bc3633ba3d67ff9f52a9cb7923afea73c861da9..6ab9e5bc6b4cc750f2e802128fb= c71e9150397b1 100644 --- a/tools/firmware/etherboot/Makefile +++ b/tools/firmware/etherboot/Makefile @@ -4,11 +4,7 @@ XEN_ROOT =3D $(CURDIR)/../../.. include $(XEN_ROOT)/tools/Rules.mk include Config =20 -ifeq ($(GIT_HTTP),y) -IPXE_GIT_URL ?=3D http://git.ipxe.org/ipxe.git -else -IPXE_GIT_URL ?=3D git://git.ipxe.org/ipxe.git -endif +IPXE_GIT_URL ?=3D https://github.com/ipxe/ipxe.git =20 # put an updated tar.gz on xenbits after changes to this variable IPXE_GIT_TAG :=3D 3c040ad387099483102708bb1839110bc788cefb --=20 Sincerely, Demi Marie Obenour (she/her/hers) Invisible Things Lab From nobody Thu May 16 12:24:14 2024 Delivered-To: importer@patchew.org Received-SPF: pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) client-ip=192.237.175.120; envelope-from=xen-devel-bounces@lists.xenproject.org; helo=lists.xenproject.org; Authentication-Results: mx.zohomail.com; spf=pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) smtp.mailfrom=xen-devel-bounces@lists.xenproject.org Return-Path: Received: from lists.xenproject.org (lists.xenproject.org [192.237.175.120]) by mx.zohomail.com with SMTPS id 1677357503328362.00137895908153; Sat, 25 Feb 2023 12:38:23 -0800 (PST) Received: from list by lists.xenproject.org with outflank-mailman.501880.773717 (Exim 4.92) (envelope-from ) id 1pW1Iw-0000nL-Jh; Sat, 25 Feb 2023 20:38:02 +0000 Received: by outflank-mailman (output) from mailman id 501880.773717; Sat, 25 Feb 2023 20:38:02 +0000 Received: from localhost ([127.0.0.1] helo=lists.xenproject.org) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1pW1Iw-0000nA-Fw; Sat, 25 Feb 2023 20:38:02 +0000 Received: by outflank-mailman (input) for mailman id 501880; Sat, 25 Feb 2023 20:38:01 +0000 Received: from se1-gles-flk1-in.inumbo.com ([94.247.172.50] helo=se1-gles-flk1.inumbo.com) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1pW1Iv-0007yc-Kw for xen-devel@lists.xenproject.org; Sat, 25 Feb 2023 20:38:01 +0000 Received: from wout1-smtp.messagingengine.com (wout1-smtp.messagingengine.com [64.147.123.24]) by se1-gles-flk1.inumbo.com (Halon) with ESMTPS id 4a402e81-b54c-11ed-a82a-c9ca1d2f71af; Sat, 25 Feb 2023 21:37:59 +0100 (CET) Received: from compute5.internal (compute5.nyi.internal [10.202.2.45]) by mailout.west.internal (Postfix) with ESMTP id 806CA320027A; Sat, 25 Feb 2023 15:37:57 -0500 (EST) Received: from mailfrontend1 ([10.202.2.162]) by compute5.internal (MEProxy); Sat, 25 Feb 2023 15:37:58 -0500 Received: by mail.messagingengine.com (Postfix) with ESMTPA; Sat, 25 Feb 2023 15:37:56 -0500 (EST) X-Outflank-Mailman: Message body and most headers restored to incoming version X-BeenThere: xen-devel@lists.xenproject.org List-Id: Xen developer discussion List-Unsubscribe: , List-Post: List-Help: List-Subscribe: , Errors-To: xen-devel-bounces@lists.xenproject.org Precedence: list Sender: "Xen-devel" X-Inumbo-ID: 4a402e81-b54c-11ed-a82a-c9ca1d2f71af DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= invisiblethingslab.com; h=cc:cc:content-transfer-encoding:date :date:from:from:in-reply-to:in-reply-to:message-id:mime-version :references:reply-to:sender:subject:subject:to:to; s=fm1; t= 1677357477; x=1677443877; bh=aeHQ0E9NgzibaZKiBNAkgq+kKk4grLArxug vf6LHwOg=; b=D6N1DVw74iEbjkNOvY2tQon8e7KjPb/cJNu/aVwlZ75ZCzkiLW0 2+94ASDCQZSRTD5JQcUX7H5YouCHLbFdqwct3iLrFezVQxcJSx1htoSFTadmszec KLU/gwAV3M0KZOa8QwuB6WEeplmPzpLUJ9/Sa+EZTv7bJ6RgjsR456KaB9wGTb+j hvWbcewzbLcwxs8K5F6JAwkXNPXhDmsI+jJkj243AjQ2x4/wHYRDUTK8KlviwJZB kW1z5mevFOuJSomWpXudNqjrl+oxNhJvvK/62jpchQRKKDPlUF4fgTq0eaY7zqVL Mjna/9HruhbeoyJ9rPmgRN4sgw2U0vtLLmg== DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:cc:content-transfer-encoding:date:date :feedback-id:feedback-id:from:from:in-reply-to:in-reply-to :message-id:mime-version:references:reply-to:sender:subject :subject:to:to:x-me-proxy:x-me-proxy:x-me-sender:x-me-sender :x-sasl-enc; s=fm1; t=1677357477; x=1677443877; bh=aeHQ0E9Ngziba ZKiBNAkgq+kKk4grLArxugvf6LHwOg=; b=m0jDBj19PfIQ6V2R7GErPlwkEJzi8 dpTq9O4poS7zCXRu9SFMWC5Fc2KrvID8OhrSMIB+7Z0nmQFgJuV1LHZzWkMr6Efv MJUY1LZhMYKOkHsmuelUSPeY2Yq4lAgGZHXwbjUHvkzV9BgD+UIqrb9KMvWe1/O7 4B9pzA+CvnCWzkjIOPUygFkqRuPfWTNmsTPbehNlkl4z7bQKywA8YYQtKRi835Mf NpidjeSZDhiIpecFBTpTTo+w3EyOmvcGacNMqzqq+wJilmRqEntQd614QTs0ksM6 FU5oppYRWjRSd68lKtpAvRN2SbORB3KTdAyFTe3nz035OAmSz76ayoJdA== X-ME-Sender: X-ME-Received: X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvhedrudekiedgjeeiucetufdoteggodetrfdotf fvucfrrhhofhhilhgvmecuhfgrshhtofgrihhlpdfqfgfvpdfurfetoffkrfgpnffqhgen uceurghilhhouhhtmecufedttdenucesvcftvggtihhpihgvnhhtshculddquddttddmne cujfgurhephffvvefufffkofgjfhgggfestdekredtredttdenucfhrhhomhepffgvmhhi ucforghrihgvucfqsggvnhhouhhruceouggvmhhisehinhhvihhsihgslhgvthhhihhngh hslhgrsgdrtghomheqnecuggftrfgrthhtvghrnhepteffheeiudduhefhffeigfegiedv leehhfdtvdduhffhudelkeefvdduueejkeevnecuffhomhgrihhnpehphihthhhonhdroh hrghdpihhnthgvlhdrtghomhdplhhlvhhmrdhorhhgpdguvggsihgrnhdrohhrghdprghl phhinhgvlhhinhhugidrohhrghenucevlhhushhtvghrufhiiigvpedtnecurfgrrhgrmh epmhgrihhlfhhrohhmpeguvghmihesihhnvhhishhisghlvghthhhinhhgshhlrggsrdgt ohhm X-ME-Proxy: Feedback-ID: iac594737:Fastmail From: Demi Marie Obenour To: xen-devel@lists.xenproject.org Cc: Demi Marie Obenour , =?UTF-8?q?Marek=20Marczykowski-G=C3=B3recki?= , Andrew Cooper , George Dunlap , Jan Beulich , Julien Grall , Stefano Stabellini , Wei Liu , Doug Goldstein Subject: [PATCH v5 5/5] Automation and CI: Replace git:// and http:// with https:// Date: Sat, 25 Feb 2023 15:37:15 -0500 Message-Id: <8ca85b30b903512fc07e95cf4e07ea4b0623ba99.1677356813.git.demi@invisiblethingslab.com> X-Mailer: git-send-email 2.39.2 In-Reply-To: References: MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable X-ZM-MESSAGEID: 1677357503834100003 Content-Type: text/plain; charset="utf-8" Obtaining code over an insecure transport is a terrible idea for blatently obvious reasons. Even for non-executable data, insecure transports are considered deprecated. This patch enforces the use of secure transports in automation and CI. All URLs are known to work. Signed-off-by: Demi Marie Obenour --- README | 4 ++-- automation/build/debian/stretch-llvm-8.list | 4 ++-- automation/scripts/qemu-smoke-dom0-arm32.sh | 2 +- 3 files changed, 5 insertions(+), 5 deletions(-) diff --git a/README b/README index 755b3d8eaf8f7a58a945b7594e68a3fe455a7bdf..f8cc426f78d690f37e013242e81= d4e440556c330 100644 --- a/README +++ b/README @@ -181,7 +181,7 @@ Python Runtime Libraries Various tools, such as pygrub, have the following runtime dependencies: =20 * Python 2.6 or later. - URL: http://www.python.org/ + URL: https://www.python.org/ Debian: python =20 Note that the build system expects `python` to be available. If your system @@ -197,7 +197,7 @@ Intel(R) Trusted Execution Technology Support Intel's technology for safer computing, Intel(R) Trusted Execution Technol= ogy (Intel(R) TXT), defines platform-level enhancements that provide the build= ing blocks for creating trusted platforms. For more information, see -http://www.intel.com/technology/security/. +https://www.intel.com/technology/security/. =20 Intel(R) TXT support is provided by the Trusted Boot (tboot) module in conjunction with minimal logic in the Xen hypervisor. diff --git a/automation/build/debian/stretch-llvm-8.list b/automation/build= /debian/stretch-llvm-8.list index 09fe843fb2a31ae38f752d7c8c71cf97f5b14513..590001ca81e826ab624ba918542= 3adf4b0c51a21 100644 --- a/automation/build/debian/stretch-llvm-8.list +++ b/automation/build/debian/stretch-llvm-8.list @@ -1,3 +1,3 @@ # Strech LLVM 8 repos -deb http://apt.llvm.org/stretch/ llvm-toolchain-stretch-8 main -deb-src http://apt.llvm.org/stretch/ llvm-toolchain-stretch-8 main +deb https://apt.llvm.org/stretch/ llvm-toolchain-stretch-8 main +deb-src https://apt.llvm.org/stretch/ llvm-toolchain-stretch-8 main diff --git a/automation/scripts/qemu-smoke-dom0-arm32.sh b/automation/scrip= ts/qemu-smoke-dom0-arm32.sh index 98e4d481f65c2b29ac935ddf6247132ddf94fa1d..950ad3a0daa63d66fc8647c0a39= 0ff59c2f22b1a 100755 --- a/automation/scripts/qemu-smoke-dom0-arm32.sh +++ b/automation/scripts/qemu-smoke-dom0-arm32.sh @@ -4,7 +4,7 @@ set -ex =20 cd binaries # Use the kernel from Debian -curl --fail --silent --show-error --location --output vmlinuz http://http.= us.debian.org/debian/dists/bullseye/main/installer-armhf/current/images/net= boot/vmlinuz +curl --fail --silent --show-error --location --output vmlinuz https://ftp.= debian.org/debian/dists/bullseye/main/installer-armhf/current/images/netboo= t/vmlinuz # Use a tiny initrd based on busybox from Alpine Linux curl --fail --silent --show-error --location --output initrd.tar.gz https:= //dl-cdn.alpinelinux.org/alpine/v3.15/releases/armhf/alpine-minirootfs-3.15= .1-armhf.tar.gz =20 --=20 Sincerely, Demi Marie Obenour (she/her/hers) Invisible Things Lab