From nobody Thu May 2 10:05:43 2024 Delivered-To: importer@patchew.org Received-SPF: pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) client-ip=192.237.175.120; envelope-from=xen-devel-bounces@lists.xenproject.org; helo=lists.xenproject.org; Authentication-Results: mx.zohomail.com; spf=pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) smtp.mailfrom=xen-devel-bounces@lists.xenproject.org Return-Path: Received: from lists.xenproject.org (lists.xenproject.org [192.237.175.120]) by mx.zohomail.com with SMTPS id 1679420103549935.7709132709481; Tue, 21 Mar 2023 10:35:03 -0700 (PDT) Received: from list by lists.xenproject.org with outflank-mailman.512923.793340 (Exim 4.92) (envelope-from ) id 1pefsj-0003en-EB; Tue, 21 Mar 2023 17:34:45 +0000 Received: by outflank-mailman (output) from mailman id 512923.793340; Tue, 21 Mar 2023 17:34:45 +0000 Received: from localhost ([127.0.0.1] helo=lists.xenproject.org) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1pefsj-0003eg-BW; Tue, 21 Mar 2023 17:34:45 +0000 Received: by outflank-mailman (input) for mailman id 512923; Tue, 21 Mar 2023 17:34:43 +0000 Received: from se1-gles-sth1-in.inumbo.com ([159.253.27.254] helo=se1-gles-sth1.inumbo.com) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1pefsh-0003LR-4h for xen-devel@lists.xenproject.org; Tue, 21 Mar 2023 17:34:43 +0000 Received: from wout5-smtp.messagingengine.com (wout5-smtp.messagingengine.com [64.147.123.21]) by se1-gles-sth1.inumbo.com (Halon) with ESMTPS id a9314462-c80e-11ed-87f5-c1b5be75604c; Tue, 21 Mar 2023 18:34:42 +0100 (CET) Received: from compute5.internal (compute5.nyi.internal [10.202.2.45]) by mailout.west.internal (Postfix) with ESMTP id 03DA33200900; Tue, 21 Mar 2023 13:34:39 -0400 (EDT) Received: from mailfrontend1 ([10.202.2.162]) by compute5.internal (MEProxy); Tue, 21 Mar 2023 13:34:40 -0400 Received: by mail.messagingengine.com (Postfix) with ESMTPA; Tue, 21 Mar 2023 13:34:38 -0400 (EDT) X-Outflank-Mailman: Message body and most headers restored to incoming version X-BeenThere: xen-devel@lists.xenproject.org List-Id: Xen developer discussion List-Unsubscribe: , List-Post: List-Help: List-Subscribe: , Errors-To: xen-devel-bounces@lists.xenproject.org Precedence: list Sender: "Xen-devel" X-Inumbo-ID: a9314462-c80e-11ed-87f5-c1b5be75604c DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= invisiblethingslab.com; h=cc:cc:content-transfer-encoding :content-type:date:date:from:from:in-reply-to:in-reply-to :message-id:mime-version:references:reply-to:sender:subject :subject:to:to; s=fm2; t=1679420079; x=1679506479; bh=+fUifg3+9S x5Ngno/T4jBLJLFOiv4d2p9UYHj/k/F/0=; b=FKm5VKycRTtDrQgjQNcDM4m1HS eJQxKeRpDalsQ8MfENUCUe35Opl7e4/wBASg4BY5VC1WuQUsoEKXHH6PBODy6tEc 7zMjWIns/fPJV/puPoHCEQmTKiIB5ED1XWugbE04UFXfHIYO8DnDxk7/ldAMoyvS okB/f/CEVTX3MSNdUcNklOEOodVoi69TogmangfkztenG78hmesJXtTw3lkUtt7K aeEoLjc+2KqaNwRg9Ux7AVNRZfkchQZETFA+NU4KdoMDkI8NF2hrWdBSvcLaZK+N 3ICbcVQQNhYi3mRLpPO6SKByQ6olBu0TzlLQEl/xBSgsf4QyXriuxhG4Gm/w== DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:cc:content-transfer-encoding :content-type:date:date:feedback-id:feedback-id:from:from :in-reply-to:in-reply-to:message-id:mime-version:references :reply-to:sender:subject:subject:to:to:x-me-proxy:x-me-proxy :x-me-sender:x-me-sender:x-sasl-enc; s=fm2; t=1679420079; x= 1679506479; bh=+fUifg3+9Sx5Ngno/T4jBLJLFOiv4d2p9UYHj/k/F/0=; b=N Er67vUgALb8ZGILOTlAOVnfZGsgCLIZtnvBvkeQfYpZJA1r8tYz4NRDfFzhlBAYL 5h03hI4I6gm/3wZcQK95q7w87JcDOBak7cEu+LW9JUuQVhdbwT6ex6I4xg1GgJLW 2f8KXkMk2L6DXyLSpUUn7yLaZwzErUm96FgQdeVmzPzIAzaik1ldC82ZjvPmzFXs sGEN7ne/+dIQaoOzS0KSZXHM4rP/XDUlNxvCFlLTBY3WOUnoXiSraQvPcEbeDoLd u3D5niA05TcYt3ZthZiRyn3mXjxvhKfSexg8Kym5OnGkDkIG+y1HTxOpa5gO0T59 y316d0GqIL8H/LIaHI8WA== X-ME-Sender: X-ME-Received: X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvhedrvdegtddguddtudcutefuodetggdotefrod ftvfcurfhrohhfihhlvgemucfhrghsthforghilhdpqfgfvfdpuffrtefokffrpgfnqfgh necuuegrihhlohhuthemuceftddtnecusecvtfgvtghiphhivghnthhsucdlqddutddtmd enucfjughrpefhvfevufffkffojghfggfgsedtkeertdertddtnecuhfhrohhmpeffvghm ihcuofgrrhhivgcuqfgsvghnohhurhcuoeguvghmihesihhnvhhishhisghlvghthhhinh hgshhlrggsrdgtohhmqeenucggtffrrghtthgvrhhnpeeugfffieehhfffleekheffleej ueetiefhiedujeegueffhfehuefgkefhieffieenucffohhmrghinhepgigvnhdrohhrgh dpgigvnhhprhhojhgvtghtrdhorhhgnecuvehluhhsthgvrhfuihiivgeptdenucfrrghr rghmpehmrghilhhfrhhomhepuggvmhhisehinhhvihhsihgslhgvthhhihhnghhslhgrsg drtghomh X-ME-Proxy: Feedback-ID: iac594737:Fastmail From: Demi Marie Obenour To: xen-devel@lists.xenproject.org Cc: Demi Marie Obenour , Andrew Cooper , George Dunlap , Jan Beulich , Julien Grall , Stefano Stabellini , Wei Liu , Konrad Rzeszutek Wilk , Ross Lagerwall , =?UTF-8?q?Marek=20Marczykowski-G=C3=B3recki?= Subject: [PATCH v6 1/5] Use HTTPS for all xenbits.xen.org Git repos Date: Tue, 21 Mar 2023 13:33:34 -0400 Message-Id: <69fdc220c4cf7cd571e60a9e5bc89150cfb52017.1679412247.git.demi@invisiblethingslab.com> X-Mailer: git-send-email 2.39.2 In-Reply-To: References: MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable X-ZM-MESSAGEID: 1679420104462100001 Content-Type: text/plain; charset="utf-8" Obtaining code over an insecure transport is a terrible idea for blatently obvious reasons. Even for non-executable data, insecure transports are considered deprecated. This patch enforces the use of secure transports for all xenbits.xen.org Git repositories. It was generated with the following shell script: git ls-files -z | xargs -0 -- sed -Ei -- 's@(git://xenbits\.xen\.org|http://xenbits\.xen\= .org/git-http)/@https://xenbits.xen.org/git-http/@g' All altered links have been tested and are known to work. Signed-off-by: Demi Marie Obenour --- Config.mk | 18 +++++------------- docs/misc/livepatch.pandoc | 2 +- docs/process/xen-release-management.pandoc | 2 +- scripts/get_maintainer.pl | 2 +- 4 files changed, 8 insertions(+), 16 deletions(-) diff --git a/Config.mk b/Config.mk index 10eb443b17d85381b2d1e2282f8965c3e99767e0..75f1975e5e78af44d36c2372cba= 6e89b425267a5 100644 --- a/Config.mk +++ b/Config.mk @@ -215,19 +215,11 @@ ifneq (,$(QEMU_TAG)) QEMU_TRADITIONAL_REVISION ?=3D $(QEMU_TAG) endif =20 -ifeq ($(GIT_HTTP),y) -OVMF_UPSTREAM_URL ?=3D http://xenbits.xen.org/git-http/ovmf.git -QEMU_UPSTREAM_URL ?=3D http://xenbits.xen.org/git-http/qemu-xen.git -QEMU_TRADITIONAL_URL ?=3D http://xenbits.xen.org/git-http/qemu-xen-traditi= onal.git -SEABIOS_UPSTREAM_URL ?=3D http://xenbits.xen.org/git-http/seabios.git -MINIOS_UPSTREAM_URL ?=3D http://xenbits.xen.org/git-http/mini-os.git -else -OVMF_UPSTREAM_URL ?=3D git://xenbits.xen.org/ovmf.git -QEMU_UPSTREAM_URL ?=3D git://xenbits.xen.org/qemu-xen.git -QEMU_TRADITIONAL_URL ?=3D git://xenbits.xen.org/qemu-xen-traditional.git -SEABIOS_UPSTREAM_URL ?=3D git://xenbits.xen.org/seabios.git -MINIOS_UPSTREAM_URL ?=3D git://xenbits.xen.org/mini-os.git -endif +OVMF_UPSTREAM_URL ?=3D https://xenbits.xen.org/git-http/ovmf.git +QEMU_UPSTREAM_URL ?=3D https://xenbits.xen.org/git-http/qemu-xen.git +QEMU_TRADITIONAL_URL ?=3D https://xenbits.xen.org/git-http/qemu-xen-tradit= ional.git +SEABIOS_UPSTREAM_URL ?=3D https://xenbits.xen.org/git-http/seabios.git +MINIOS_UPSTREAM_URL ?=3D https://xenbits.xen.org/git-http/mini-os.git OVMF_UPSTREAM_REVISION ?=3D 7b4a99be8a39c12d3a7fc4b8db9f0eab4ac688d5 QEMU_UPSTREAM_REVISION ?=3D master MINIOS_UPSTREAM_REVISION ?=3D 5bcb28aaeba1c2506a82fab0cdad0201cd9b54b3 diff --git a/docs/misc/livepatch.pandoc b/docs/misc/livepatch.pandoc index d38e4ce074b399946aecdaedb4cb6fe5b8043b66..a94fb57eb568e85a25c93bf6a98= 8f123d4e48443 100644 --- a/docs/misc/livepatch.pandoc +++ b/docs/misc/livepatch.pandoc @@ -993,7 +993,7 @@ The design of that is not discussed in this design. This is implemented in a seperate tool which lives in a seperate GIT repo. =20 -Currently it resides at git://xenbits.xen.org/livepatch-build-tools.git +Currently it resides at https://xenbits.xen.org/git-http/livepatch-build-t= ools.git =20 ### Exception tables and symbol tables growth =20 diff --git a/docs/process/xen-release-management.pandoc b/docs/process/xen-= release-management.pandoc index 8f80d61d2f1aa9e63da9b1e61b77a67c826efe6f..7826419dad563a3b70c3c97fc4c= 0fb5339bd58e9 100644 --- a/docs/process/xen-release-management.pandoc +++ b/docs/process/xen-release-management.pandoc @@ -271,7 +271,7 @@ Hi all, =20 Xen X.Y rcZ is tagged. You can check that out from xen.git: =20 -git://xenbits.xen.org/xen.git X.Y.0-rcZ +https://xenbits.xen.org/git-http/xen.git X.Y.0-rcZ =20 For your convenience there is also a tarball at: https://downloads.xenproject.org/release/xen/X.Y.0-rcZ/xen-X.Y.0-rcZ.tar.gz diff --git a/scripts/get_maintainer.pl b/scripts/get_maintainer.pl index 48e07370e8d462ced70a1de13ec8134b4eed65ba..cf629cdf3c44e4abe67214378c4= 9a3a9d858d9b5 100755 --- a/scripts/get_maintainer.pl +++ b/scripts/get_maintainer.pl @@ -1457,7 +1457,7 @@ sub vcs_exists { warn("$P: No supported VCS found. Add --nogit to options?\n"); warn("Using a git repository produces better results.\n"); warn("Try latest git repository using:\n"); - warn("git clone git://xenbits.xen.org/xen.git\n"); + warn("git clone https://xenbits.xen.org/git-http/xen.git\n"); $printed_novcs =3D 1; } return 0; --=20 Sincerely, Demi Marie Obenour (she/her/hers) Invisible Things Lab From nobody Thu May 2 10:05:43 2024 Delivered-To: importer@patchew.org Received-SPF: pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) client-ip=192.237.175.120; envelope-from=xen-devel-bounces@lists.xenproject.org; helo=lists.xenproject.org; Authentication-Results: mx.zohomail.com; spf=pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) smtp.mailfrom=xen-devel-bounces@lists.xenproject.org Return-Path: Received: from lists.xenproject.org (lists.xenproject.org [192.237.175.120]) by mx.zohomail.com with SMTPS id 1679420113960592.9285055523666; Tue, 21 Mar 2023 10:35:13 -0700 (PDT) Received: from list by lists.xenproject.org with outflank-mailman.512927.793350 (Exim 4.92) (envelope-from ) id 1pefsu-00043D-MB; Tue, 21 Mar 2023 17:34:56 +0000 Received: by outflank-mailman (output) from mailman id 512927.793350; Tue, 21 Mar 2023 17:34:56 +0000 Received: from localhost ([127.0.0.1] helo=lists.xenproject.org) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1pefsu-000434-JD; Tue, 21 Mar 2023 17:34:56 +0000 Received: by outflank-mailman (input) for mailman id 512927; Tue, 21 Mar 2023 17:34:55 +0000 Received: from se1-gles-sth1-in.inumbo.com ([159.253.27.254] helo=se1-gles-sth1.inumbo.com) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1pefst-0003LR-JO for xen-devel@lists.xenproject.org; Tue, 21 Mar 2023 17:34:55 +0000 Received: from wout5-smtp.messagingengine.com (wout5-smtp.messagingengine.com [64.147.123.21]) by se1-gles-sth1.inumbo.com (Halon) with ESMTPS id b0a2f051-c80e-11ed-87f5-c1b5be75604c; Tue, 21 Mar 2023 18:34:54 +0100 (CET) Received: from compute4.internal (compute4.nyi.internal [10.202.2.44]) by mailout.west.internal (Postfix) with ESMTP id 9EAEB320094B; Tue, 21 Mar 2023 13:34:52 -0400 (EDT) Received: from mailfrontend1 ([10.202.2.162]) by compute4.internal (MEProxy); Tue, 21 Mar 2023 13:34:53 -0400 Received: by mail.messagingengine.com (Postfix) with ESMTPA; Tue, 21 Mar 2023 13:34:51 -0400 (EDT) X-Outflank-Mailman: Message body and most headers restored to incoming version X-BeenThere: xen-devel@lists.xenproject.org List-Id: Xen developer discussion List-Unsubscribe: , List-Post: List-Help: List-Subscribe: , Errors-To: xen-devel-bounces@lists.xenproject.org Precedence: list Sender: "Xen-devel" X-Inumbo-ID: b0a2f051-c80e-11ed-87f5-c1b5be75604c DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= invisiblethingslab.com; h=cc:cc:content-transfer-encoding :content-type:date:date:from:from:in-reply-to:in-reply-to :message-id:mime-version:references:reply-to:sender:subject :subject:to:to; s=fm2; t=1679420092; x=1679506492; bh=gFurLUccyP 8dzt8i0ZAYhJyKpISa7TOferCBAzCBeLY=; b=YDpgObAU1jd5cGwmErURQP2faI kMe220jC2Mdr4P6eRecV9FAFu5nVVLIYawPZBusT+X3LRPjW1Uuu7zFKImoj+aj3 otl2C4X2wnUqnST94R4EnUbx70QsHn7MycUjICJpccTGo5ZpzneEI0aXm6C4SGlt cahpl2S7nrljTVvLLX3DHknMA7WnwC9fh2yWqYI1K1mseCqB6R8exsx+Pp4aNoi9 EB3J0Gm5fXhDrX6dyRoQyrX4AMwZJJsQlAa5VPSsvUbAd7DfmLVRdgnqYdLzKiNr UI2PBeOYPK6XtSDyd3ofFMxNRAGRSmiIaPDaiBZtr5+SHQprzYMfobu/Ryxw== DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:cc:content-transfer-encoding :content-type:date:date:feedback-id:feedback-id:from:from :in-reply-to:in-reply-to:message-id:mime-version:references :reply-to:sender:subject:subject:to:to:x-me-proxy:x-me-proxy :x-me-sender:x-me-sender:x-sasl-enc; s=fm2; t=1679420092; x= 1679506492; bh=gFurLUccyP8dzt8i0ZAYhJyKpISa7TOferCBAzCBeLY=; b=I QfpzgG8/X+ulreQWEitia1eVuk4qgXcM7R+roRseP3KDxYIRPjfNA1jbjLCTtBfd 3a7hY64U/wMTTxqpusKdpJrisY9dBdd6hACDAQzgQ/AaegqVIS+FldjzBfeuEuvW qmecKudqnk4iqGmh+KLtxtQvTNIsgLDp/KgC2NylnpFuAVtU/KMrb4dbAB7wN+UR OQ7Udd6V+SU/EDQx2q4ZZPBW/LaB4vOAw1gKlNGG14yO2vBW82VnBVfdm6gCjrkU kKwwJKRmOmOOZ+bHN2ewSu8fELC0mY4fDwJlkc8GmejPc6XixzyGmjI6XoZxzmIx OizgFjw79Pjt9w0TrkDKQ== X-ME-Sender: X-ME-Received: X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvhedrvdegtddguddtudcutefuodetggdotefrod ftvfcurfhrohhfihhlvgemucfhrghsthforghilhdpqfgfvfdpuffrtefokffrpgfnqfgh necuuegrihhlohhuthemuceftddtnecusecvtfgvtghiphhivghnthhsucdlqddutddtmd enucfjughrpefhvfevufffkffojghfggfgsedtkeertdertddtnecuhfhrohhmpeffvghm ihcuofgrrhhivgcuqfgsvghnohhurhcuoeguvghmihesihhnvhhishhisghlvghthhhinh hgshhlrggsrdgtohhmqeenucggtffrrghtthgvrhhnpeevieekgeehfeekjeeuhfeutddv ueejgeekiedtgfdtgeekudfgleffvedvgeetueenucffohhmrghinhepgigvnhdrohhrgh enucevlhhushhtvghrufhiiigvpedtnecurfgrrhgrmhepmhgrihhlfhhrohhmpeguvghm ihesihhnvhhishhisghlvghthhhinhhgshhlrggsrdgtohhm X-ME-Proxy: Feedback-ID: iac594737:Fastmail From: Demi Marie Obenour To: xen-devel@lists.xenproject.org Cc: Demi Marie Obenour , Andrew Cooper , George Dunlap , Jan Beulich , Julien Grall , Stefano Stabellini , Wei Liu , =?UTF-8?q?Marek=20Marczykowski-G=C3=B3recki?= Subject: [PATCH v6 2/5] Change remaining xenbits.xen.org link to HTTPS Date: Tue, 21 Mar 2023 13:33:36 -0400 Message-Id: X-Mailer: git-send-email 2.39.2 In-Reply-To: References: MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable X-ZM-MESSAGEID: 1679420114438100001 Content-Type: text/plain; charset="utf-8" Obtaining code over an insecure transport is a terrible idea for blatently obvious reasons. Even for non-executable data, insecure transports are considered deprecated. This patch enforces the use of secure transports for all xenbits.xen.org URLs. All altered links have been tested and are known to work. Signed-off-by: Demi Marie Obenour --- Config.mk | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/Config.mk b/Config.mk index 75f1975e5e78af44d36c2372cba6e89b425267a5..b2bef45b059976d5a6320eabada= 6073004eb22ee 100644 --- a/Config.mk +++ b/Config.mk @@ -191,7 +191,7 @@ APPEND_CFLAGS +=3D $(foreach i, $(APPEND_INCLUDES), -I$= (i)) EMBEDDED_EXTRA_CFLAGS :=3D -fno-pie -fno-stack-protector -fno-stack-protec= tor-all EMBEDDED_EXTRA_CFLAGS +=3D -fno-exceptions -fno-asynchronous-unwind-tables =20 -XEN_EXTFILES_URL ?=3D http://xenbits.xen.org/xen-extfiles +XEN_EXTFILES_URL ?=3D https://xenbits.xen.org/xen-extfiles # All the files at that location were downloaded from elsewhere on # the internet. The original download URL is preserved as a comment # near the place in the Xen Makefiles where the file is used. --=20 Sincerely, Demi Marie Obenour (she/her/hers) Invisible Things Lab From nobody Thu May 2 10:05:43 2024 Delivered-To: importer@patchew.org Received-SPF: pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) client-ip=192.237.175.120; envelope-from=xen-devel-bounces@lists.xenproject.org; helo=lists.xenproject.org; Authentication-Results: mx.zohomail.com; spf=pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) smtp.mailfrom=xen-devel-bounces@lists.xenproject.org Return-Path: Received: from lists.xenproject.org (lists.xenproject.org [192.237.175.120]) by mx.zohomail.com with SMTPS id 1679420132873756.6788669309435; Tue, 21 Mar 2023 10:35:32 -0700 (PDT) Received: from list by lists.xenproject.org with outflank-mailman.512929.793360 (Exim 4.92) (envelope-from ) id 1peft7-0004be-W4; Tue, 21 Mar 2023 17:35:09 +0000 Received: by outflank-mailman (output) from mailman id 512929.793360; Tue, 21 Mar 2023 17:35:09 +0000 Received: from localhost ([127.0.0.1] helo=lists.xenproject.org) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1peft7-0004bP-R3; Tue, 21 Mar 2023 17:35:09 +0000 Received: by outflank-mailman (input) for mailman id 512929; Tue, 21 Mar 2023 17:35:08 +0000 Received: from se1-gles-sth1-in.inumbo.com ([159.253.27.254] helo=se1-gles-sth1.inumbo.com) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1peft6-0003LR-B4 for xen-devel@lists.xenproject.org; Tue, 21 Mar 2023 17:35:08 +0000 Received: from wout5-smtp.messagingengine.com (wout5-smtp.messagingengine.com [64.147.123.21]) by se1-gles-sth1.inumbo.com (Halon) with ESMTPS id b83f8a5c-c80e-11ed-87f5-c1b5be75604c; Tue, 21 Mar 2023 18:35:07 +0100 (CET) Received: from compute5.internal (compute5.nyi.internal [10.202.2.45]) by mailout.west.internal (Postfix) with ESMTP id 9B8743200C42; Tue, 21 Mar 2023 13:35:05 -0400 (EDT) Received: from mailfrontend1 ([10.202.2.162]) by compute5.internal (MEProxy); Tue, 21 Mar 2023 13:35:06 -0400 Received: by mail.messagingengine.com (Postfix) with ESMTPA; Tue, 21 Mar 2023 13:35:04 -0400 (EDT) X-Outflank-Mailman: Message body and most headers restored to incoming version X-BeenThere: xen-devel@lists.xenproject.org List-Id: Xen developer discussion List-Unsubscribe: , List-Post: List-Help: List-Subscribe: , Errors-To: xen-devel-bounces@lists.xenproject.org Precedence: list Sender: "Xen-devel" X-Inumbo-ID: b83f8a5c-c80e-11ed-87f5-c1b5be75604c DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= invisiblethingslab.com; h=cc:cc:content-transfer-encoding :content-type:date:date:from:from:in-reply-to:in-reply-to :message-id:mime-version:references:reply-to:sender:subject :subject:to:to; s=fm2; t=1679420105; x=1679506505; bh=FZjY6VSlLE Va0awh+ywsTVIuCBsoJnJElTE5z586qAs=; b=iMKiVS3puAJJ+SH81sqEeG32sT 0wM43vtIRhKwGgKJLZyhqk253i8+FIGUFC1Lx19qbH8FwSp50E0TMrcqLeg5FPZS Tu8dlncxaLsplO7I0hJH+SaZrGYgvOODDC1/8Jb6tL0ml+PdAnIvnfJWlMz++VWp b7HCkEUUsuyXWVSe1cGgZ5S6l9c8SU7vjtVUP162jfom2E2DxSyR1AOpDdZdJpZN N2FNhxad3uAv3sWwdt0pU3k8jtlbzpKfqcfhAuR+gLN5JfvIuIY5eI9H21fnxrFT GFxxS5xxNx5Whkd7YLXaK8PPyFtnPTNzhFu/e5ICOXtqr/1b2oWqSgOowA1w== DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:cc:content-transfer-encoding :content-type:date:date:feedback-id:feedback-id:from:from :in-reply-to:in-reply-to:message-id:mime-version:references :reply-to:sender:subject:subject:to:to:x-me-proxy:x-me-proxy :x-me-sender:x-me-sender:x-sasl-enc; s=fm2; t=1679420105; x= 1679506505; bh=FZjY6VSlLEVa0awh+ywsTVIuCBsoJnJElTE5z586qAs=; b=j F6WaTOUdJ/zFGc4cmB8u+RBg1aIseHQBr6L71rWB1QyfYccfGixkZZDQOR0wGEEB eeMQUVzcXzw9I1ChkbZ+XpqUFYi4NWqjj6Cads9FLM9pMlFgqi6a9uoH6CSDAvLo nv/PAvPTPIaA58elEvON7cRi6Jool2ll5aCQkDK4T+dY6xPmqSsroC4ysDrWiyfU ZMlKvSPsr/PgiWKSQsdudotK+SisvbDYELs6T5UN0ZK6txG9GUkYhZ7d3XOUh3kf UKS2bX+6djorgITIuHgPIa+ctHiuiE82veEpv3H4RncpkVhEM/9ICXEwr1+zgK3W L3A3SsyltCo0gORarcrvg== X-ME-Sender: X-ME-Received: X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvhedrvdegtddguddtudcutefuodetggdotefrod ftvfcurfhrohhfihhlvgemucfhrghsthforghilhdpqfgfvfdpuffrtefokffrpgfnqfgh necuuegrihhlohhuthemuceftddtnecusecvtfgvtghiphhivghnthhsucdlqddutddtmd enucfjughrpefhvfevufffkffojghfggfgsedtkeertdertddtnecuhfhrohhmpeffvghm ihcuofgrrhhivgcuqfgsvghnohhurhcuoeguvghmihesihhnvhhishhisghlvghthhhinh hgshhlrggsrdgtohhmqeenucggtffrrghtthgvrhhnpeehheeggffhvdeiuddutdehhffh uefghfejtdegvdfhteehheegudeigeejkeefteenucffohhmrghinhepiihlihgsrdhnvg htpdhpohhlrghrshhslhdrohhrghdpsggvrhhlihhoshdruggvpdhkvghrnhgvlhdrohhr ghdprhgvughhrghtrdgtohhmpdhgnhhurdhorhhgpdhinhhrihgrrdhfrhdpghhmphhlih gsrdhorhhgnecuvehluhhsthgvrhfuihiivgeptdenucfrrghrrghmpehmrghilhhfrhho mhepuggvmhhisehinhhvihhsihgslhgvthhhihhnghhslhgrsgdrtghomh X-ME-Proxy: Feedback-ID: iac594737:Fastmail From: Demi Marie Obenour To: xen-devel@lists.xenproject.org Cc: Demi Marie Obenour , Samuel Thibault , Wei Liu , Anthony PERARD , =?UTF-8?q?Marek=20Marczykowski-G=C3=B3recki?= Subject: [PATCH v6 3/5] Build system: Do not try to use broken links Date: Tue, 21 Mar 2023 13:33:38 -0400 Message-Id: <8f6abc421d428b9897b529b7809a978f72a59c3e.1679412247.git.demi@invisiblethingslab.com> X-Mailer: git-send-email 2.39.2 In-Reply-To: References: MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable X-ZM-MESSAGEID: 1679420135387100001 Content-Type: text/plain; charset="utf-8" The upstream URLs for zlib, PolarSSL, and the TPM emulator do not work anymore, so do not attempt to use them. Signed-off-by: Demi Marie Obenour --- m4/stubdom.m4 | 5 +++-- stubdom/configure | 21 +++------------------ stubdom/configure.ac | 6 +++--- 3 files changed, 9 insertions(+), 23 deletions(-) diff --git a/m4/stubdom.m4 b/m4/stubdom.m4 index 6aa488b8e229dabbe107cfe115b5f2ac7e5ae824..26f10595d1c1250b1dc8a5be626= 142325e8d4673 100644 --- a/m4/stubdom.m4 +++ b/m4/stubdom.m4 @@ -78,10 +78,11 @@ done AC_DEFUN([AX_STUBDOM_LIB], [ AC_ARG_VAR([$1_URL], [Download url for $2]) AS_IF([test "x$$1_URL" =3D "x"], [ - AS_IF([test "x$extfiles" =3D "xy"], + m4_if([$#],[3],[$1_URL=3D\@S|@\@{:@XEN_EXTFILES_URL\@:}@], + [$#],[4],[AS_IF([test "x$extfiles" =3D "xy"], [$1_URL=3D\@S|@\@{:@XEN_EXTFILES_URL\@:}@], [$1_URL=3D"$4"]) - ]) +],[m4_fatal([AX_STUBDOM_LIB expects 3 or 4 arguments, not $#])])]) $1_VERSION=3D"$3" AC_SUBST($1_URL) AC_SUBST($1_VERSION) diff --git a/stubdom/configure b/stubdom/configure index b8bffceafdd46181e26a79b85405aefb8bc3ff7d..4ea95baa9192f3b319349ac2a14= a3055a21ce705 100755 --- a/stubdom/configure +++ b/stubdom/configure @@ -3532,12 +3532,7 @@ fi =20 if test "x$ZLIB_URL" =3D "x"; then : =20 - if test "x$extfiles" =3D "xy"; then : - ZLIB_URL=3D\$\(XEN_EXTFILES_URL\) -else - ZLIB_URL=3D"http://www.zlib.net" -fi - + ZLIB_URL=3D\$\(XEN_EXTFILES_URL\) fi ZLIB_VERSION=3D"1.2.3" =20 @@ -3633,12 +3628,7 @@ GMP_VERSION=3D"4.3.2" =20 if test "x$POLARSSL_URL" =3D "x"; then : =20 - if test "x$extfiles" =3D "xy"; then : - POLARSSL_URL=3D\$\(XEN_EXTFILES_URL\) -else - POLARSSL_URL=3D"http://polarssl.org/code/releases" -fi - + POLARSSL_URL=3D\$\(XEN_EXTFILES_URL\) fi POLARSSL_VERSION=3D"1.1.4" =20 @@ -3648,12 +3638,7 @@ POLARSSL_VERSION=3D"1.1.4" =20 if test "x$TPMEMU_URL" =3D "x"; then : =20 - if test "x$extfiles" =3D "xy"; then : - TPMEMU_URL=3D\$\(XEN_EXTFILES_URL\) -else - TPMEMU_URL=3D"http://download.berlios.de/tpm-emulator" -fi - + TPMEMU_URL=3D\$\(XEN_EXTFILES_URL\) fi TPMEMU_VERSION=3D"0.7.4" =20 diff --git a/stubdom/configure.ac b/stubdom/configure.ac index e20d99edac0da88098f4806333edde9f31dbc1a7..c648b1602c227ed5fe63b9fbdf3= fa52fd2e1654b 100644 --- a/stubdom/configure.ac +++ b/stubdom/configure.ac @@ -55,15 +55,15 @@ AC_PROG_INSTALL AX_DEPENDS_PATH_PROG([vtpm], [CMAKE], [cmake]) =20 # Stubdom libraries version and url setup -AX_STUBDOM_LIB([ZLIB], [zlib], [1.2.3], [http://www.zlib.net]) +AX_STUBDOM_LIB([ZLIB], [zlib], [1.2.3]) AX_STUBDOM_LIB([LIBPCI], [libpci], [2.2.9], [http://www.kernel.org/pub/sof= tware/utils/pciutils]) AX_STUBDOM_LIB([NEWLIB], [newlib], [1.16.0], [ftp://sources.redhat.com/pub= /newlib]) AX_STUBDOM_LIB([LWIP], [lwip], [1.3.0], [http://download.savannah.gnu.org/= releases/lwip]) AX_STUBDOM_LIB([GRUB], [grub], [0.97], [http://alpha.gnu.org/gnu/grub]) AX_STUBDOM_LIB_NOEXT([OCAML], [ocaml], [4.02.0], [http://caml.inria.fr/pub= /distrib/ocaml-4.02]) AX_STUBDOM_LIB([GMP], [libgmp], [4.3.2], [ftp://ftp.gmplib.org/pub/gmp-4.3= .2]) -AX_STUBDOM_LIB([POLARSSL], [polarssl], [1.1.4], [http://polarssl.org/code/= releases]) -AX_STUBDOM_LIB([TPMEMU], [berlios tpm emulator], [0.7.4], [http://download= .berlios.de/tpm-emulator]) +AX_STUBDOM_LIB([POLARSSL], [polarssl], [1.1.4]) +AX_STUBDOM_LIB([TPMEMU], [berlios tpm emulator], [0.7.4]) =20 #These stubdoms should be enabled if the dependent one is AX_STUBDOM_AUTO_DEPENDS([vtpmmgr], [vtpm]) --=20 Sincerely, Demi Marie Obenour (she/her/hers) Invisible Things Lab From nobody Thu May 2 10:05:43 2024 Delivered-To: importer@patchew.org Received-SPF: pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) client-ip=192.237.175.120; envelope-from=xen-devel-bounces@lists.xenproject.org; helo=lists.xenproject.org; Authentication-Results: mx.zohomail.com; spf=pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) smtp.mailfrom=xen-devel-bounces@lists.xenproject.org Return-Path: Received: from lists.xenproject.org (lists.xenproject.org [192.237.175.120]) by mx.zohomail.com with SMTPS id 1679420139969953.4771065836719; Tue, 21 Mar 2023 10:35:39 -0700 (PDT) Received: from list by lists.xenproject.org with outflank-mailman.512934.793370 (Exim 4.92) (envelope-from ) id 1peftI-00057q-BO; Tue, 21 Mar 2023 17:35:20 +0000 Received: by outflank-mailman (output) from mailman id 512934.793370; Tue, 21 Mar 2023 17:35:20 +0000 Received: from localhost ([127.0.0.1] helo=lists.xenproject.org) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1peftI-00057h-84; Tue, 21 Mar 2023 17:35:20 +0000 Received: by outflank-mailman (input) for mailman id 512934; Tue, 21 Mar 2023 17:35:18 +0000 Received: from se1-gles-flk1-in.inumbo.com ([94.247.172.50] helo=se1-gles-flk1.inumbo.com) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1peftG-0004aq-Dj for xen-devel@lists.xenproject.org; Tue, 21 Mar 2023 17:35:18 +0000 Received: from wout5-smtp.messagingengine.com (wout5-smtp.messagingengine.com [64.147.123.21]) by se1-gles-flk1.inumbo.com (Halon) with ESMTPS id bd3cfc90-c80e-11ed-b464-930f4c7d94ae; Tue, 21 Mar 2023 18:35:15 +0100 (CET) Received: from compute4.internal (compute4.nyi.internal [10.202.2.44]) by mailout.west.internal (Postfix) with ESMTP id A12033200C42; Tue, 21 Mar 2023 13:35:14 -0400 (EDT) Received: from mailfrontend1 ([10.202.2.162]) by compute4.internal (MEProxy); Tue, 21 Mar 2023 13:35:15 -0400 Received: by mail.messagingengine.com (Postfix) with ESMTPA; Tue, 21 Mar 2023 13:35:13 -0400 (EDT) X-Outflank-Mailman: Message body and most headers restored to incoming version X-BeenThere: xen-devel@lists.xenproject.org List-Id: Xen developer discussion List-Unsubscribe: , List-Post: List-Help: List-Subscribe: , Errors-To: xen-devel-bounces@lists.xenproject.org Precedence: list Sender: "Xen-devel" X-Inumbo-ID: bd3cfc90-c80e-11ed-b464-930f4c7d94ae DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= invisiblethingslab.com; h=cc:cc:content-transfer-encoding :content-type:date:date:from:from:in-reply-to:in-reply-to :message-id:mime-version:references:reply-to:sender:subject :subject:to:to; s=fm2; t=1679420114; x=1679506514; bh=eE9rMkFJ8S K3XCHPmE4xntol477kdYevv8FtOH7Fe3I=; b=exeBpAaykN0QHnsIUhQ1G2VxT3 0gY8FiyNql1wHGB4OZ2DHn7fmDZY8MafhCL4/n65DT0lumXc6RrqFrdR0QN1reiJ Y49fSXLmswTitcpxXkwX4ggsYy9EJipk+GX1RLS2TPTurNcEmj3iv++oZtV18v2R zuk+znLKuYKpuebZcpOqaRBezL2Q/p/T5I/aKXABHYfNHnNJuHZg4qA4pn8JotWP jJYLx5Oosh69IjPTFlwF6HlKNmJG0/ubkBA4sF64lOdb9Zkkh7MW20DuR3eLR3vF gYumoOT6X2afF+vsJ6m8evIovFUogqrPuOvRlodnuwO16anV2m5lsABR+LCQ== DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:cc:content-transfer-encoding :content-type:date:date:feedback-id:feedback-id:from:from :in-reply-to:in-reply-to:message-id:mime-version:references :reply-to:sender:subject:subject:to:to:x-me-proxy:x-me-proxy :x-me-sender:x-me-sender:x-sasl-enc; s=fm2; t=1679420114; x= 1679506514; bh=eE9rMkFJ8SK3XCHPmE4xntol477kdYevv8FtOH7Fe3I=; b=H 1BdlVBRBZhHT8HoH2kX92qePwInQjPg4Ja5U2RJiTjrFLsllt5L3DB3JoIaOYamv 6U937PxsPj6WEwdzEi0WZyDywjrJ5qRt5rU1cy47JtDU9G0e7ZvSH/nAEZWLT6ij 1Zj9aBH7ME5lpJGA5DqxbPwechHLk2tCWJYrH6jk+7T/CGvWefg6OxLXuFU96ZIO TwJMkBwmehjFzMmG7/usj56OmRfiaRwsE7IhqA9ClYBj2L0jJ7cIRDEz6OTvuRjP h5tvt8SmXUWiMIYcImylYDjP4hcIPBu2Xo1UcOfcEq6kJJV/159IdaW2pbWKWjij kyynll2mguBHWnEXHoohQ== X-ME-Sender: X-ME-Received: X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvhedrvdegtddguddtudcutefuodetggdotefrod ftvfcurfhrohhfihhlvgemucfhrghsthforghilhdpqfgfvfdpuffrtefokffrpgfnqfgh necuuegrihhlohhuthemuceftddtnecusecvtfgvtghiphhivghnthhsucdlqddutddtmd enucfjughrpefhvfevufffkffojghfggfgsedtkeertdertddtnecuhfhrohhmpeffvghm ihcuofgrrhhivgcuqfgsvghnohhurhcuoeguvghmihesihhnvhhishhisghlvghthhhinh hgshhlrggsrdgtohhmqeenucggtffrrghtthgvrhhnpeeutdeuueettdefgfektdeufeet ueffvdeutddukeekvdfhgfffhfehfeeguedtjeenucffohhmrghinhepkhgvrhhnvghlrd horhhgpdhrvgguhhgrthdrtghomhdpshhouhhrtggvfigrrhgvrdhorhhgpdhgnhhurdho rhhgpdhinhhrihgrrdhfrhdpghhmphhlihgsrdhorhhgpdhiphigvgdrohhrghdpghhith hhuhgsrdgtohhmnecuvehluhhsthgvrhfuihiivgeptdenucfrrghrrghmpehmrghilhhf rhhomhepuggvmhhisehinhhvihhsihgslhgvthhhihhnghhslhgrsgdrtghomh X-ME-Proxy: Feedback-ID: iac594737:Fastmail From: Demi Marie Obenour To: xen-devel@lists.xenproject.org Cc: Demi Marie Obenour , Samuel Thibault , Wei Liu , Anthony PERARD , =?UTF-8?q?Marek=20Marczykowski-G=C3=B3recki?= Subject: [PATCH v6 4/5] Build system: Replace git:// and http:// with https:// Date: Tue, 21 Mar 2023 13:33:40 -0400 Message-Id: X-Mailer: git-send-email 2.39.2 In-Reply-To: References: MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable X-ZM-MESSAGEID: 1679420140662100001 Content-Type: text/plain; charset="utf-8" Obtaining code over an insecure transport is a terrible idea for blatently obvious reasons. Even for non-executable data, insecure transports are considered deprecated. This patch enforces the use of secure transports in the build system. Some URLs returned 301 or 302 redirects, so I replaced them with the URLs that were redirected to. Signed-off-by: Demi Marie Obenour --- stubdom/configure | 12 ++++++------ stubdom/configure.ac | 12 ++++++------ tools/firmware/etherboot/Makefile | 6 +----- 3 files changed, 13 insertions(+), 17 deletions(-) diff --git a/stubdom/configure b/stubdom/configure index 4ea95baa9192f3b319349ac2a14a3055a21ce705..540e9cd331888449b0e24c1aa97= 4bc22c5bcab54 100755 --- a/stubdom/configure +++ b/stubdom/configure @@ -3545,7 +3545,7 @@ if test "x$LIBPCI_URL" =3D "x"; then : if test "x$extfiles" =3D "xy"; then : LIBPCI_URL=3D\$\(XEN_EXTFILES_URL\) else - LIBPCI_URL=3D"http://www.kernel.org/pub/software/utils/pciutils" + LIBPCI_URL=3D"https://mirrors.edge.kernel.org/pub/software/utils/pciutil= s" fi =20 fi @@ -3560,7 +3560,7 @@ if test "x$NEWLIB_URL" =3D "x"; then : if test "x$extfiles" =3D "xy"; then : NEWLIB_URL=3D\$\(XEN_EXTFILES_URL\) else - NEWLIB_URL=3D"ftp://sources.redhat.com/pub/newlib" + NEWLIB_URL=3D"https://sourceware.org/ftp/newlib" fi =20 fi @@ -3575,7 +3575,7 @@ if test "x$LWIP_URL" =3D "x"; then : if test "x$extfiles" =3D "xy"; then : LWIP_URL=3D\$\(XEN_EXTFILES_URL\) else - LWIP_URL=3D"http://download.savannah.gnu.org/releases/lwip" + LWIP_URL=3D"https://download.savannah.gnu.org/releases/lwip" fi =20 fi @@ -3590,7 +3590,7 @@ if test "x$GRUB_URL" =3D "x"; then : if test "x$extfiles" =3D "xy"; then : GRUB_URL=3D\$\(XEN_EXTFILES_URL\) else - GRUB_URL=3D"http://alpha.gnu.org/gnu/grub" + GRUB_URL=3D"https://alpha.gnu.org/gnu/grub" fi =20 fi @@ -3602,7 +3602,7 @@ GRUB_VERSION=3D"0.97" =20 if test "x$OCAML_URL" =3D "x"; then : =20 - OCAML_URL=3D"http://caml.inria.fr/pub/distrib/ocaml-4.02" + OCAML_URL=3D"https://caml.inria.fr/pub/distrib/ocaml-4.02" =20 fi OCAML_VERSION=3D"4.02.0" @@ -3616,7 +3616,7 @@ if test "x$GMP_URL" =3D "x"; then : if test "x$extfiles" =3D "xy"; then : GMP_URL=3D\$\(XEN_EXTFILES_URL\) else - GMP_URL=3D"ftp://ftp.gmplib.org/pub/gmp-4.3.2" + GMP_URL=3D"https://gmplib.org/download/gmp/archive" fi =20 fi diff --git a/stubdom/configure.ac b/stubdom/configure.ac index c648b1602c227ed5fe63b9fbdf3fa52fd2e1654b..471e371e14a82aedc10314c95bc= af39ce9f89f90 100644 --- a/stubdom/configure.ac +++ b/stubdom/configure.ac @@ -56,12 +56,12 @@ AX_DEPENDS_PATH_PROG([vtpm], [CMAKE], [cmake]) =20 # Stubdom libraries version and url setup AX_STUBDOM_LIB([ZLIB], [zlib], [1.2.3]) -AX_STUBDOM_LIB([LIBPCI], [libpci], [2.2.9], [http://www.kernel.org/pub/sof= tware/utils/pciutils]) -AX_STUBDOM_LIB([NEWLIB], [newlib], [1.16.0], [ftp://sources.redhat.com/pub= /newlib]) -AX_STUBDOM_LIB([LWIP], [lwip], [1.3.0], [http://download.savannah.gnu.org/= releases/lwip]) -AX_STUBDOM_LIB([GRUB], [grub], [0.97], [http://alpha.gnu.org/gnu/grub]) -AX_STUBDOM_LIB_NOEXT([OCAML], [ocaml], [4.02.0], [http://caml.inria.fr/pub= /distrib/ocaml-4.02]) -AX_STUBDOM_LIB([GMP], [libgmp], [4.3.2], [ftp://ftp.gmplib.org/pub/gmp-4.3= .2]) +AX_STUBDOM_LIB([LIBPCI], [libpci], [2.2.9], [https://mirrors.edge.kernel.o= rg/pub/software/utils/pciutils]) +AX_STUBDOM_LIB([NEWLIB], [newlib], [1.16.0], [https://sourceware.org/ftp/n= ewlib]) +AX_STUBDOM_LIB([LWIP], [lwip], [1.3.0], [https://download.savannah.gnu.org= /releases/lwip]) +AX_STUBDOM_LIB([GRUB], [grub], [0.97], [https://alpha.gnu.org/gnu/grub]) +AX_STUBDOM_LIB_NOEXT([OCAML], [ocaml], [4.02.0], [https://caml.inria.fr/pu= b/distrib/ocaml-4.02]) +AX_STUBDOM_LIB([GMP], [libgmp], [4.3.2], [https://gmplib.org/download/gmp/= archive]) AX_STUBDOM_LIB([POLARSSL], [polarssl], [1.1.4]) AX_STUBDOM_LIB([TPMEMU], [berlios tpm emulator], [0.7.4]) =20 diff --git a/tools/firmware/etherboot/Makefile b/tools/firmware/etherboot/M= akefile index 4bc3633ba3d67ff9f52a9cb7923afea73c861da9..6ab9e5bc6b4cc750f2e802128fb= c71e9150397b1 100644 --- a/tools/firmware/etherboot/Makefile +++ b/tools/firmware/etherboot/Makefile @@ -4,11 +4,7 @@ XEN_ROOT =3D $(CURDIR)/../../.. include $(XEN_ROOT)/tools/Rules.mk include Config =20 -ifeq ($(GIT_HTTP),y) -IPXE_GIT_URL ?=3D http://git.ipxe.org/ipxe.git -else -IPXE_GIT_URL ?=3D git://git.ipxe.org/ipxe.git -endif +IPXE_GIT_URL ?=3D https://github.com/ipxe/ipxe.git =20 # put an updated tar.gz on xenbits after changes to this variable IPXE_GIT_TAG :=3D 3c040ad387099483102708bb1839110bc788cefb --=20 Sincerely, Demi Marie Obenour (she/her/hers) Invisible Things Lab From nobody Thu May 2 10:05:43 2024 Delivered-To: importer@patchew.org Received-SPF: pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) client-ip=192.237.175.120; envelope-from=xen-devel-bounces@lists.xenproject.org; helo=lists.xenproject.org; Authentication-Results: mx.zohomail.com; spf=pass (zohomail.com: domain of lists.xenproject.org designates 192.237.175.120 as permitted sender) smtp.mailfrom=xen-devel-bounces@lists.xenproject.org Return-Path: Received: from lists.xenproject.org (lists.xenproject.org [192.237.175.120]) by mx.zohomail.com with SMTPS id 1679420153437338.02448030762264; Tue, 21 Mar 2023 10:35:53 -0700 (PDT) Received: from list by lists.xenproject.org with outflank-mailman.512937.793380 (Exim 4.92) (envelope-from ) id 1peftS-0005cZ-Jb; Tue, 21 Mar 2023 17:35:30 +0000 Received: by outflank-mailman (output) from mailman id 512937.793380; Tue, 21 Mar 2023 17:35:30 +0000 Received: from localhost ([127.0.0.1] helo=lists.xenproject.org) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1peftS-0005cS-GZ; Tue, 21 Mar 2023 17:35:30 +0000 Received: by outflank-mailman (input) for mailman id 512937; Tue, 21 Mar 2023 17:35:28 +0000 Received: from se1-gles-sth1-in.inumbo.com ([159.253.27.254] helo=se1-gles-sth1.inumbo.com) by lists.xenproject.org with esmtp (Exim 4.92) (envelope-from ) id 1peftQ-0003LR-PW for xen-devel@lists.xenproject.org; Tue, 21 Mar 2023 17:35:28 +0000 Received: from wout5-smtp.messagingengine.com (wout5-smtp.messagingengine.com [64.147.123.21]) by se1-gles-sth1.inumbo.com (Halon) with ESMTPS id c43538fb-c80e-11ed-87f5-c1b5be75604c; Tue, 21 Mar 2023 18:35:27 +0100 (CET) Received: from compute2.internal (compute2.nyi.internal [10.202.2.46]) by mailout.west.internal (Postfix) with ESMTP id 66A793200900; Tue, 21 Mar 2023 13:35:25 -0400 (EDT) Received: from mailfrontend1 ([10.202.2.162]) by compute2.internal (MEProxy); Tue, 21 Mar 2023 13:35:26 -0400 Received: by mail.messagingengine.com (Postfix) with ESMTPA; Tue, 21 Mar 2023 13:35:24 -0400 (EDT) X-Outflank-Mailman: Message body and most headers restored to incoming version X-BeenThere: xen-devel@lists.xenproject.org List-Id: Xen developer discussion List-Unsubscribe: , List-Post: List-Help: List-Subscribe: , Errors-To: xen-devel-bounces@lists.xenproject.org Precedence: list Sender: "Xen-devel" X-Inumbo-ID: c43538fb-c80e-11ed-87f5-c1b5be75604c DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= invisiblethingslab.com; h=cc:cc:content-transfer-encoding :content-type:date:date:from:from:in-reply-to:in-reply-to :message-id:mime-version:references:reply-to:sender:subject :subject:to:to; s=fm2; t=1679420125; x=1679506525; bh=EdSxOH/DvP fgJJdpKCG9kK9DWDf/bTe5jrk5GM6DX40=; b=oAMTJFqdjAJVe440lHv33Iv1gw 15vWHAcnEn2LkrakwJ2/W/xjrDBPufbAQyl57SAjQUGj2VEpaZiKkxHa5UK9+McI hVi3/yWsgNDZN95otrEBEFFhwJo22qzQFd19wQr4PU+wzHsDAa5bP4nDURfOQDNu 5958WAGKw5GNHYCdnL6mmmT8X3ehuvsagqBtBTV6LzSrVlKJ+LrL0D7rvP4KBwpK 1sUukX/3wuuFqZtkVHi9bBEIChyFDFYBfD4oGkT/3DzNbDQKO4Y0QoJndzdhn2GM q8HfPKfWU4c8M6g1NXKNAQE40EAT2yqNpXUWk26sX3LqraJvE+4cXoCAg2+g== DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:cc:content-transfer-encoding :content-type:date:date:feedback-id:feedback-id:from:from :in-reply-to:in-reply-to:message-id:mime-version:references :reply-to:sender:subject:subject:to:to:x-me-proxy:x-me-proxy :x-me-sender:x-me-sender:x-sasl-enc; s=fm2; t=1679420125; x= 1679506525; bh=EdSxOH/DvPfgJJdpKCG9kK9DWDf/bTe5jrk5GM6DX40=; b=d NIpYlJ4csbB3JuUFQAJGZMX7wbxlZYZnK0PMqmPFZg7Lex6DbCAwgoAZUyE/lV8d OXmkELgFS8m2tLQlldlv7mDiT+UucG1U6HE8CS3DDbIBEtCQu3UvaoBlZhl5gsMm FV5E0pbzilRJ+EMFJPlglKo5blEliY625uMGIDG5OdtcuYq/zYEU6DcAFigsYkjG iQzIUfKSBDTYawtgwjpjD9oTpeuPUzlVXY5+g1TBtuTSqywNFcvswcwKKTvQkkEP e5oA3qcwqwJseN9mA2mr78CiaaHJv66B5oCkuJ+QQ86f1+TX41kMA0CL0+8W5ndv ApIndtAIUwmswVSOEAPRQ== X-ME-Sender: X-ME-Received: X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvhedrvdegtddguddttdcutefuodetggdotefrod ftvfcurfhrohhfihhlvgemucfhrghsthforghilhdpqfgfvfdpuffrtefokffrpgfnqfgh necuuegrihhlohhuthemuceftddtnecusecvtfgvtghiphhivghnthhsucdlqddutddtmd enucfjughrpefhvfevufffkffojghfggfgsedtkeertdertddtnecuhfhrohhmpeffvghm ihcuofgrrhhivgcuqfgsvghnohhurhcuoeguvghmihesihhnvhhishhisghlvghthhhinh hgshhlrggsrdgtohhmqeenucggtffrrghtthgvrhhnpedvueejvefgffevgfdvvdegtedv veeiffeileffleevteeifeeviedufeejudduvdenucffohhmrghinhepphihthhhohhnrd horhhgpdhinhhtvghlrdgtohhmpdhllhhvmhdrohhrghenucevlhhushhtvghrufhiiigv pedtnecurfgrrhgrmhepmhgrihhlfhhrohhmpeguvghmihesihhnvhhishhisghlvghthh hinhhgshhlrggsrdgtohhm X-ME-Proxy: Feedback-ID: iac594737:Fastmail From: Demi Marie Obenour To: xen-devel@lists.xenproject.org Cc: Demi Marie Obenour , Andrew Cooper , George Dunlap , Jan Beulich , Julien Grall , Stefano Stabellini , Wei Liu , Doug Goldstein , =?UTF-8?q?Marek=20Marczykowski-G=C3=B3recki?= Subject: [PATCH v6 5/5] Automation and CI: Replace git:// and http:// with https:// Date: Tue, 21 Mar 2023 13:33:42 -0400 Message-Id: X-Mailer: git-send-email 2.39.2 In-Reply-To: References: MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable X-ZM-MESSAGEID: 1679420154659100001 Content-Type: text/plain; charset="utf-8" Obtaining code over an insecure transport is a terrible idea for blatently obvious reasons. Even for non-executable data, insecure transports are considered deprecated. This patch enforces the use of secure transports in automation and CI. All URLs are known to work. Signed-off-by: Demi Marie Obenour --- README | 4 ++-- automation/build/debian/stretch-llvm-8.list | 4 ++-- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/README b/README index 755b3d8eaf8f7a58a945b7594e68a3fe455a7bdf..f8cc426f78d690f37e013242e81= d4e440556c330 100644 --- a/README +++ b/README @@ -181,7 +181,7 @@ Python Runtime Libraries Various tools, such as pygrub, have the following runtime dependencies: =20 * Python 2.6 or later. - URL: http://www.python.org/ + URL: https://www.python.org/ Debian: python =20 Note that the build system expects `python` to be available. If your system @@ -197,7 +197,7 @@ Intel(R) Trusted Execution Technology Support Intel's technology for safer computing, Intel(R) Trusted Execution Technol= ogy (Intel(R) TXT), defines platform-level enhancements that provide the build= ing blocks for creating trusted platforms. For more information, see -http://www.intel.com/technology/security/. +https://www.intel.com/technology/security/. =20 Intel(R) TXT support is provided by the Trusted Boot (tboot) module in conjunction with minimal logic in the Xen hypervisor. diff --git a/automation/build/debian/stretch-llvm-8.list b/automation/build= /debian/stretch-llvm-8.list index 09fe843fb2a31ae38f752d7c8c71cf97f5b14513..590001ca81e826ab624ba918542= 3adf4b0c51a21 100644 --- a/automation/build/debian/stretch-llvm-8.list +++ b/automation/build/debian/stretch-llvm-8.list @@ -1,3 +1,3 @@ # Strech LLVM 8 repos -deb http://apt.llvm.org/stretch/ llvm-toolchain-stretch-8 main -deb-src http://apt.llvm.org/stretch/ llvm-toolchain-stretch-8 main +deb https://apt.llvm.org/stretch/ llvm-toolchain-stretch-8 main +deb-src https://apt.llvm.org/stretch/ llvm-toolchain-stretch-8 main --=20 Sincerely, Demi Marie Obenour (she/her/hers) Invisible Things Lab