[GitHub] [directory-ldap-api] coheigea commented on pull request #26: Bump mockito-core from 2.28.1 to 4.11.0

2023-04-03 Thread via GitHub


coheigea commented on PR #26:
URL: 
https://github.com/apache/directory-ldap-api/pull/26#issuecomment-1495364942

   @dependabot recreate


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-ldap-api] coheigea commented on pull request #26: Bump mockito-core from 2.28.1 to 4.11.0

2023-04-03 Thread via GitHub


coheigea commented on PR #26:
URL: 
https://github.com/apache/directory-ldap-api/pull/26#issuecomment-1495341785

   @dependabot rebase


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-ldap-api] coheigea merged pull request #27: Updating Mockito to 4.11.0

2023-04-03 Thread via GitHub


coheigea merged PR #27:
URL: https://github.com/apache/directory-ldap-api/pull/27


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-ldap-api] dependabot[bot] opened a new pull request, #26: Bump mockito-core from 2.28.1 to 4.11.0

2023-04-03 Thread via GitHub


dependabot[bot] opened a new pull request, #26:
URL: https://github.com/apache/directory-ldap-api/pull/26

   Bumps [mockito-core](https://github.com/mockito/mockito) from 2.28.1 to 
4.11.0.
   
   Release notes
   Sourced from https://github.com/mockito/mockito/releases;>mockito-core's 
releases.
   
   v4.11.0
   Changelog generated 
by https://github.com/shipkit/shipkit-changelog;>Shipkit Changelog 
Gradle Plugin
   4.11.0
   
   2022-12-28 - https://github.com/mockito/mockito/compare/v4.10.0...v4.11.0;>1 
commit(s) by Andy Coates
   Improve vararg handling: approach 2 [(https://redirect.github.com/mockito/mockito/issues/2807;>#2807)](https://redirect.github.com/mockito/mockito/pull/2807;>mockito/mockito#2807)
   Mocking varargs method with any(String[].class) doesn't 
work as expected [(https://redirect.github.com/mockito/mockito/issues/2796;>#2796)](https://redirect.github.com/mockito/mockito/issues/2796;>mockito/mockito#2796)
   (Argument)Matchers regression from 1.10.19 to 2.18.3 for varargs [(https://redirect.github.com/mockito/mockito/issues/1498;>#1498)](https://redirect.github.com/mockito/mockito/issues/1498;>mockito/mockito#1498)
   Cannot verify varargs parameter as an array [(https://redirect.github.com/mockito/mockito/issues/1222;>#1222)](https://redirect.github.com/mockito/mockito/issues/1222;>mockito/mockito#1222)
   ArgumentCaptor can't capture varargs-arrays [(https://redirect.github.com/mockito/mockito/issues/584;>#584)](https://redirect.github.com/mockito/mockito/issues/584;>mockito/mockito#584)
   Verification of an empty varargs call fails when isNotNull() is used 
[(https://redirect.github.com/mockito/mockito/issues/567;>#567)](https://redirect.github.com/mockito/mockito/issues/567;>mockito/mockito#567)
   
   v4.10.0
   Changelog generated 
by https://github.com/shipkit/shipkit-changelog;>Shipkit Changelog 
Gradle Plugin
   4.10.0
   
   2022-12-14 - https://github.com/mockito/mockito/compare/v4.9.0...v4.10.0;>13 
commit(s) by Andrei Solntsev, Andriy Redko, Andy Coates, Christopher 
Lambert, Marcono1234, Vladimir Glinskikh, dependabot[bot]
   Add new artifact mockito-subclass (to use mock-maker-subclass MockMaker) 
[(https://redirect.github.com/mockito/mockito/issues/2821;>#2821)](https://redirect.github.com/mockito/mockito/pull/2821;>mockito/mockito#2821)
   Bump gradle from 7.5.1 to 7.6 [(https://redirect.github.com/mockito/mockito/issues/2817;>#2817)](https://redirect.github.com/mockito/mockito/pull/2817;>mockito/mockito#2817)
   Fix incorrect Javadoc inline tag for MockitoJUnitRunner [(https://redirect.github.com/mockito/mockito/issues/2816;>#2816)](https://redirect.github.com/mockito/mockito/pull/2816;>mockito/mockito#2816)
   Bump shipkit-auto-version from 1.2.1 to 1.2.2 [(https://redirect.github.com/mockito/mockito/issues/2811;>#2811)](https://redirect.github.com/mockito/mockito/pull/2811;>mockito/mockito#2811)
   Bump com.github.ben-manes.versions from 0.42.0 to 0.44.0 [(https://redirect.github.com/mockito/mockito/issues/2810;>#2810)](https://redirect.github.com/mockito/mockito/pull/2810;>mockito/mockito#2810)
   Bump kotlinVersion from 1.7.21 to 1.7.22 [(https://redirect.github.com/mockito/mockito/issues/2809;>#2809)](https://redirect.github.com/mockito/mockito/pull/2809;>mockito/mockito#2809)
   Bump junit from 1.1.3 to 1.1.4 [(https://redirect.github.com/mockito/mockito/issues/2806;>#2806)](https://redirect.github.com/mockito/mockito/pull/2806;>mockito/mockito#2806)
   Simplify MatcherApplicationStrategy [(https://redirect.github.com/mockito/mockito/issues/2803;>#2803)](https://redirect.github.com/mockito/mockito/pull/2803;>mockito/mockito#2803)
   Bump kotlinVersion from 1.7.10 to 1.7.21 [(https://redirect.github.com/mockito/mockito/issues/2801;>#2801)](https://redirect.github.com/mockito/mockito/pull/2801;>mockito/mockito#2801)
   Bump espresso-core from 3.4.0 to 3.5.0 [(https://redirect.github.com/mockito/mockito/issues/2800;>#2800)](https://redirect.github.com/mockito/mockito/pull/2800;>mockito/mockito#2800)
   Bump versions.bytebuddy from 1.12.16 to 1.12.19 [(https://redirect.github.com/mockito/mockito/issues/2799;>#2799)](https://redirect.github.com/mockito/mockito/pull/2799;>mockito/mockito#2799)
   Upgrade errorprone from 2.14.0 to 2.16 [(https://redirect.github.com/mockito/mockito/issues/2794;>#2794)](https://redirect.github.com/mockito/mockito/pull/2794;>mockito/mockito#2794)
   automatically detect class to mock [(https://redirect.github.com/mockito/mockito/issues/2779;>#2779)](https://redirect.github.com/mockito/mockito/pull/2779;>mockito/mockito#2779)
   
   v4.9.0
   Changelog generated 
by https://github.com/shipkit/shipkit-changelog;>Shipkit Changelog 
Gradle Plugin
   4.9.0
   
   2022-11-14 - https://github.com/mockito/mockito/compare/v4.8.1...v4.9.0;>6 
commit(s) by Andrei Solntsev, Rafael Winterhalter, Rick Ossendrijver, 
dependabot[bot]
   Upgrade objenesis 3.2 - 3.3 

Re: Status of directory server 2.0.0.AM27 release?

2023-04-03 Thread Colm O hEigeartaigh
Hi Emmanuel,

> There are a lot of things to do if we want to cut a *perfect* release,
> but I think we can cut another milestone release.

+1.

> In any case, I'm willing to cut a LDAP API 2.1.3 release in April,
> followed by a Server milstone (I have checked that it builds, and it's ok).

Sounds good. On my part, I re-enabled dependabot on ldap-api with
automatic build of pull requests using GitHub Actions. It makes it
very easy to merge updates, if the checks are all green on the PR then
the build is OK and it can be merged.

Colm.

>
> I haven't tested it with all the Java version, but I can assure that
> LDAP API is working with Java 8, 11 and 17:
>
> https://builds.apache.org/blue/organizations/jenkins/Directory%2Fdir-ldap-api-pipeline/detail/dir-ldap-api-pipeline/244/pipeline
>
> Redarding the server, we have it working in Java 17, and have some
> failures in Java 8 and 11, to be investigated:
>
> https://builds.apache.org/blue/organizations/jenkins/Directory%2Fdir-server-pipeline/detail/dir-server-pipeline/270/pipeline
>
> >
> > Colm.
> >
> > -
> > To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
> > For additional commands, e-mail: dev-h...@directory.apache.org
> >
>
> --
> *Emmanuel Lécharny - CTO* 205 Promenade des Anglais – 06200 NICE
> T. +33 (0)4 89 97 36 50
> P. +33 (0)6 08 33 32 61
> emmanuel.lecha...@busit.com https://www.busit.com/
>
> -
> To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
> For additional commands, e-mail: dev-h...@directory.apache.org
>

-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-ldap-api] dependabot[bot] commented on pull request #22: Bump mockito-core from 2.28.1 to 5.2.0

2023-04-03 Thread via GitHub


dependabot[bot] commented on PR #22:
URL: 
https://github.com/apache/directory-ldap-api/pull/22#issuecomment-1495293822

   OK, I won't notify you about version 5.x.x again, unless you re-open this 
PR. 


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-ldap-api] dependabot[bot] closed pull request #22: Bump mockito-core from 2.28.1 to 5.2.0

2023-04-03 Thread via GitHub


dependabot[bot] closed pull request #22: Bump mockito-core from 2.28.1 to 5.2.0
URL: https://github.com/apache/directory-ldap-api/pull/22


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-ldap-api] coheigea commented on pull request #22: Bump mockito-core from 2.28.1 to 5.2.0

2023-04-03 Thread via GitHub


coheigea commented on PR #22:
URL: 
https://github.com/apache/directory-ldap-api/pull/22#issuecomment-1495293792

   @dependabot ignore this major version


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-ldap-api] dependabot[bot] commented on pull request #23: Bump caffeine from 2.9.3 to 3.1.5

2023-04-03 Thread via GitHub


dependabot[bot] commented on PR #23:
URL: 
https://github.com/apache/directory-ldap-api/pull/23#issuecomment-1495293654

   OK, I won't notify you about version 3.x.x again, unless you re-open this 
PR. 


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-ldap-api] dependabot[bot] closed pull request #23: Bump caffeine from 2.9.3 to 3.1.5

2023-04-03 Thread via GitHub


dependabot[bot] closed pull request #23: Bump caffeine from 2.9.3 to 3.1.5
URL: https://github.com/apache/directory-ldap-api/pull/23


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-ldap-api] coheigea commented on pull request #23: Bump caffeine from 2.9.3 to 3.1.5

2023-04-03 Thread via GitHub


coheigea commented on PR #23:
URL: 
https://github.com/apache/directory-ldap-api/pull/23#issuecomment-1495293624

   @dependabot ignore this major version


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-ldap-api] dependabot[bot] commented on pull request #25: Bump slf4j-api from 1.7.36 to 2.0.7

2023-04-03 Thread via GitHub


dependabot[bot] commented on PR #25:
URL: 
https://github.com/apache/directory-ldap-api/pull/25#issuecomment-1495293317

   OK, I won't notify you again about this release, but will get in touch when 
a new version is available. If you'd rather skip all updates until the next 
major or minor version, let me know by commenting `@dependabot ignore this 
major version` or `@dependabot ignore this minor version`. You can also ignore 
all major, minor, or patch releases for a dependency by adding an [`ignore` 
condition](https://docs.github.com/en/code-security/supply-chain-security/configuration-options-for-dependency-updates#ignore)
 with the desired `update_types` to your config file.
   
   If you change your mind, just re-open this PR and I'll resolve any conflicts 
on it.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-ldap-api] coheigea merged pull request #24: Bump forbiddenapis from 2.6 to 3.5.1

2023-04-03 Thread via GitHub


coheigea merged PR #24:
URL: https://github.com/apache/directory-ldap-api/pull/24


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-ldap-api] coheigea merged pull request #21: Bump actions/checkout from 2 to 3

2023-04-03 Thread via GitHub


coheigea merged PR #21:
URL: https://github.com/apache/directory-ldap-api/pull/21


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-ldap-api] coheigea closed pull request #25: Bump slf4j-api from 1.7.36 to 2.0.7

2023-04-03 Thread via GitHub


coheigea closed pull request #25: Bump slf4j-api from 1.7.36 to 2.0.7
URL: https://github.com/apache/directory-ldap-api/pull/25


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-ldap-api] coheigea merged pull request #20: Bump github/codeql-action from 1 to 2

2023-04-03 Thread via GitHub


coheigea merged PR #20:
URL: https://github.com/apache/directory-ldap-api/pull/20


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-ldap-api] dependabot[bot] opened a new pull request, #25: Bump slf4j-api from 1.7.36 to 2.0.7

2023-04-03 Thread via GitHub


dependabot[bot] opened a new pull request, #25:
URL: https://github.com/apache/directory-ldap-api/pull/25

   Bumps [slf4j-api](https://github.com/qos-ch/slf4j) from 1.7.36 to 2.0.7.
   
   Commits
   
   https://github.com/qos-ch/slf4j/commit/d6a21ae68f8a996bc24526f82ec46907e6688bc0;>d6a21ae
 update javadoc plugin to version 3.0.5
   https://github.com/qos-ch/slf4j/commit/13950e51a62893eae6a5f6d9f842fe5554b7d4f4;>13950e5
 prepare release 2.0.7
   https://github.com/qos-ch/slf4j/commit/122e0c18dd59c1c7ef425e89e6097c07ee2358b9;>122e0c1
 add LICENSE.txt files to all modules, rename LICENSE as LICENSE.txt when 
appr...
   https://github.com/qos-ch/slf4j/commit/2a8ca99cafe8a20c2dc57ed7297ec68c574b0b94;>2a8ca99
 add license file to jar
   https://github.com/qos-ch/slf4j/commit/b363bb31ed08d3ad9761ccdca5e51bb2327c3287;>b363bb3
 SLF4J-579: Export client packages of slf4j-api in version 1
   https://github.com/qos-ch/slf4j/commit/2235d3c69829caf19e38ea980a86042cc3ffd1f3;>2235d3c
 Fully automate OSGi metadata creation and fix brocken OSGi-metadata in 
slf4j-...
   https://github.com/qos-ch/slf4j/commit/a5540ad51066b4b15132fdf27ead630519541d35;>a5540ad
 setup-java v3
   https://github.com/qos-ch/slf4j/commit/1ed084cbc061f0bcbc9250867771550684be25fa;>1ed084c
 add missing distribution instruction to github action
   https://github.com/qos-ch/slf4j/commit/b2cb0174225d1163730a209a6a433068fa281903;>b2cb017
 update github action versions
   https://github.com/qos-ch/slf4j/commit/fa6721a53eb4b2d13491400908f9ca76c7997300;>fa6721a
 add JDK 19 to CI build
   Additional commits viewable in https://github.com/qos-ch/slf4j/compare/v_1.7.36...v_2.0.7;>compare 
view
   
   
   
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.slf4j:slf4j-api=maven=1.7.36=2.0.7)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your CI passes on it
   - `@dependabot squash and merge` will squash and merge this PR after your CI 
passes on it
   - `@dependabot cancel merge` will cancel a previously requested merge and 
block automerging
   - `@dependabot reopen` will reopen this PR if it is closed
   - `@dependabot close` will close this PR and stop Dependabot recreating it. 
You can achieve the same result by closing it manually
   - `@dependabot ignore this major version` will close this PR and stop 
Dependabot creating any more for this major version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this minor version` will close this PR and stop 
Dependabot creating any more for this minor version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this dependency` will close this PR and stop 
Dependabot creating any more for this dependency (unless you reopen the PR or 
upgrade to it yourself)
   
   
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-ldap-api] dependabot[bot] opened a new pull request, #24: Bump forbiddenapis from 2.6 to 3.5.1

2023-04-03 Thread via GitHub


dependabot[bot] opened a new pull request, #24:
URL: https://github.com/apache/directory-ldap-api/pull/24

   Bumps [forbiddenapis](https://github.com/policeman-tools/forbidden-apis) 
from 2.6 to 3.5.1.
   
   Commits
   
   https://github.com/policeman-tools/forbidden-apis/commit/12e28a3e6f9a545c865b1d9f1e9fff63a540de56;>12e28a3
 switch to release
   https://github.com/policeman-tools/forbidden-apis/commit/679286e0ac0e10581df2a8bc7a1e37f383c25dae;>679286e
 Restore the previous missing classes logging using DEBUG level (https://redirect.github.com/policeman-tools/forbidden-apis/issues/227;>#227)
   https://github.com/policeman-tools/forbidden-apis/commit/17972309b58134bd4fe91c794d8c565ba6b84773;>1797230
 Switch back to dev
   https://github.com/policeman-tools/forbidden-apis/commit/2dcd578ca1c2db99dd090c06e263df1fe3cd65c4;>2dcd578
 Switch to release
   https://github.com/policeman-tools/forbidden-apis/commit/18e49506ca7c136bba26d3d8c7af6d07d4171e72;>18e4950
 Merge branch 'main' of https://github.com/policeman-tools/forbidden-apis;>https://github.com/policeman-tools/forbidden-apis
 into...
   https://github.com/policeman-tools/forbidden-apis/commit/020f4cbbd1768f9c1e3b591bdb30903eaab767fa;>020f4cb
 Add HttpClient's BodySubscribers#ofFile(**) to forbidden APIS (buggy). This 
c...
   https://github.com/policeman-tools/forbidden-apis/commit/c8cc5d590fe4683b3750ae1b03da1f257c652593;>c8cc5d5
 Add support for Java 20 (https://redirect.github.com/policeman-tools/forbidden-apis/issues/224;>#224)
   https://github.com/policeman-tools/forbidden-apis/commit/0267abf82c03d65a46ecc8b8a10085d9d5430442;>0267abf
 Reorder classpath to make our own classes we first when compiling with 
Groovy
   https://github.com/policeman-tools/forbidden-apis/commit/1269a860bb5644d49db044facf68b56c03f7788d;>1269a86
 Remove plugin-init.groovy in resources and compile the plugin code with 
groov...
   https://github.com/policeman-tools/forbidden-apis/commit/734fec9169411c8f6f4b813e2a00aeb3b0916a74;>734fec9
 Use official Gradle-Plugin artifacts on Maven Central for linking against 
Gradle
   Additional commits viewable in https://github.com/policeman-tools/forbidden-apis/compare/2.6...3.5.1;>compare
 view
   
   
   
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=de.thetaphi:forbiddenapis=maven=2.6=3.5.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your CI passes on it
   - `@dependabot squash and merge` will squash and merge this PR after your CI 
passes on it
   - `@dependabot cancel merge` will cancel a previously requested merge and 
block automerging
   - `@dependabot reopen` will reopen this PR if it is closed
   - `@dependabot close` will close this PR and stop Dependabot recreating it. 
You can achieve the same result by closing it manually
   - `@dependabot ignore this major version` will close this PR and stop 
Dependabot creating any more for this major version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this minor version` will close this PR and stop 
Dependabot creating any more for this minor version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this dependency` will close this PR and stop 
Dependabot creating any more for this dependency (unless you reopen the PR or 
upgrade to it yourself)
   
   
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-ldap-api] dependabot[bot] opened a new pull request, #23: Bump caffeine from 2.9.3 to 3.1.5

2023-04-03 Thread via GitHub


dependabot[bot] opened a new pull request, #23:
URL: https://github.com/apache/directory-ldap-api/pull/23

   Bumps [caffeine](https://github.com/ben-manes/caffeine) from 2.9.3 to 3.1.5.
   
   Release notes
   Sourced from https://github.com/ben-manes/caffeine/releases;>caffeine's 
releases.
   
   3.1.5
   Cache
   
   Fixed clear() removing a key more than once due to a 
write-back removal listener (https://redirect.github.com/ben-manes/caffeine/issues/872;>#872)
   
   JCache
   
   Added support for loading the configuration from the cache manager's uri 
(https://redirect.github.com/ben-manes/caffeine/issues/877;>#877)
   
   3.1.4
   Added https://errorprone.info/bugpattern/CheckReturnValue;>@​CanIgnoreReturnValue
 annotations for static analysis  (https://redirect.github.com/ben-manes/caffeine/issues/868;>#868)
   3.1.3
   Cache
   
   Fixed the build time dependency constraints from being leaked into the 
external metadata (https://redirect.github.com/ben-manes/caffeine/issues/867;>#867)
   Fixed the cause of a removal notification for a discarded refresh when 
the entry was removed
   Fixed the behavior for null lookups into returned unmodifiable maps to 
be consistent (https://redirect.github.com/ben-manes/caffeine/issues/864;>#864)
   Fixed an unexpected delay of removal notifications when using a 
scheduler (https://redirect.github.com/ben-manes/caffeine/issues/859;>#859)
   Fixed explicit refreshes from being deduped if the entry is pending 
eviction
   Defaulted methods to https://errorprone.info/bugpattern/CheckReturnValue;>@​CheckReturnValue
 for static analysis (https://redirect.github.com/ben-manes/caffeine/issues/863;>#863)
   Reduced the lock hold time during Map.clear (https://redirect.github.com/ben-manes/caffeine/issues/835;>#835)
   
   JCache
   
   Fixed putAll with an immutable map that causes an exception 
when using a cache writer (https://redirect.github.com/ben-manes/caffeine/issues/841;>#841)
   
   3.1.2
   Cache
   
   Added detection for when a key's equality has changed and corrupted the 
underlying map (https://redirect.github.com/apache/solr/pull/1118;>SOLR-16489)
   Improved the frequency sketch by better utilizing the cpu cache line to 
reduce memory accesses
   Fixed computeIfAbsent when replacing a collected weak/soft 
value and the custom expiry fails
   Improved refresh conflict detection to avoid unnecessarily discarding 
after a reload
   Improved eviction when the weight is oversized (https://redirect.github.com/ben-manes/caffeine/issues/745;>#745)
   
   Guava
   
   Added an adapter from Guava's CacheLoader to Caffeine's (https://redirect.github.com/ben-manes/caffeine/issues/766;>#766)
   
   JCache
   
   Fixed Cache.getConfiguration() to return an immutable 
instance
   
   3.1.1
   
   Fixed refreshAfterWrite when racing with a removed entry 
(https://redirect.github.com/ben-manes/caffeine/issues/715;>#715)
   Fixed gradle module metadata variant selection (https://redirect.github.com/ben-manes/caffeine/issues/716;>#716)
   
   3.1.0
   
   Fixed the publication of a removal notification when computing a null 
value on top of an expired entry
   Fixed the publication of a removal notification for a conditional 
replacement on an unbounded cache
   Fixed Map.equals when the traversal triggers an eviction 
and the subset of live entries matches
   Improved refreshAfterWrite to return the new value if computed by the 
caller (https://redirect.github.com/ben-manes/caffeine/issues/688;>#688, https://redirect.github.com/ben-manes/caffeine/issues/699;>#699)
   
   
   
   ... (truncated)
   
   
   Commits
   
   https://github.com/ben-manes/caffeine/commit/eb3c9adb531d1c7ee5eb4f8431928a94fd03bcdf;>eb3c9ad
 add example using hibernate (https://redirect.github.com/ben-manes/caffeine/issues/877;>#877)
   https://github.com/ben-manes/caffeine/commit/391a0ccb006ada5c211ac69aa664e9414ebed150;>391a0cc
 Allow jcache to load its configuration from a uri (fixes https://redirect.github.com/ben-manes/caffeine/issues/877;>#877)
   https://github.com/ben-manes/caffeine/commit/03e9926f34481ce4a97d3b29d9bfa35ef0c61c25;>03e9926
 Prefer assertThrows to TestNG's expected exception or try-catch blocks.
   https://github.com/ben-manes/caffeine/commit/eedb48a2502951f9d9c86b9a963c8f4ff04ff36f;>eedb48a
 Bump mikepenz/gradle-dependency-submission from 0.8.4 to 0.8.5 (https://redirect.github.com/ben-manes/caffeine/issues/875;>#875)
   https://github.com/ben-manes/caffeine/commit/6f9e9b87ab578f6ec561d314e02b3bf6d6e2801e;>6f9e9b8
 Guard Map.clear from a write-back removal listener (fixes https://redirect.github.com/ben-manes/caffeine/issues/872;>#872)
   https://github.com/ben-manes/caffeine/commit/354693b658cd03d7355f7d93265cab0109d13675;>354693b
 Bump step-security/harden-runner from 2.1.0 to 2.2.0 (https://redirect.github.com/ben-manes/caffeine/issues/873;>#873)
   https://github.com/ben-manes/caffeine/commit/5fbf97ee7313558e953a9a0f8f9f792c7b0ad7a3;>5fbf97e
 Bump 

[GitHub] [directory-ldap-api] dependabot[bot] opened a new pull request, #22: Bump mockito-core from 2.28.1 to 5.2.0

2023-04-03 Thread via GitHub


dependabot[bot] opened a new pull request, #22:
URL: https://github.com/apache/directory-ldap-api/pull/22

   Bumps [mockito-core](https://github.com/mockito/mockito) from 2.28.1 to 
5.2.0.
   
   Release notes
   Sourced from https://github.com/mockito/mockito/releases;>mockito-core's 
releases.
   
   v5.2.0
   Changelog generated 
by https://github.com/shipkit/shipkit-changelog;>Shipkit Changelog 
Gradle Plugin
   5.2.0
   
   2023-03-09 - https://github.com/mockito/mockito/compare/v5.1.1...v5.2.0;>25 
commit(s) by Andriy Redko, Iulian Dragos, Roberto Trunfio, Róbert Papp, 
dependabot[bot], jfrantzius, tobiasbaum
   Fixes 2933: IOUtils does not depend on platform encoding any more [(https://redirect.github.com/mockito/mockito/issues/2935;>#2935)](https://redirect.github.com/mockito/mockito/pull/2935;>mockito/mockito#2935)
   Execution with mockito-inline fails on platforms with EBCDIC as default 
encoding [(https://redirect.github.com/mockito/mockito/issues/2933;>#2933)](https://redirect.github.com/mockito/mockito/issues/2933;>mockito/mockito#2933)
   Bump io.github.gradle-nexus:publish-plugin from 1.2.0 to 1.3.0 [(https://redirect.github.com/mockito/mockito/issues/2932;>#2932)](https://redirect.github.com/mockito/mockito/pull/2932;>mockito/mockito#2932)
   Bump versions.bytebuddy from 1.14.0 to 1.14.1 [(https://redirect.github.com/mockito/mockito/issues/2931;>#2931)](https://redirect.github.com/mockito/mockito/pull/2931;>mockito/mockito#2931)
   Bump com.diffplug.spotless from 6.15.0 to 6.16.0 [(https://redirect.github.com/mockito/mockito/issues/2930;>#2930)](https://redirect.github.com/mockito/mockito/pull/2930;>mockito/mockito#2930)
   Bump com.google.googlejavaformat:google-java-format from 1.15.0 to 
1.16.0 [(https://redirect.github.com/mockito/mockito/issues/2928;>#2928)](https://redirect.github.com/mockito/mockito/pull/2928;>mockito/mockito#2928)
   Bump io.github.gradle-nexus:publish-plugin from 1.1.0 to 1.2.0 [(https://redirect.github.com/mockito/mockito/issues/2924;>#2924)](https://redirect.github.com/mockito/mockito/pull/2924;>mockito/mockito#2924)
   Feature 2921 generic types [(https://redirect.github.com/mockito/mockito/issues/2923;>#2923)](https://redirect.github.com/mockito/mockito/pull/2923;>mockito/mockito#2923)
   Bump com.github.ben-manes.versions from 0.45.0 to 0.46.0 [(https://redirect.github.com/mockito/mockito/issues/2922;>#2922)](https://redirect.github.com/mockito/mockito/pull/2922;>mockito/mockito#2922)
   Use generic type information in TypeBasedCandidateFilter to circumvent 
type erasure [(https://redirect.github.com/mockito/mockito/issues/2921;>#2921)](https://redirect.github.com/mockito/mockito/issues/2921;>mockito/mockito#2921)
   Make project relocatable by using relative paths in the OSGi test task 
[(https://redirect.github.com/mockito/mockito/issues/2920;>#2920)](https://redirect.github.com/mockito/mockito/pull/2920;>mockito/mockito#2920)
   Cache misses due to OSGi tests referencing absolute paths [(https://redirect.github.com/mockito/mockito/issues/2919;>#2919)](https://redirect.github.com/mockito/mockito/issues/2919;>mockito/mockito#2919)
   Bump versions.bytebuddy from 1.13.0 to 1.14.0 [(https://redirect.github.com/mockito/mockito/issues/2918;>#2918)](https://redirect.github.com/mockito/mockito/pull/2918;>mockito/mockito#2918)
   Bump gradle/wrapper-validation-action from 1.0.5 to 1.0.6 [(https://redirect.github.com/mockito/mockito/issues/2917;>#2917)](https://redirect.github.com/mockito/mockito/pull/2917;>mockito/mockito#2917)
   Bump com.diffplug.spotless from 6.14.1 to 6.15.0 [(https://redirect.github.com/mockito/mockito/issues/2913;>#2913)](https://redirect.github.com/mockito/mockito/pull/2913;>mockito/mockito#2913)
   Bump versions.bytebuddy from 1.12.23 to 1.13.0 [(https://redirect.github.com/mockito/mockito/issues/2912;>#2912)](https://redirect.github.com/mockito/mockito/pull/2912;>mockito/mockito#2912)
   Bump ru.vyarus.animalsniffer from 1.6.0 to 1.7.0 [(https://redirect.github.com/mockito/mockito/issues/2911;>#2911)](https://redirect.github.com/mockito/mockito/pull/2911;>mockito/mockito#2911)
   Bump org.codehaus.groovy:groovy from 3.0.14 to 3.0.15 [(https://redirect.github.com/mockito/mockito/issues/2910;>#2910)](https://redirect.github.com/mockito/mockito/pull/2910;>mockito/mockito#2910)
   Fixes https://redirect.github.com/mockito/mockito/issues/2905;>#2905 : 
ThreadLocal classes can be mocked. [(https://redirect.github.com/mockito/mockito/issues/2908;>#2908)](https://redirect.github.com/mockito/mockito/pull/2908;>mockito/mockito#2908)
   StackOverflow while mocking a ThreadLocal on Mockito 5.1.1 [(https://redirect.github.com/mockito/mockito/issues/2905;>#2905)](https://redirect.github.com/mockito/mockito/issues/2905;>mockito/mockito#2905)
   Fix most Gradle warnings in build [(https://redirect.github.com/mockito/mockito/issues/2904;>#2904)](https://redirect.github.com/mockito/mockito/pull/2904;>mockito/mockito#2904)
   Android CI improvements, 

[GitHub] [directory-ldap-api] dependabot[bot] opened a new pull request, #21: Bump actions/checkout from 2 to 3

2023-04-03 Thread via GitHub


dependabot[bot] opened a new pull request, #21:
URL: https://github.com/apache/directory-ldap-api/pull/21

   Bumps [actions/checkout](https://github.com/actions/checkout) from 2 to 3.
   
   Release notes
   Sourced from https://github.com/actions/checkout/releases;>actions/checkout's 
releases.
   
   v3.0.0
   
   Updated to the node16 runtime by default
   
   This requires a minimum https://github.com/actions/runner/releases/tag/v2.285.0;>Actions 
Runner version of v2.285.0 to run, which is by default available in GHES 
3.4 or later.
   
   
   
   v2.7.0
   What's Changed
   
   Add new public key for known_hosts (https://redirect.github.com/actions/checkout/issues/1237;>#1237) by 
https://github.com/TingluoHuang;>@​TingluoHuang in https://redirect.github.com/actions/checkout/pull/1238;>actions/checkout#1238
   
   Full Changelog: https://github.com/actions/checkout/compare/v2.6.0...v2.7.0;>https://github.com/actions/checkout/compare/v2.6.0...v2.7.0
   v2.6.0
   What's Changed
   
   Add backports to v2 branch by https://github.com/cory-miller;>@​cory-miller in https://redirect.github.com/actions/checkout/pull/1040;>actions/checkout#1040
   
   Includes backports from the following changes: https://redirect.github.com/actions/checkout/pull/964;>actions/checkout#964,
 https://redirect.github.com/actions/checkout/pull/1002;>actions/checkout#1002,
 https://redirect.github.com/actions/checkout/pull/1029;>actions/checkout#1029
   Upgraded the licensed version to match what is used in v3.
   
   
   
   Full Changelog: https://github.com/actions/checkout/compare/v2.5.0...v2.6.0;>https://github.com/actions/checkout/compare/v2.5.0...v2.6.0
   v2.5.0
   What's Changed
   
   Update @​actions/core to 1.10.0 by https://github.com/rentziass;>@​rentziass in https://redirect.github.com/actions/checkout/pull/962;>actions/checkout#962
   
   Full Changelog: https://github.com/actions/checkout/compare/v2...v2.5.0;>https://github.com/actions/checkout/compare/v2...v2.5.0
   v2.4.2
   What's Changed
   
   Add set-safe-directory input to allow customers to take control. (https://redirect.github.com/actions/checkout/issues/770;>#770) by https://github.com/TingluoHuang;>@​TingluoHuang in https://redirect.github.com/actions/checkout/pull/776;>actions/checkout#776
   Prepare changelog for v2.4.2. by https://github.com/TingluoHuang;>@​TingluoHuang in https://redirect.github.com/actions/checkout/pull/778;>actions/checkout#778
   
   Full Changelog: https://github.com/actions/checkout/compare/v2...v2.4.2;>https://github.com/actions/checkout/compare/v2...v2.4.2
   v2.4.1
   
   Fixed an issue where checkout failed to run in container jobs due to the 
new git setting safe.directory
   
   v2.4.0
   
   Convert SSH URLs like org-ORG_ID@github.com: to 
https://github.com/ - https://redirect.github.com/actions/checkout/pull/621;>pr
   
   v2.3.5
   Update dependencies
   v2.3.4
   
   https://redirect.github.com/actions/checkout/pull/379;>Add 
missing awaits
   https://redirect.github.com/actions/checkout/pull/360;>Swap to 
Environment Files
   
   v2.3.3
   
   https://redirect.github.com/actions/checkout/pull/345;>Remove 
Unneeded commit information from build logs
   https://redirect.github.com/actions/checkout/pull/326;>Add 
Licensed to verify third party dependencies
   
   
   
   ... (truncated)
   
   
   Changelog
   Sourced from https://github.com/actions/checkout/blob/main/CHANGELOG.md;>actions/checkout's
 changelog.
   
   Changelog
   v3.4.0
   
   https://redirect.github.com/actions/checkout/pull/1209;>Upgrade 
codeql actions to v2
   https://redirect.github.com/actions/checkout/pull/1210;>Upgrade 
dependencies
   https://redirect.github.com/actions/checkout/pull/1225;>Upgrade 
@​actions/io
   
   v3.3.0
   
   https://redirect.github.com/actions/checkout/pull/1045;>Implement branch 
list using callbacks from exec function
   https://redirect.github.com/actions/checkout/pull/1050;>Add in 
explicit reference to private checkout options
   [Fix comment typos (that got added in https://redirect.github.com/actions/checkout/issues/770;>#770)](https://redirect.github.com/actions/checkout/pull/1057;>actions/checkout#1057)
   
   v3.2.0
   
   https://redirect.github.com/actions/checkout/pull/942;>Add 
GitHub Action to perform release
   https://redirect.github.com/actions/checkout/pull/967;>Fix 
status badge
   https://redirect.github.com/actions/checkout/pull/1002;>Replace 
datadog/squid with ubuntu/squid Docker image
   https://redirect.github.com/actions/checkout/pull/964;>Wrap 
pipeline commands for submoduleForeach in quotes
   https://redirect.github.com/actions/checkout/pull/1029;>Update 
@​actions/io to 1.1.2
   https://redirect.github.com/actions/checkout/pull/1039;>Upgrading version 
to 3.2.0
   
   v3.1.0
   
   https://redirect.github.com/actions/checkout/pull/939;>Use 
@​actions/core saveState and 
getState
   https://redirect.github.com/actions/checkout/pull/922;>Add 
github-server-url input
   
   v3.0.2
   

[GitHub] [directory-ldap-api] dependabot[bot] opened a new pull request, #20: Bump github/codeql-action from 1 to 2

2023-04-03 Thread via GitHub


dependabot[bot] opened a new pull request, #20:
URL: https://github.com/apache/directory-ldap-api/pull/20

   Bumps [github/codeql-action](https://github.com/github/codeql-action) from 1 
to 2.
   
   Changelog
   Sourced from https://github.com/github/codeql-action/blob/main/CHANGELOG.md;>github/codeql-action's
 changelog.
   
   2.2.9 - 27 Mar 2023
   
   Customers post-processing the SARIF output of the analyze 
Action before uploading it to Code Scanning will benefit from an improved 
debugging experience. https://redirect.github.com/github/codeql-action/pull/1598;>#1598
   
   The CodeQL Action will now upload a SARIF file with debugging 
information to Code Scanning on failed runs for customers using upload: 
false. Previously, this was only available for customers using the 
default value of the upload input.
   The upload input to the analyze Action now 
accepts the following values:
   
   always is the default value, which uploads the SARIF file 
to Code Scanning for successful and failed runs.
   failure-only is recommended for customers post-processing 
the SARIF file before uploading it to Code Scanning. This option uploads 
debugging information to Code Scanning for failed runs to improve the debugging 
experience.
   never avoids uploading the SARIF file to Code Scanning even 
if the code scanning run fails. This is not recommended for external users 
since it complicates debugging.
   The legacy true and false options will be 
interpreted as always and failure-only 
respectively.
   
   
   
   
   
   2.2.8 - 22 Mar 2023
   
   Update default CodeQL bundle version to 2.12.5. https://redirect.github.com/github/codeql-action/pull/1585;>#1585
   
   
   
   
   Commits
   
   https://github.com/github/codeql-action/commit/04df1262e6247151b5ac09cd2c303ac36ad3f62b;>04df126
 Merge pull request https://redirect.github.com/github/codeql-action/issues/1608;>#1608 
from github/update-v2.2.9-fb32c3fef
   https://github.com/github/codeql-action/commit/f0988cbd79ff403435044fdb9947c1ec20d01f6a;>f0988cb
 Move changelog note to correct section
   https://github.com/github/codeql-action/commit/fef20d6c357cfcd261d53a2d55b0b2132d0f6892;>fef20d6
 Update changelog for v2.2.9
   https://github.com/github/codeql-action/commit/fb32c3fefdc4ffebe80488e4ed5d862348621d72;>fb32c3f
 Merge pull request https://redirect.github.com/github/codeql-action/issues/1605;>#1605 
from github/henrymercer/diagnostics-grouping-workaround
   https://github.com/github/codeql-action/commit/329c022f486ae3deced8c256a11365c7a7799041;>329c022
 Just check the number of locations
   https://github.com/github/codeql-action/commit/c8935d5a9dbe3383438a0f489ca0c6f7fa2743c3;>c8935d5
 Remove duplicate locations from failed run SARIF
   https://github.com/github/codeql-action/commit/ade432fd683e818e4efbc4a803160f5b4f13926e;>ade432f
 Remove duplicate locations from output of database 
interpret-results
   https://github.com/github/codeql-action/commit/6f852eeb3899f7918bf6f5d7a201a98a18ce5b51;>6f852ee
 Implement removing duplicate locations from a SARIF file
   https://github.com/github/codeql-action/commit/097ab4665fecf3c04acc545d74e40d782046c9e3;>097ab46
 Speed up checks a bit by just running the standard suite
   https://github.com/github/codeql-action/commit/befd804b8b0075fbae00d57bc215f6e0ea6033a5;>befd804
 Extend diagnostics export integration test to capture location bug
   Additional commits viewable in https://github.com/github/codeql-action/compare/v1...v2;>compare 
view
   
   
   
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=github/codeql-action=github_actions=1=2)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your CI passes on it
   - `@dependabot squash and merge` will squash and merge this PR after your CI 
passes on it
   - `@dependabot cancel merge` will cancel a previously requested merge and 
block automerging
   - `@dependabot reopen` will reopen this PR if it is closed
   - `@dependabot close` will close this PR and stop Dependabot recreating it. 
You can achieve the same result by closing it manually
   - `@dependabot ignore this major version` will close this PR and stop 
Dependabot creating any more for this major version (unless you reopen the PR 
or upgrade to it yourself)
   - 

[GitHub] [directory-kerby] coheigea merged pull request #194: Bump netty.version from 4.1.90.Final to 4.1.91.Final

2023-04-03 Thread via GitHub


coheigea merged PR #194:
URL: https://github.com/apache/directory-kerby/pull/194


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-kerby] coheigea merged pull request #193: Bump ossf/scorecard-action from 2.1.2 to 2.1.3

2023-04-03 Thread via GitHub


coheigea merged PR #193:
URL: https://github.com/apache/directory-kerby/pull/193


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-kerby] coheigea merged pull request #195: Bump xnio-api from 3.8.8.Final to 3.8.9.Final

2023-04-03 Thread via GitHub


coheigea merged PR #195:
URL: https://github.com/apache/directory-kerby/pull/195


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-scimple] dependabot[bot] opened a new pull request, #282: Bump extra-enforcer-rules from 1.6.1 to 1.6.2

2023-04-03 Thread via GitHub


dependabot[bot] opened a new pull request, #282:
URL: https://github.com/apache/directory-scimple/pull/282

   Bumps 
[extra-enforcer-rules](https://github.com/mojohaus/extra-enforcer-rules) from 
1.6.1 to 1.6.2.
   
   Release notes
   Sourced from https://github.com/mojohaus/extra-enforcer-rules/releases;>extra-enforcer-rules's
 releases.
   
   1.6.2
   
    Bug Fixes
   
   Fix https://redirect.github.com/mojohaus/extra-enforcer-rules/issues/231;>#231
 - Use Resolver Api for resolving artifacts (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/238;>#238)
 https://github.com/slawekjaranowski;>@​slawekjaranowski
   
    Dependency updates
   
   Bump mojo-parent from 73 to 74 (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/252;>#252)
 https://github.com/dependabot;>@​dependabot
   Bump parent from 70 to 73 (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/248;>#248)
 https://github.com/slawekjaranowski;>@​slawekjaranowski
   Bump enforcer-api from 3.1.0 to 3.2.1 (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/246;>#246)
 https://github.com/dependabot;>@​dependabot
   Bump mockito-core from 4.10.0 to 4.11.0 (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/242;>#242)
 https://github.com/dependabot;>@​dependabot
   Bump mockito-core from 4.9.0 to 4.10.0 (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/241;>#241)
 https://github.com/dependabot;>@​dependabot
   Bump mockito-core from 4.8.1 to 4.9.0 (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/236;>#236)
 https://github.com/dependabot;>@​dependabot
   Bump maven-dependency-tree from 3.2.0 to 3.2.1 (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/237;>#237)
 https://github.com/dependabot;>@​dependabot
   Bump mockito-core from 4.8.0 to 4.8.1 (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/235;>#235)
 https://github.com/dependabot;>@​dependabot
   Bump maven-common-artifact-filters from 3.3.1 to 3.3.2 (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/234;>#234)
 https://github.com/dependabot;>@​dependabot
   Bump mockito-core from 4.7.0 to 4.8.0 (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/233;>#233)
 https://github.com/dependabot;>@​dependabot
   Bump maven-dependency-tree from 3.1.1 to 3.2.0 (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/232;>#232)
 https://github.com/dependabot;>@​dependabot
   Bump mojo-parent from 69 to 70 (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/230;>#230)
 https://github.com/dependabot;>@​dependabot
   Bump mockito-core from 4.6.1 to 4.7.0 (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/229;>#229)
 https://github.com/dependabot;>@​dependabot
   
    Maintenance
   
   Fix broken links in documentation (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/255;>#255)
 https://github.com/slawekjaranowski;>@​slawekjaranowski
   Use Maven 3.9.1 on GitHub (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/254;>#254)
 https://github.com/slawekjaranowski;>@​slawekjaranowski
   Bump spring-core from 5.3.20 to 5.3.26 in 
/src/it/banduplicate-classes-wildcard-exclusion (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/253;>#253)
 https://github.com/dependabot;>@​dependabot
   Enable checkstyle and spotless plugins (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/250;>#250)
 https://github.com/slawekjaranowski;>@​slawekjaranowski
   Use Maven 3.9.0 for build on GitHub (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/249;>#249)
 https://github.com/slawekjaranowski;>@​slawekjaranowski
   Configure m-compiler-p to use release flag for earlier JDKs (https://redirect.github.com/mojohaus/extra-enforcer-rules/pull/239;>#239)
 https://github.com/pzygielo;>@​pzygielo
   
   
   
   
   Commits
   
   https://github.com/mojohaus/extra-enforcer-rules/commit/bc834e6347576f1ee64b19af69cbc70a3e426032;>bc834e6
 [maven-release-plugin] prepare release 1.6.2
   https://github.com/mojohaus/extra-enforcer-rules/commit/f257b049605f3d8019f738b437d51cafda49c0b5;>f257b04
 Fix broken links in documentation
   https://github.com/mojohaus/extra-enforcer-rules/commit/68039223cebc73893e724464081f3fa59b8f1df1;>6803922
 Use Maven 3.9.1 on GitHub
   https://github.com/mojohaus/extra-enforcer-rules/commit/829dadec9dac149e4f2c0e7fb406d07e95d259fb;>829dade
 Bump spring-core in /src/it/banduplicate-classes-wildcard-exclusion
   https://github.com/mojohaus/extra-enforcer-rules/commit/1e7b0e313a1d8d587bbadbe92613cb3df0fa6d50;>1e7b0e3
 Bump mojo-parent from 73 to 74
   https://github.com/mojohaus/extra-enforcer-rules/commit/de48f6dcbff88cc8b4876229c22576d5708b3a1e;>de48f6d
 Add .git-blame-ignore-revs with last code reformat
   https://github.com/mojohaus/extra-enforcer-rules/commit/f97cc25dbef0f4bb30c83bb2d9eebd1fbd3ee83b;>f97cc25
 Enable checkstyle and spotless plugins - code reformat
   

[GitHub] [directory-scimple] dependabot[bot] opened a new pull request, #281: Bump gradle-enterprise-maven-extension from 1.16.5 to 1.16.6

2023-04-03 Thread via GitHub


dependabot[bot] opened a new pull request, #281:
URL: https://github.com/apache/directory-scimple/pull/281

   Bumps gradle-enterprise-maven-extension from 1.16.5 to 1.16.6.
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=com.gradle:gradle-enterprise-maven-extension=maven=1.16.5=1.16.6)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your CI passes on it
   - `@dependabot squash and merge` will squash and merge this PR after your CI 
passes on it
   - `@dependabot cancel merge` will cancel a previously requested merge and 
block automerging
   - `@dependabot reopen` will reopen this PR if it is closed
   - `@dependabot close` will close this PR and stop Dependabot recreating it. 
You can achieve the same result by closing it manually
   - `@dependabot ignore this major version` will close this PR and stop 
Dependabot creating any more for this major version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this minor version` will close this PR and stop 
Dependabot creating any more for this minor version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this dependency` will close this PR and stop 
Dependabot creating any more for this dependency (unless you reopen the PR or 
upgrade to it yourself)
   
   
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-scimple] dependabot[bot] opened a new pull request, #280: Bump jacoco-maven-plugin from 0.8.8 to 0.8.9

2023-04-03 Thread via GitHub


dependabot[bot] opened a new pull request, #280:
URL: https://github.com/apache/directory-scimple/pull/280

   Bumps [jacoco-maven-plugin](https://github.com/jacoco/jacoco) from 0.8.8 to 
0.8.9.
   
   Release notes
   Sourced from https://github.com/jacoco/jacoco/releases;>jacoco-maven-plugin's 
releases.
   
   0.8.9
   New Features
   
   JaCoCo now officially supports Java 19 and 20 (GitHub https://redirect.github.com/jacoco/jacoco/issues/1371;>#1371, https://redirect.github.com/jacoco/jacoco/issues/1386;>#1386).
   Experimental support for Java 21 class files (GitHub https://redirect.github.com/jacoco/jacoco/issues/1386;>#1386).
   Add parameter to include the current project in the 
report-aggregate Maven goal (GitHub https://redirect.github.com/jacoco/jacoco/issues/1007;>#1007).
   Component accessors generated by the Java compilers for records are 
filtered out during generation of report. Contributed by Tesla Zhang (GitHub https://redirect.github.com/jacoco/jacoco/issues/1393;>#1393).
   
   Fixed bugs
   
   Agent should not open java.lang package to unnamed module 
of the application class loader (GitHub https://redirect.github.com/jacoco/jacoco/issues/1334;>#1334).
   
   Non-functional Changes
   
   JaCoCo now depends on ASM 9.5 (GitHub https://redirect.github.com/jacoco/jacoco/issues/1299;>#1299, https://redirect.github.com/jacoco/jacoco/issues/1368;>#1368, https://redirect.github.com/jacoco/jacoco/issues/1416;>#1416).
   JaCoCo build now requires JDK 11 (GitHub https://redirect.github.com/jacoco/jacoco/issues/1413;>#1413).
   
   
   
   
   Commits
   
   https://github.com/jacoco/jacoco/commit/c0ad7810555f4c19ab8da68e94d4bf9344481564;>c0ad781
 Prepare release 0.8.9
   https://github.com/jacoco/jacoco/commit/c561c13f07a544a3a8cd4430c2bb8eae7deea229;>c561c13
 Fix validation test for Java 21 (https://redirect.github.com/jacoco/jacoco/issues/1422;>#1422)
   https://github.com/jacoco/jacoco/commit/461ebf312620799a3815807e09cb84e4e43a39aa;>461ebf3
 Add validation test for JEP 432: Record Patterns (https://redirect.github.com/jacoco/jacoco/issues/1415;>#1415)
   https://github.com/jacoco/jacoco/commit/5f12145bffb2b965618f9b0f05e73336fbed3f85;>5f12145
 Upgrade ASM to 9.5 (https://redirect.github.com/jacoco/jacoco/issues/1416;>#1416)
   https://github.com/jacoco/jacoco/commit/b865890d566c55832def986bb800b0b2f98200de;>b865890
 Agent should not open java.lang package to unnamed module of the 
applicatio...
   https://github.com/jacoco/jacoco/commit/5bc2fae5cf3500312b003bc2cc13c438a3313c79;>5bc2fae
 Upgrade spotless-maven-plugin to 2.35.0 and Eclipse JDT Formatter to 4.27 (https://redirect.github.com/jacoco/jacoco/issues/1;>#1...
   https://github.com/jacoco/jacoco/commit/4fca868d0c1ddd36457af8420136c1f11e56a1ba;>4fca868
 Require at least JDK 11 for the build (https://redirect.github.com/jacoco/jacoco/issues/1413;>#1413)
   https://github.com/jacoco/jacoco/commit/a68effb42f89682c275cc1e26418793191512985;>a68effb
 Upgrade ECJ from 3.12.1 to 3.32.0 (https://redirect.github.com/jacoco/jacoco/issues/1404;>#1404)
   https://github.com/jacoco/jacoco/commit/c6299e5b7bff4e67775908afef668f8b3d6f123b;>c6299e5
 Happy New Year 2023!
   https://github.com/jacoco/jacoco/commit/035df4c9e1e4f47002892efc1a0ef506de5b5eac;>035df4c
 Update plexus-utils to 3.0.24 (https://redirect.github.com/jacoco/jacoco/issues/1403;>#1403)
   Additional commits viewable in https://github.com/jacoco/jacoco/compare/v0.8.8...v0.8.9;>compare 
view
   
   
   
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.jacoco:jacoco-maven-plugin=maven=0.8.8=0.8.9)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your CI passes on it
   - `@dependabot squash and merge` will squash and merge this PR after your CI 
passes on it
   - `@dependabot cancel merge` will cancel a previously requested merge and 
block automerging
   - `@dependabot reopen` will reopen this PR if it is closed
   - `@dependabot close` will close this PR and stop Dependabot recreating it. 
You can achieve the same result by closing it manually
   - `@dependabot ignore this major version` will close this PR and stop 
Dependabot creating any more for this major version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore 

[GitHub] [directory-kerby] dependabot[bot] opened a new pull request, #195: Bump xnio-api from 3.8.8.Final to 3.8.9.Final

2023-04-03 Thread via GitHub


dependabot[bot] opened a new pull request, #195:
URL: https://github.com/apache/directory-kerby/pull/195

   Bumps xnio-api from 3.8.8.Final to 3.8.9.Final.
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=org.jboss.xnio:xnio-api=maven=3.8.8.Final=3.8.9.Final)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your CI passes on it
   - `@dependabot squash and merge` will squash and merge this PR after your CI 
passes on it
   - `@dependabot cancel merge` will cancel a previously requested merge and 
block automerging
   - `@dependabot reopen` will reopen this PR if it is closed
   - `@dependabot close` will close this PR and stop Dependabot recreating it. 
You can achieve the same result by closing it manually
   - `@dependabot ignore this major version` will close this PR and stop 
Dependabot creating any more for this major version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this minor version` will close this PR and stop 
Dependabot creating any more for this minor version (unless you reopen the PR 
or upgrade to it yourself)
   - `@dependabot ignore this dependency` will close this PR and stop 
Dependabot creating any more for this dependency (unless you reopen the PR or 
upgrade to it yourself)
   
   
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



[GitHub] [directory-kerby] dependabot[bot] opened a new pull request, #194: Bump netty.version from 4.1.90.Final to 4.1.91.Final

2023-04-03 Thread via GitHub


dependabot[bot] opened a new pull request, #194:
URL: https://github.com/apache/directory-kerby/pull/194

   Bumps `netty.version` from 4.1.90.Final to 4.1.91.Final.
   Updates `netty-transport` from 4.1.90.Final to 4.1.91.Final
   
   Commits
   
   https://github.com/netty/netty/commit/d773f37e3422b8bc38429bbde94583173c3b7e4a;>d773f37
 [maven-release-plugin] prepare release netty-4.1.91.Final
   https://github.com/netty/netty/commit/cd540193b98e1ffb9cdaaf2629e4a6d28665a2c5;>cd54019
 Update: Add snappy support on HttpContentDecoder (https://redirect.github.com/netty/netty/issues/13312;>#13312)
   https://github.com/netty/netty/commit/76d83fe21295dba4dea7b18aa0cc92681eeed232;>76d83fe
 Handle EHOSTUNREACH errors in io.netty.channel.unix.Errors (https://redirect.github.com/netty/netty/issues/13317;>#13317) (https://redirect.github.com/netty/netty/issues/13318;>#13318)
   https://github.com/netty/netty/commit/e1fad99ee2f7d8cf628d05f28ff8779254f11cc8;>e1fad99
 StacklessSSLHandshakeException: add a short stack-trace (https://redirect.github.com/netty/netty/issues/13315;>#13315)
   https://github.com/netty/netty/commit/ae10dc1fbe67ca61714ebcd10346d51ba4117839;>ae10dc1
 Don't unwrap multiple records until we notified the caller about the 
finished...
   https://github.com/netty/netty/commit/94ab6f3483117ffb75385c8bc1153882f67393f9;>94ab6f3
 Introduce Http2MultiplexActiveStreamsException that can be used to propagate 
...
   https://github.com/netty/netty/commit/12e11694bbd4a4df1d2a5de40c2d851635ed174d;>12e1169
 Use the correct error when reset a stream (https://redirect.github.com/netty/netty/issues/13309;>#13309)
   https://github.com/netty/netty/commit/ccc5e01f0444301561f055b02cd7c1f3e875bca7;>ccc5e01
 chore: Set permissions for GitHub actions (https://redirect.github.com/netty/netty/issues/12462;>#12462)
   https://github.com/netty/netty/commit/cf5c467f4ead5ba5e1e36f5c4903af78bd49c35c;>cf5c467
 Use optional resolution of sun.net.dns (https://redirect.github.com/netty/netty/issues/13303;>#13303)
   https://github.com/netty/netty/commit/ea1af147cf41b33933f313678102ea5fd9d72e15;>ea1af14
 NetUtil should be able to handle -Djava.net.preferIPv6Addresses=system 
withou...
   Additional commits viewable in https://github.com/netty/netty/compare/netty-4.1.90.Final...netty-4.1.91.Final;>compare
 view
   
   
   
   
   Updates `netty-handler` from 4.1.90.Final to 4.1.91.Final
   
   Commits
   
   https://github.com/netty/netty/commit/d773f37e3422b8bc38429bbde94583173c3b7e4a;>d773f37
 [maven-release-plugin] prepare release netty-4.1.91.Final
   https://github.com/netty/netty/commit/cd540193b98e1ffb9cdaaf2629e4a6d28665a2c5;>cd54019
 Update: Add snappy support on HttpContentDecoder (https://redirect.github.com/netty/netty/issues/13312;>#13312)
   https://github.com/netty/netty/commit/76d83fe21295dba4dea7b18aa0cc92681eeed232;>76d83fe
 Handle EHOSTUNREACH errors in io.netty.channel.unix.Errors (https://redirect.github.com/netty/netty/issues/13317;>#13317) (https://redirect.github.com/netty/netty/issues/13318;>#13318)
   https://github.com/netty/netty/commit/e1fad99ee2f7d8cf628d05f28ff8779254f11cc8;>e1fad99
 StacklessSSLHandshakeException: add a short stack-trace (https://redirect.github.com/netty/netty/issues/13315;>#13315)
   https://github.com/netty/netty/commit/ae10dc1fbe67ca61714ebcd10346d51ba4117839;>ae10dc1
 Don't unwrap multiple records until we notified the caller about the 
finished...
   https://github.com/netty/netty/commit/94ab6f3483117ffb75385c8bc1153882f67393f9;>94ab6f3
 Introduce Http2MultiplexActiveStreamsException that can be used to propagate 
...
   https://github.com/netty/netty/commit/12e11694bbd4a4df1d2a5de40c2d851635ed174d;>12e1169
 Use the correct error when reset a stream (https://redirect.github.com/netty/netty/issues/13309;>#13309)
   https://github.com/netty/netty/commit/ccc5e01f0444301561f055b02cd7c1f3e875bca7;>ccc5e01
 chore: Set permissions for GitHub actions (https://redirect.github.com/netty/netty/issues/12462;>#12462)
   https://github.com/netty/netty/commit/cf5c467f4ead5ba5e1e36f5c4903af78bd49c35c;>cf5c467
 Use optional resolution of sun.net.dns (https://redirect.github.com/netty/netty/issues/13303;>#13303)
   https://github.com/netty/netty/commit/ea1af147cf41b33933f313678102ea5fd9d72e15;>ea1af14
 NetUtil should be able to handle -Djava.net.preferIPv6Addresses=system 
withou...
   Additional commits viewable in https://github.com/netty/netty/compare/netty-4.1.90.Final...netty-4.1.91.Final;>compare
 view
   
   
   
   
   Updates `netty-common` from 4.1.90.Final to 4.1.91.Final
   
   Commits
   
   https://github.com/netty/netty/commit/d773f37e3422b8bc38429bbde94583173c3b7e4a;>d773f37
 [maven-release-plugin] prepare release netty-4.1.91.Final
   https://github.com/netty/netty/commit/cd540193b98e1ffb9cdaaf2629e4a6d28665a2c5;>cd54019
 Update: Add snappy support on HttpContentDecoder (https://redirect.github.com/netty/netty/issues/13312;>#13312)
   

[GitHub] [directory-kerby] dependabot[bot] opened a new pull request, #193: Bump ossf/scorecard-action from 2.1.2 to 2.1.3

2023-04-03 Thread via GitHub


dependabot[bot] opened a new pull request, #193:
URL: https://github.com/apache/directory-kerby/pull/193

   Bumps [ossf/scorecard-action](https://github.com/ossf/scorecard-action) from 
2.1.2 to 2.1.3.
   
   Release notes
   Sourced from https://github.com/ossf/scorecard-action/releases;>ossf/scorecard-action's
 releases.
   
   v2.1.3
   What's Changed
   
    Bump github.com/ossf/scorecard/v4 from 4.10.2 to 4.10.5 by https://github.com/spencerschrock;>@​spencerschrock in 
https://redirect.github.com/ossf/scorecard-action/pull/;>ossf/scorecard-action#
   
   Bug Fixes
   
   Invalid SARIF files from a bug in scorecard
   
   https://redirect.github.com/ossf/scorecard-action/issues/1076;>#1076, 
https://redirect.github.com/ossf/scorecard-action/issues/1094;>#1094
   
   
   Vulnerabilities check crashes if a vulnerable dependency is found via 
OSVScanner
   
   https://redirect.github.com/ossf/scorecard-action/issues/1092;>#1092
   
   
   Scorecard action not reporting binary artifacts in the repo
   
   https://redirect.github.com/ossf/scorecard-action/issues/1116;>#1116
   
   
   
   Full Scorecard Changelog: https://github.com/ossf/scorecard/compare/v4.10.2...v4.10.5;>https://github.com/ossf/scorecard/compare/v4.10.2...v4.10.5
   Full Changelog: https://github.com/ossf/scorecard-action/compare/v2.1.2...v2.1.3;>https://github.com/ossf/scorecard-action/compare/v2.1.2...v2.1.3
   
   
   
   Commits
   
   https://github.com/ossf/scorecard-action/commit/80e868c13c90f172d68d1f4501dee99e2479f7af;>80e868c
 :seedling: Bump docker tag for release. (https://redirect.github.com/ossf/scorecard-action/issues/1117;>#1117)
   https://github.com/ossf/scorecard-action/commit/aed6134b530f65762d8da8171e42d5ff9108d1a1;>aed6134
 :seedling: Bump golang.org/x/net from 0.7.0 to 0.8.0 (https://redirect.github.com/ossf/scorecard-action/issues/1099;>#1099)
   https://github.com/ossf/scorecard-action/commit/33dfbd30942d716772ffc2fa55d8ea035df8fa73;>33dfbd3
  Bump github.com/ossf/scorecard/v4 from 4.10.2 to 4.10.5 (https://redirect.github.com/ossf/scorecard-action/issues/;>#)
   https://github.com/ossf/scorecard-action/commit/193ae3767915e21afcbf44eff2fe6b41edb4d245;>193ae37
 :seedling: Bump actions/dependency-review-action from 3.0.3 to 3.0.4 (https://redirect.github.com/ossf/scorecard-action/issues/1110;>#1110)
   https://github.com/ossf/scorecard-action/commit/ca9bf9578ec9f68bd1cd99bfbde41ba4f0516a50;>ca9bf95
 :seedling: Bump actions/cache from 3.2.6 to 3.3.1 (https://redirect.github.com/ossf/scorecard-action/issues/1103;>#1103)
   https://github.com/ossf/scorecard-action/commit/fa1521272c15724b2dce74f8b1ce9bd6df33b7ae;>fa15212
 :seedling: Bump github/codeql-action from 2.2.4 to 2.2.7 (https://redirect.github.com/ossf/scorecard-action/issues/1105;>#1105)
   https://github.com/ossf/scorecard-action/commit/136025e1eacdf84d71a9c3227f53d7c737852cd8;>136025e
 :seedling: Bump step-security/harden-runner from 2.1.0 to 2.2.1 (https://redirect.github.com/ossf/scorecard-action/issues/1104;>#1104)
   https://github.com/ossf/scorecard-action/commit/c59c116cbead5af2de7d75f4d82cf5a2ef5b0304;>c59c116
 :seedling: Bump actions/cache from 3.2.5 to 3.2.6 (https://redirect.github.com/ossf/scorecard-action/issues/1097;>#1097)
   https://github.com/ossf/scorecard-action/commit/7cc371152c77bfecfa34fdfb62b1630ff3682cf1;>7cc3711
 :seedling: Bump github.com/emicklei/go-restful (https://redirect.github.com/ossf/scorecard-action/issues/1086;>#1086)
   https://github.com/ossf/scorecard-action/commit/570a953ea0770f30a8aa0a778cfc4bc955bbf9c4;>570a953
 :seedling: Bump actions/cache from 3.2.4 to 3.2.5 (https://redirect.github.com/ossf/scorecard-action/issues/1088;>#1088)
   Additional commits viewable in https://github.com/ossf/scorecard-action/compare/e38b1902ae4f44df626f11ba0734b14fb91f8f86...80e868c13c90f172d68d1f4501dee99e2479f7af;>compare
 view
   
   
   
   
   
   [![Dependabot compatibility 
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=ossf/scorecard-action=github_actions=2.1.2=2.1.3)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
   
   Dependabot will resolve any conflicts with this PR as long as you don't 
alter it yourself. You can also trigger a rebase manually by commenting 
`@dependabot rebase`.
   
   [//]: # (dependabot-automerge-start)
   [//]: # (dependabot-automerge-end)
   
   ---
   
   
   Dependabot commands and options
   
   
   You can trigger Dependabot actions by commenting on this PR:
   - `@dependabot rebase` will rebase this PR
   - `@dependabot recreate` will recreate this PR, overwriting any edits that 
have been made to it
   - `@dependabot merge` will merge this PR after your CI passes on it
   - `@dependabot squash and merge` will squash and merge this PR after your CI 
passes on it
   - `@dependabot cancel merge` will cancel a previously requested merge and 
block 

Re: Status of directory server 2.0.0.AM27 release?

2023-04-03 Thread Emmanuel Lécharny

Hi Colm,



On 03/04/2023 12:48, Colm O hEigeartaigh wrote:

Hi,

CXF migrated recently from using Apache Directory Server in the tests
to UnboundID LDAP due to a failure on JDK 20:
https://issues.apache.org/jira/browse/CXF-8809

I was a bit surprised when I checked out why to see that this issue is
fixed since almost two years but not released:
https://issues.apache.org/jira/browse/DIRSERVER-2326

What needs to be done to cut a new release? Maybe the unfixed issues
assigned to this release in JIRA can be mostly moved to the next
release? Incidentally, the OSGi tests are failing for me locally.


There are a lot of things to do if we want to cut a *perfect* release, 
but I think we can cut another milestone release.


I was working on fixing a few critical issues in Apache LDAP API those 
last weeks, and I'm done now. Still waiting for a fix for some OSGi 
tests that fail with maven Surefire 3.0.0 (but which work with 
3.0.0-M5). This is currently being investigated by some Maven fellow.


In any case, I'm willing to cut a LDAP API 2.1.3 release in April, 
followed by a Server milstone (I have checked that it builds, and it's ok).


I haven't tested it with all the Java version, but I can assure that 
LDAP API is working with Java 8, 11 and 17:


https://builds.apache.org/blue/organizations/jenkins/Directory%2Fdir-ldap-api-pipeline/detail/dir-ldap-api-pipeline/244/pipeline

Redarding the server, we have it working in Java 17, and have some 
failures in Java 8 and 11, to be investigated:


https://builds.apache.org/blue/organizations/jenkins/Directory%2Fdir-server-pipeline/detail/dir-server-pipeline/270/pipeline



Colm.

-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



--
*Emmanuel Lécharny - CTO* 205 Promenade des Anglais – 06200 NICE
T. +33 (0)4 89 97 36 50
P. +33 (0)6 08 33 32 61
emmanuel.lecha...@busit.com https://www.busit.com/

-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org



Status of directory server 2.0.0.AM27 release?

2023-04-03 Thread Colm O hEigeartaigh
Hi,

CXF migrated recently from using Apache Directory Server in the tests
to UnboundID LDAP due to a failure on JDK 20:
https://issues.apache.org/jira/browse/CXF-8809

I was a bit surprised when I checked out why to see that this issue is
fixed since almost two years but not released:
https://issues.apache.org/jira/browse/DIRSERVER-2326

What needs to be done to cut a new release? Maybe the unfixed issues
assigned to this release in JIRA can be mostly moved to the next
release? Incidentally, the OSGi tests are failing for me locally.

Colm.

-
To unsubscribe, e-mail: dev-unsubscr...@directory.apache.org
For additional commands, e-mail: dev-h...@directory.apache.org