[GitHub] [tomcat] DigitalFatCat opened a new pull request, #634: Bug 66684: set the revocationEnabled as FALSE when crl file is empty

2023-07-10 Thread via GitHub
DigitalFatCat opened a new pull request, #634: URL: https://github.com/apache/tomcat/pull/634 https://bz.apache.org/bugzilla/show_bug.cgi?id=66684 Recently, we tested the use of the crLFile configuration (in server.xml) in the scenario where two-way certificate authentication is enabl

[Bug 66684] New: SSL HandShake failed when crlFile linked to an empty file

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=66684 Bug ID: 66684 Summary: SSL HandShake failed when crlFile linked to an empty file Product: Tomcat 9 Version: 9.0.65 Hardware: PC Status: NEW Severity

Re: [Bug 66683] org.apache.coyote.http11.Http11Processor.service Error parsing HTTP request header, Unexpected state: headers already parsed. Buffer not recycled?

2023-07-10 Thread Mark Thomas
10 Jul 2023 21:28:20 bugzi...@apache.org: https://bz.apache.org/bugzilla/show_bug.cgi?id=66683 --- Comment #1 from Martin bestandig --- This idiot's BZ account has been disabled. Mark - To unsubscribe, e-mail: dev-unsubs

[Bug 63080] Support rfc7239 Forwarded header

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=63080 --- Comment #4 from Martin bestandig --- Dellet -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-unsubscr...@tomcat.apa

[Bug 66683] org.apache.coyote.http11.Http11Processor.service Error parsing HTTP request header, Unexpected state: headers already parsed. Buffer not recycled?

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=66683 --- Comment #1 from Martin bestandig --- Dellet -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-unsubscr...@tomcat.apa

[Bug 56713] Limit time that incoming request waits while webapp is reloading

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=56713 --- Comment #5 from Martin bestandig --- Dellet -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-unsubscr...@tomcat.apa

[Bug 55477] Add a solution to map a realm name to a security role

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=55477 --- Comment #22 from Martin bestandig --- Dellet -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-unsubscr...@tomcat.ap

[Bug 56546] Improve thread trace logging in WebappClassLoader.clearReferencesThreads()

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=56546 --- Comment #9 from Martin bestandig --- Dellet -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-unsubscr...@tomcat.apa

[Bug 56438] If jar scan does not find context config or TLD config, log a message

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=56438 --- Comment #24 from Martin bestandig --- Dellet -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-unsubscr...@tomcat.ap

[Bug 55243] Add special search string for nested roles

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=55243 --- Comment #3 from Martin bestandig --- Dellet -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-unsubscr...@tomcat.apa

[Bug 56787] Simplified jndi name parsing

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=56787 --- Comment #5 from Martin bestandig --- Dellet -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-unsubscr...@tomcat.apa

[Bug 58052] RewriteValve: Implement additional RewriteRule directive capabilities

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=58052 --- Comment #6 from Martin bestandig --- Dellet -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-unsubscr...@tomcat.apa

[Bug 56166] Suggestions for exception handling (avoid potential bugs)

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=56166 --- Comment #3 from Martin bestandig --- Dellet -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-unsubscr...@tomcat.apa

[Bug 63195] Add easy way to test RemoteIpValve works properly

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=63195 --- Comment #3 from Martin bestandig --- Dellet -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-unsubscr...@tomcat.apa

[Bug 57129] Regression. Load WEB-INF/lib jarfiles in alphabetical order

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=57129 --- Comment #53 from Martin bestandig --- Dellet -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-unsubscr...@tomcat.ap

[Bug 61877] use web.xml from CATALINA_HOME by default

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=61877 --- Comment #9 from Martin bestandig --- Dellet -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-unsubscr...@tomcat.apa

[Bug 62214] The "userSubtree=true" and "roleSubtree=true" in JNDIRealm not working

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=62214 --- Comment #6 from Martin bestandig --- Dellet -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-unsubscr...@tomcat.apa

[Bug 55675] Checking and handling invalid configuration option values

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=55675 --- Comment #2 from Martin bestandig --- Dellet -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-unsubscr...@tomcat.apa

[Bug 57130] Allow digest.sh to accept password from a file or from stdin

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=57130 --- Comment #7 from Martin bestandig --- Dellet -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-unsubscr...@tomcat.apa

[Bug 57367] If JAR scan experiences a stack overflow, give the URL from which each class in the loop was loaded in the complaint

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=57367 --- Comment #3 from Martin bestandig --- Dellet -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-unsubscr...@tomcat.apa

[Bug 55470] Help users for ClassNotFoundExceptions during startup [PATCH]

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=55470 --- Comment #4 from Martin bestandig --- Dellet -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-unsubscr...@tomcat.apa

[Bug 57872] Do not auto-switch session cookie to version=1 due to '/' in Path when running in "strict compliance" mode (Internet Explorer and rfc6265)

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=57872 --- Comment #3 from Martin bestandig --- Dellet -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-unsubscr...@tomcat.apa

svn commit: r1910925 - in /tomcat/site/trunk: ./ docs/ docs/tomcat-8.5-doc/ docs/tomcat-8.5-doc/annotationapi/ docs/tomcat-8.5-doc/annotationapi/javax/annotation/ docs/tomcat-8.5-doc/annotationapi/jav

2023-07-10 Thread schultz
Author: schultz Date: Mon Jul 10 19:00:48 2023 New Revision: 1910925 URL: http://svn.apache.org/viewvc?rev=1910925&view=rev Log: Update web site to 8.5.91 release. [This commit notification would consist of 73 parts, which exceeds the limit of 50 ones, so it was shortened to the summary.]

[ANN] Apache Tomcat 8.5.91 available

2023-07-10 Thread Christopher Schultz
The Apache Tomcat team announces the immediate availability of Apache Tomcat 8.5.91. Apache Tomcat 8 is an open source software implementation of the Java Servlet, JavaServer Pages, Java Unified Expression Language, Java WebSocket and JASPIC technologies. Apache Tomcat 8.5.91 is a bugfix and fea

svn commit: r1910924 - in /tomcat/site/trunk: ./ docs/ docs/tomcat-10.1-doc/ docs/tomcat-10.1-doc/annotationapi/ docs/tomcat-10.1-doc/annotationapi/jakarta/annotation/ docs/tomcat-10.1-doc/annotationa

2023-07-10 Thread schultz
Author: schultz Date: Mon Jul 10 18:54:28 2023 New Revision: 1910924 URL: http://svn.apache.org/viewvc?rev=1910924&view=rev Log: Update site for 10.1.11 release. [This commit notification would consist of 75 parts, which exceeds the limit of 50 ones, so it was shortened to the summary.] --

[ANN] Apache Tomcat 10.1.11 available

2023-07-10 Thread Christopher Schultz
The Apache Tomcat team announces the immediate availability of Apache Tomcat 10.1.11. Apache Tomcat 10 is an open source software implementation of the Jakarta Servlet, Jakarta Server Pages, Jakarta Expression Language, Jakarta WebSocket, Jakarta Authentication and Jakarta Annotations specificati

svn commit: r1910922 - in /tomcat/site/trunk: ./ docs/ xdocs/

2023-07-10 Thread markt
Author: markt Date: Mon Jul 10 18:36:34 2023 New Revision: 1910922 URL: http://svn.apache.org/viewvc?rev=1910922&view=rev Log: Update site for 11.0.0-M9 release Modified: tomcat/site/trunk/build.properties.default tomcat/site/trunk/docs/download-11.html tomcat/site/trunk/docs/index.ht

svn commit: r1910921 - in /tomcat/site/trunk/docs/tomcat-11.0-doc: ./ annotationapi/ annotationapi/jakarta/annotation/ annotationapi/jakarta/annotation/security/ annotationapi/jakarta/annotation/sql/

2023-07-10 Thread markt
Author: markt Date: Mon Jul 10 18:26:38 2023 New Revision: 1910921 URL: http://svn.apache.org/viewvc?rev=1910921&view=rev Log: Update docs for 11.0.0-M9 release [This commit notification would consist of 70 parts, which exceeds the limit of 50 ones, so it was shortened to the summary.] ---

Re: [VOTE] Release Apache Tomcat 8.5.91

2023-07-10 Thread Rainer Jung
Am 10.07.23 um 20:15 schrieb Christopher Schultz: All, On 7/6/23 11:31, Christopher Schultz wrote: The proposed Apache Tomcat 8.5.91 release is now available for voting. The notable changes compared to 8.5.90 are: - Add ContextNamingInfoListener, a listener which creates context naming    inf

svn commit: r62921 - /dev/tomcat/tomcat-8/v8.5.91/ /release/tomcat/tomcat-8/v8.5.91/

2023-07-10 Thread schultz
Author: schultz Date: Mon Jul 10 18:23:25 2023 New Revision: 62921 Log: Promote 8.5.91 to released. Added: release/tomcat/tomcat-8/v8.5.91/ - copied from r62920, dev/tomcat/tomcat-8/v8.5.91/ Removed: dev/tomcat/tomcat-8/v8.5.91/

svn commit: r62920 - /dev/tomcat/tomcat-10/v10.1.11/ /release/tomcat/tomcat-10/v10.1.11/

2023-07-10 Thread schultz
Author: schultz Date: Mon Jul 10 18:21:39 2023 New Revision: 62920 Log: Promote 10.1.11 to released. Added: release/tomcat/tomcat-10/v10.1.11/ - copied from r62919, dev/tomcat/tomcat-10/v10.1.11/ Removed: dev/tomcat/tomcat-10/v10.1.11/ -

[VOTE][RESULT] Release Apache Tomcat 10.1.11

2023-07-10 Thread Christopher Schultz
All, The following votes were cast: +1: markt, jfclere, remm, lihan, schultz No other votes were cast, the vote therefore passes. I will begin the release process shortly. Thanks to everyone who contributed to this release. Thanks, -chris On 7/6/23 10:41, Christopher Schultz wrote: The pro

[VOTE][RESULT] Release Apache Tomcat 8.5.91

2023-07-10 Thread Christopher Schultz
All, The following votes were cast: +1: markt, remm, schultz There were no other votes cast, the vote therefore passes. I will begin the release process shortly. Thanks to everyone who contributed to this release. Thanks, -chris On 7/6/23 11:31, Christopher Schultz wrote: The proposed Apa

Re: [VOTE] Release Apache Tomcat 8.5.91

2023-07-10 Thread Christopher Schultz
All, On 7/6/23 11:31, Christopher Schultz wrote: The proposed Apache Tomcat 8.5.91 release is now available for voting. The notable changes compared to 8.5.90 are: - Add ContextNamingInfoListener, a listener which creates context naming   information environment entries. - Add PropertiesRole

svn commit: r62919 - /dev/tomcat/tomcat-11/v11.0.0-M9/ /release/tomcat/tomcat-11/v11.0.0-M9/

2023-07-10 Thread markt
Author: markt Date: Mon Jul 10 17:48:50 2023 New Revision: 62919 Log: Release Apache Tomcat 11.0.0-M9 Added: release/tomcat/tomcat-11/v11.0.0-M9/ - copied from r62918, dev/tomcat/tomcat-11/v11.0.0-M9/ Removed: dev/tomcat/tomcat-11/v11.0.0-M9/ --

Re: [VOTE] Release Apache Tomcat 8.5.91 (unit test failure)

2023-07-10 Thread Mark Thomas
Best I can do here is to say the tests work for me on multiple platforms with default JDK installs. That points to an environmental issue with your setup but not sure what. Mark On 10/07/2023 16:07, Christopher Schultz wrote: All, Ping on this one. I'd like to be able to vote without an [*]

[VOTE][RESULT] Release Apache Tomcat 11.0.0-M9

2023-07-10 Thread Mark Thomas
The following votes were cast: Binding: +1: lihan, markt, remm Non-binding: +1: Dimitris Soumis No other votes were cast. The vote therefore passes. Thanks to everyone who contributed to this release. Mark - To unsubscribe,

[ANN] Apache Tomcat 9.0.78 available

2023-07-10 Thread Rémy Maucherat
The Apache Tomcat team announces the immediate availability of Apache Tomcat 9.0.78. Apache Tomcat 9 is an open source software implementation of the Java Servlet, JavaServer Pages, Java Unified Expression Language, Java WebSocket and JASPIC technologies. Apache Tomcat 9.0.78 is a bugfix and feat

Re: [VOTE] Release Apache Tomcat 8.5.91 (unit test failure)

2023-07-10 Thread Christopher Schultz
All, Ping on this one. I'd like to be able to vote without an [*]. :) -chris On 7/7/23 10:00, Christopher Schultz wrote: All, I'm seeing a unit test failure and I'm not sure it's due to one of the "expected in my environment" cases: This is TEST-org.apache.tomcat.websocket.TestWsWebSocket

[Bug 66669] JVM crash in APR mode

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=9 --- Comment #12 from DigitalCat --- We are anticipating your reply -- You are receiving this mail because: You are the assignee for the bug. - To unsubscribe, e-mail: dev-uns

svn commit: r1910917 - in /tomcat/site/trunk/docs/tomcat-9.0-doc: ./ annotationapi/ annotationapi/javax/annotation/ annotationapi/javax/annotation/security/ annotationapi/javax/annotation/sql/ api/ ap

2023-07-10 Thread remm
Author: remm Date: Mon Jul 10 13:21:33 2023 New Revision: 1910917 URL: http://svn.apache.org/viewvc?rev=1910917&view=rev Log: Docs update for 9.0.78 (part 1) [This commit notification would consist of 75 parts, which exceeds the limit of 50 ones, so it was shortened to the summary.] --

svn commit: r1910918 - in /tomcat/site/trunk/docs/tomcat-9.0-doc/api/org/apache/catalina/core: ContextNamingInfoListener.html PropertiesRoleMappingListener.html

2023-07-10 Thread remm
Author: remm Date: Mon Jul 10 13:22:01 2023 New Revision: 1910918 URL: http://svn.apache.org/viewvc?rev=1910918&view=rev Log: Docs update for 9.0.78 (part 2) Added: tomcat/site/trunk/docs/tomcat-9.0-doc/api/org/apache/catalina/core/ContextNamingInfoListener.html tomcat/site/trunk/docs/t

svn commit: r1910916 - in /tomcat/site/trunk: ./ docs/ xdocs/

2023-07-10 Thread remm
Author: remm Date: Mon Jul 10 13:16:02 2023 New Revision: 1910916 URL: http://svn.apache.org/viewvc?rev=1910916&view=rev Log: Website update for 9.0.78 Modified: tomcat/site/trunk/build.properties.default tomcat/site/trunk/docs/doap_Tomcat.rdf tomcat/site/trunk/docs/download-90.html

[tomcat] branch 9.0.x updated: Add release date for 9.0.78

2023-07-10 Thread remm
This is an automated email from the ASF dual-hosted git repository. remm pushed a commit to branch 9.0.x in repository https://gitbox.apache.org/repos/asf/tomcat.git The following commit(s) were added to refs/heads/9.0.x by this push: new ef22934d33 Add release date for 9.0.78 ef22934d33 is

svn commit: r62911 - /dev/tomcat/tomcat-9/v9.0.78/ /release/tomcat/tomcat-9/v9.0.78/

2023-07-10 Thread remm
Author: remm Date: Mon Jul 10 11:51:25 2023 New Revision: 62911 Log: Release Apache Tomcat 9.0.78 Added: release/tomcat/tomcat-9/v9.0.78/ - copied from r62910, dev/tomcat/tomcat-9/v9.0.78/ Removed: dev/tomcat/tomcat-9/v9.0.78/ --

Re: Plans for August releases

2023-07-10 Thread Rémy Maucherat
On Sun, Jul 9, 2023 at 12:04 PM Mark Thomas wrote: > > > 7 Jul 2023 15:52:30 Christopher Schultz : > > > All, > > > > I will be on holiday around the time I would usually do the monthly > > releases for August, for 10.1.12 and 8.5.92. > > > > I'm happy to do those releases when I return, but if so

[VOTE][RESULT] Release Apache Tomcat 9.0.78

2023-07-10 Thread Rémy Maucherat
The following votes were cast: Binding: +1: markt, lihan, jclere, funkman, remm No other votes were cast. The vote therefore passes. Thanks to everyone who contributed to this release. Rémy - To unsubscribe, e-mail: dev-unsubs

[Bug 66683] New: org.apache.coyote.http11.Http11Processor.service Error parsing HTTP request header, Unexpected state: headers already parsed. Buffer not recycled?

2023-07-10 Thread bugzilla
https://bz.apache.org/bugzilla/show_bug.cgi?id=66683 Bug ID: 66683 Summary: org.apache.coyote.http11.Http11Processor.service Error parsing HTTP request header, Unexpected state: headers already parsed. Buffer not recycled? P