Re: [PATCH] Replace HTTP links with HTTPS ones: security
From: James Morris <jmorris@namei.org>
Date: 2020-07-07 20:28:53
Also in:
keyrings, linux-integrity, lkml
From: James Morris <jmorris@namei.org>
Date: 2020-07-07 20:28:53
Also in:
keyrings, linux-integrity, lkml
On Sun, 5 Jul 2020, Alexander A. Klimov wrote:
Rationale:
Reduces attack surface on kernel devs opening the links for MITM
as HTTPS traffic is much harder to manipulate.
Deterministic algorithm:
For each file:
If not .svg:
For each line:
If doesn't contain `\bxmlns\b`:
For each link, `\bhttp://[^# \t\r\n]*(?:\w|/)`:
If both the HTTP and HTTPS versions
return 200 OK and serve the same content:
Replace HTTP with HTTPS.
Signed-off-by: Alexander A. Klimov <redacted>Thanks. Applied to git://git.kernel.org/pub/scm/linux/kernel/git/jmorris/linux-security.git next-general -- James Morris [off-list ref]