Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

0.15.0 release preparation #518

Merged
merged 1 commit into from
Mar 25, 2025
Merged

0.15.0 release preparation #518

merged 1 commit into from
Mar 25, 2025

Conversation

cpu
Copy link
Member

@cpu cpu commented Dec 28, 2024

Using this branch both to get the CHANGELOG.md update started, and to track some things I've been considering blockers for finalizing a 0.15.0 release.

Hoping to finalize this in early Jan since I'll be switching to a volunteer contributor Jan 1st and don't know how much bandwidth I'll have for rustls-ffi work afterwards. (Edit: this estimate was indeed overly optimistic :-P)

0.15.0 TODO

Sorry, something went wrong.

@cpu
Copy link
Member Author

cpu commented Mar 16, 2025

Downstream validation

I picked this up today. I started a curl branch and:

  • reworked the Rustls docs to adapt to the removal of the GNU makefile
  • reworked CI to use the pre-built .deb from our CI instead of building rustls-ffi from source
  • cherry-picked yedayak's work on SSLKEYLOGFILE support (fixing one small warning in the process)
  • cherry-picked yedayak's work on client certificate support (and replacing the FIXME with a call to rustls_certified_key_keys_match())
  • implemented support for ECH GREASE, ECH w/ command line b64 encoded ECH config list, and ECH w/ DoH fetched HTTPS config lists.

I haven't looked at the platform verifier bits yet, and the branch needs some tidying, but it does demonstrate ECH working correctly:

[daniel@noire:~/Code/C/curl]$ ./cmake-build-test/src/curl --version
curl 8.13.0-DEV (Linux) libcurl/8.13.0-DEV rustls-ffi/0.15.0/rustls/0.23.22/aws-lc-rs zlib/1.3.1 brotli/1.1.0 zstd/1.5.6 libidn2/2.3.7 libpsl/0.21.5 nghttp2/1.61.0
Release-Date: [unreleased]
Protocols: dict file ftp ftps gopher gophers http https imap imaps ipfs ipns mqtt pop3 pop3s rtsp smtp smtps telnet tftp ws wss
Features: alt-svc AsynchDNS brotli ECH HSTS HTTP2 HTTPS-proxy HTTPSRR IDN IPv6 Largefile libz PSL SSL threadsafe UnixSockets zstd

[daniel@noire:~/Code/C/curl]$ ./cmake-build-test/src/curl -v --ech true --doh-url https://one.one.one.one/dns-query --tlsv1.3 https://cloudflare-ech.com/cdn-cgi/trace 2>/dev/null | grep 'sni='
sni=encrypted

My plan is to wait for rustls/rustls#2383 to land, and then finish the polish on my curl branch (CI passing, test coverage, etc) before finally publishing this release and then opening the curl PR from the WIP branch.

@cpu
Copy link
Member Author

cpu commented Mar 24, 2025

I haven't looked at the platform verifier bits yet, and the branch needs some tidying

I split out some initial tidying and its up for review in curl/curl#16796

I also reworked my WIP branch w/ the 0.15 features and added support for the platform verifier. That work is available in a draft PR on my fork pending the 0.15 release: cpu/curl#1

I think all that's left to do is update the changelog. I'll take a look at that shortly.

@cpu cpu force-pushed the cpu-draft-changelog branch from ce907a8 to 62c600c Compare March 25, 2025 14:08
@cpu cpu changed the title docs: update CHANGELOG for 0.15.0 WIP 0.15.0 release preparation Mar 25, 2025
@cpu cpu requested review from djc and ctz March 25, 2025 14:09
@cpu
Copy link
Member Author

cpu commented Mar 25, 2025

cpu requested review from djc and ctz now

I went through and did a final CHANGELOG.md update pass & I think this is ready to go. Once it's merged I'll cut a release using the CHANGELOG content as the release notes (& attach the pre-built artifacts from the main CI run).

@djc
Copy link
Member

djc commented Mar 25, 2025

cpu requested review from djc and ctz now

I went through and did a final CHANGELOG.md update pass & I think this is ready to go. Once it's merged I'll cut a release using the CHANGELOG content as the release notes (& attach the pre-built artifacts from the main CI run).

Should this stop being a draft then?

@cpu cpu marked this pull request as ready for review March 25, 2025 14:15
@cpu
Copy link
Member Author

cpu commented Mar 25, 2025

Should this stop being a draft then?

Sorry, thought I had already clicked the button. Done!

Copy link
Member

@djc djc left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Looks okay to me!

@cpu cpu force-pushed the cpu-draft-changelog branch from 62c600c to 5027463 Compare March 25, 2025 15:09
@cpu cpu merged commit cfbe105 into rustls:main Mar 25, 2025
46 checks passed
@cpu cpu deleted the cpu-draft-changelog branch March 25, 2025 15:18
@cpu
Copy link
Member Author

cpu commented Mar 25, 2025

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

3 participants