From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from mga05.intel.com (mga05.intel.com [192.55.52.43]) by mx.groups.io with SMTP id smtpd.web12.5278.1570760682564914167 for ; Thu, 10 Oct 2019 19:24:42 -0700 Authentication-Results: mx.groups.io; dkim=missing; spf=pass (domain: intel.com, ip: 192.55.52.43, mailfrom: jiaxin.wu@intel.com) X-Amp-Result: SKIPPED(no attachment in message) X-Amp-File-Uploaded: False Received: from orsmga008.jf.intel.com ([10.7.209.65]) by fmsmga105.fm.intel.com with ESMTP/TLS/DHE-RSA-AES256-GCM-SHA384; 10 Oct 2019 19:24:41 -0700 X-ExtLoop1: 1 X-IronPort-AV: E=Sophos;i="5.67,282,1566889200"; d="scan'208";a="188164022" Received: from fmsmsx107.amr.corp.intel.com ([10.18.124.205]) by orsmga008.jf.intel.com with ESMTP; 10 Oct 2019 19:24:41 -0700 Received: from fmsmsx117.amr.corp.intel.com (10.18.116.17) by fmsmsx107.amr.corp.intel.com (10.18.124.205) with Microsoft SMTP Server (TLS) id 14.3.439.0; Thu, 10 Oct 2019 19:24:41 -0700 Received: from shsmsx106.ccr.corp.intel.com (10.239.4.159) by fmsmsx117.amr.corp.intel.com (10.18.116.17) with Microsoft SMTP Server (TLS) id 14.3.439.0; Thu, 10 Oct 2019 19:24:40 -0700 Received: from shsmsx107.ccr.corp.intel.com ([169.254.9.33]) by SHSMSX106.ccr.corp.intel.com ([169.254.10.119]) with mapi id 14.03.0439.000; Fri, 11 Oct 2019 10:24:39 +0800 From: "Wu, Jiaxin" To: Laszlo Ersek , David Woodhouse , "devel@edk2.groups.io" , "Wang, Jian J" , Bret Barkelew CC: Richard Levitte Subject: Re: [edk2-devel] [PATCH v1 0/4] Support HTTPS HostName validation feature(CVE-2019-14553) Thread-Topic: [edk2-devel] [PATCH v1 0/4] Support HTTPS HostName validation feature(CVE-2019-14553) Thread-Index: AQHVdOXpLhbnPHTEFEiizfw0v9ZmjadBqO+AgAKyoACAAKJOgIALFFnQgAFrQQCAANHBAIAAAryAgAC/l4CAAIIOAIAAJp8AgAECW/A= Date: Fri, 11 Oct 2019 02:24:38 +0000 Message-ID: <895558F6EA4E3B41AC93A00D163B727416F7E4AB@SHSMSX107.ccr.corp.intel.com> References: <20190927034441.3096-1-Jiaxin.wu@intel.com> <69774fe6-ea00-44b9-5468-c092dea6cd36@redhat.com> <8106467c9f4132c831d0aa604e897fe9d4dda12a.camel@infradead.org> <895558F6EA4E3B41AC93A00D163B727416F5D921@SHSMSX107.ccr.corp.intel.com> <777053db79600eb90a19945700293d14f4978344.camel@infradead.org> <6bb5d2f6-ec6f-1766-e19b-03fd45c1bc12@redhat.com> <9A4966EE-76CD-465C-A6CA-70DD9E38D834@infradead.org> <850a81a8-2cdc-0708-4ff7-db9825fdaedc@redhat.com> <23699ae3-10c2-037c-b3f5-ac8f5bea1fb7@redhat.com> In-Reply-To: <23699ae3-10c2-037c-b3f5-ac8f5bea1fb7@redhat.com> Accept-Language: en-US X-MS-Has-Attach: X-MS-TNEF-Correlator: x-titus-metadata-40: eyJDYXRlZ29yeUxhYmVscyI6IiIsIk1ldGFkYXRhIjp7Im5zIjoiaHR0cDpcL1wvd3d3LnRpdHVzLmNvbVwvbnNcL0ludGVsMyIsImlkIjoiY2Y5MjAyMTAtYzc4My00YzJlLWIwMWQtNzY4YzZmODExZjE1IiwicHJvcHMiOlt7Im4iOiJDVFBDbGFzc2lmaWNhdGlvbiIsInZhbHMiOlt7InZhbHVlIjoiQ1RQX05UIn1dfV19LCJTdWJqZWN0TGFiZWxzIjpbXSwiVE1DVmVyc2lvbiI6IjE3LjEwLjE4MDQuNDkiLCJUcnVzdGVkTGFiZWxIYXNoIjoiZjAzS255bVwvek1cL20wOE92QXpQTjk3WXNuOElNditrTEZkT0E4VU52V0ZZZ0N5VjdZR3BSQmJQcW1KSmlVUEZyIn0= x-ctpclassification: CTP_NT dlp-product: dlpe-windows dlp-version: 11.2.0.6 dlp-reaction: no-action x-originating-ip: [10.239.127.40] MIME-Version: 1.0 Return-Path: jiaxin.wu@intel.com Content-Language: en-US Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: base64 SGkgTGFzemxvICYgRGF2aWQsDQoNCkkgdGhpbmsgSSBoYXZlICpyZXBlYXRlZCogc2V2ZXJhbCB0 aW1lcyB0aGF0IHdlIGFyZSB0YXJnZXRpbmcgdG8gZml4IHRoZSBIb3N0TmFtZSB2YWxpZGF0aW9u IGlzc3VlLCBub3QgdGhlIElQIG9yIGVtYWlsIGFkZHJlc3MuICpCdXQqIGV2ZW4gc28sICB0aGUg c2VyaWVzIHBhdGNoZXMgZm9yIFVFRkkgVExTIGlzIGFsc28gYWxsb3dhYmxlIHRvIHNwZWNpZnkg SVAgYXMgaG9zdCBuYW1lIGZvciBDTiBvciBkTlNOYW1lIG9mIFNBTiBpbiB0aGUgY2VydGlmaWNh dGUuIFRoYXQncyB3aHkgSSBzYWlkICJpZiB0aGUgQ04gb3IgU0FOIGluIHRoZSBjZXJ0aWZpY2F0 ZSBhcmUgc2V0IGNvcnJlY3RseSwgaXQgc2hvdWxkIGJlIE9LIHRvIHBhc3MgdGhlIHZlcmlmaWNh dGlvbiIuIFRoZSBmYWlsdXJlIHlvdSBtZW50aW9uZWQgaGVyZSBpcyB0byBzZXQgdGhlIElQIGlu IGlQQWRkcmVzcyBvZiBTQU4sIEkgYWdyZWUgaXQncyB0aGUgcm91dGluZSBhbmQgc3VnZ2VzdGVk IHNldHRpbmcsICpidXQqIG9idmlvdXNseSwgaXQncyBub3QgdGhlIHRhcmdldCB3ZSBhcmUgc3Vw cG9ydGVkIGFjY29yZGluZyB0aGUgaW1wbGVtZW50YXRpb24vZGVzY3JpcHRpb24gb2YgVGxzU2V0 VmVyaWZ5SG9zdC4gV2UgYXJlIHRhcmdldGluZyB0byB0aGUgaG9zdG5hbWUgdmVyaWZpY2F0aW9u LCBhbmQgbWVhbndoaWxlIGNvbXBhdGlibGUgd2l0aCB0aGUgSVAgaW4gdGhlIFVSSSAoQnV0IG5l ZWQgdGhlICpjb3JyZWN0KiBjZXJ0aWZpY2F0ZSBzZXR0aW5nKS4NCg0KSVAgYWRkcmVzc2VzIHN0 b3JlZCBpbiB0aGUgRE5TIG5hbWVzIGFuZCBDTiBhcmUgb2YgY2F1c2UgaWdub3JlZCBieSBYNTA5 X2NoZWNrX2lwICYgWDUwOV9jaGVja19pcF9hc2MoKS4NCg0KUG9zdCBteSBleHBsYWluIGFnYWlu OiANCj4gVUVGSSBUTFMgb25seSBwcm92aWRlcyB0aGUgKkhvc3ROYW1lKiB2ZXJpZmljYXRpb24g aW50ZXJmYWNlIHRvIHVwcGVyIGRyaXZlciAoSHR0cER4ZSksIA0KPiBub3QgdGhlIElQL2VtYWls IHZlcmlmaWNhdGlvbiBjYXBhYmlsaXR5LiBQbGVhc2UgcmVmZXIgdG8gVUVGSSBTcGVjMi44IHNl Y3Rpb24gMjguMTAuMjogICAgIA0KPiAgICAiLi4uVExTIHNlc3Npb24gaG9zdG5hbWUgZm9yIHZh bGlkYXRpb24gd2hpY2ggaXMgdXNlZCB0byB2ZXJpZnkgd2hldGhlciB0aGUgbmFtZSANCj4gICAg IHdpdGhpbiB0aGUgcGVlciBjZXJ0aWZpY2F0ZSBtYXRjaGVzIGEgZ2l2ZW4gaG9zdCBuYW1lLi4u IiANCj4gSW4gdXBwZXIgVUVGSSBIVFRQIGRyaXZlciwgd2UgZ2V0IHRoZSBob3N0bmFtZSBmcm9t IFVSSSBkaXJlY3RseSBubyBtYXR0ZXIgaXQncyB0aGUgcmVhbCANCj4gRlFETiAod3d3Lnh4eC5j b20pIG9yIElQIGFkZHJlc3MgZm9ybWF0IHN0cmluZyAoMS4yLjMuNCBvciAyMDAxOjhiMDoxMGI6 OjUgKG5vdCAiWzIwMDE6OGIwOjEwYjo6NV0pKSwgDQo+IGFuZCBzZXQgaXQgdG8gdGhlIFRMUyBo b3N0bmFtZSBmaWxlZCB2aWEgdGhlIGludGVyZmFjZSAtLSBFRklfVExTX1ZFUklGWV9IT1NULiAN Cj4gVGhhdCdzIGltcGxlbWVudGF0aW9uIGNob2ljZSBmb3IgSHR0cER4ZSB0byBhY2hpZXZlIHRo ZSBIVFRQUyBIb3N0TmFtZSB2YWxpZGF0aW9uIGZlYXR1cmUgDQo+IGJ5IGZvbGxvd2luZyB0aGUg c3RhbmRhcmQgVExTIEhvc3ROYW1lIHZlcmlmaWNhdGlvbiBjYXBhYmlsaXR5Lg0KDQpOb3csIGxl dCdzIHRhbGtpbmcgdGhlIGlQQWRkcmVzcyBzZXR0aW5nIGluIFNBTiAoc2FtZSBhcyBlbWFpbCBh ZGRyZXNzKSwgIGlmIHlvdSBkbyBuZWVkIHN1Y2ggZmVhdHVyZSB0aGF0IHZlcmlmeSB0aGUgSVAg aW4gWDUwOV9jaGVja19pcCAmIFg1MDlfY2hlY2tfaXBfYXNjICwgcGxlYXNlIHJlcG9ydCBuZXcg QnVnemlsbGEgKG5lZWQgVExTIFNwZWMgdXBkYXRlIHRoZSBleHBvc2UgdGhlIHNldHRpbmcgaW50 ZXJmYWNlKSwgZG9uJ3QgbWl4IHVwIHRoZSBIVFRQUyBob3N0bmFtZSB2ZXJpZmljYXRpb24gaGVy ZS4NCg0KVGhhbmtzLA0KSmlheGluIA0KDQoNCg0KDQoNCj4gLS0tLS1PcmlnaW5hbCBNZXNzYWdl LS0tLS0NCj4gRnJvbTogTGFzemxvIEVyc2VrIDxsZXJzZWtAcmVkaGF0LmNvbT4NCj4gU2VudDog RnJpZGF5LCBPY3RvYmVyIDExLCAyMDE5IDI6MDQgQU0NCj4gVG86IERhdmlkIFdvb2Rob3VzZSA8 ZHdtdzJAaW5mcmFkZWFkLm9yZz47IFd1LCBKaWF4aW4NCj4gPGppYXhpbi53dUBpbnRlbC5jb20+ OyBkZXZlbEBlZGsyLmdyb3Vwcy5pbzsgV2FuZywgSmlhbiBKDQo+IDxqaWFuLmoud2FuZ0BpbnRl bC5jb20+OyBCcmV0IEJhcmtlbGV3IDxCcmV0LkJhcmtlbGV3QG1pY3Jvc29mdC5jb20+DQo+IENj OiBSaWNoYXJkIExldml0dGUgPGxldml0dGVAb3BlbnNzbC5vcmc+DQo+IFN1YmplY3Q6IFJlOiBb ZWRrMi1kZXZlbF0gW1BBVENIIHYxIDAvNF0gU3VwcG9ydCBIVFRQUyBIb3N0TmFtZQ0KPiB2YWxp ZGF0aW9uIGZlYXR1cmUoQ1ZFLTIwMTktMTQ1NTMpDQo+IA0KPiBPbiAxMC8xMC8xOSAxNzo0NSwg RGF2aWQgV29vZGhvdXNlIHdyb3RlOg0KPiA+IE9uIFRodSwgMjAxOS0xMC0xMCBhdCAxMDowMCAr MDIwMCwgTGFzemxvIEVyc2VrIHdyb3RlOg0KPiA+Pj4gICAgICAgICAgU3ViamVjdDogQz1IVSwg U1Q9UGVzdCwgTD1CdWRhcGVzdCwgTz1MYXN6bG8gRXJzZWsgSG9tZSBPZmZpY2UsDQo+IE9VPUlQ djYgY2VydCwgQ049ZmQzMzplYjFiOjliMzY6OjINCj4gPg0KPiA+IFllYWgsIHlvdSdyZSBub3Qg YWN0dWFsbHkgdGVzdGluZyB0aGUgY2FzZSBJJ20gdGFsa2luZyBhYm91dC4gWW91IHdhbnQNCj4g PiBhIEdFTl9JUCBpbiB0aGUgeDUwOXYzIFN1YmplY3QgQWx0ZXJuYXRpdmUgTmFtZS4NCj4gPg0K PiA+IENvbXBhcmUgd2l0aC4uLg0KPiA+DQo+ID4gJCBvcGVuc3NsIHNfY2xpZW50ICAtY29ubmVj dCB2cG4taS1oYTAxLmludGVsLmNvbTo0NDMgMj4vZGV2L251bGwgfCBvcGVuc3NsDQo+IHg1MDkg LW5vb3V0IC10ZXh0ICB8IGdyZXAgLUExIEFsdGVybmF0aXZlDQo+ID4gICAgICAgICAgICAgWDUw OXYzIFN1YmplY3QgQWx0ZXJuYXRpdmUgTmFtZToNCj4gPiAgICAgICAgICAgICAgICAgRE5TOnZw bi1pbnQuaW50ZWwuY29tLCBETlM6c2NzaWRjaW50MDEtYS5pbnRlbC5jb20sIElQDQo+IEFkZHJl c3M6MTM0LjE5MS4yMzIuMTAxDQo+ID4NCj4gPiAkIGN1cmwgaHR0cHM6Ly8xMzQuMTkxLjIzMi4x MDEvDQo+ID4NCj4gDQo+IE9LLCB0aGFuayB5b3UuDQo+IA0KPiBJIGNhbiBpbWFnaW5lIHR3byBm YWlsdXJlIG1vZGVzLCB3aXRoIHRoZSBwYXRjaGVzIGFwcGxpZWQuDQo+IA0KPiAoMSkgRWRrMiBp Z25vcmVzIHRoZSBHRU5fSVAgaW4gdGhlIFNBTiwgYW5kIHJlamVjdHMgYSBtYXRjaGluZyBzZXJ2 ZXINCj4gY2VydGlmaWNhdGUuDQo+IA0KPiAoMikgRWRrMiBpcyBjb25mdXNlZCBieSB0aGUgR0VO X0lQIGluIHRoZSBTQU4sIGFuZCBhY2NlcHRzIGFuIGludmFsaWQNCj4gKG1pc21hdGNoZWQpIHNl cnZlciBjZXJ0aWZpY2F0ZS4NCj4gDQo+IENhbiB3ZSB0ZWxsIHdoaWNoIGZhaWx1cmUgbW9kZSBh cHBsaWVzPw0KPiANCj4gKEkgY2FuJ3QgdGVzdCBpdCBlYXNpbHkgbXlzZWxmLCBhcyBJIGRvbid0 IGV2ZW4ga25vdyBob3cgdG8gY3JlYXRlIGENCj4gc2VydmVyIGNlcnRpZmljYXRlIHdpdGggYSBT QU4gLS0gYW55IGtpbmQgb2YgU0FOLCBsZXQgYWxvbmUgR0VOX0lQLikNCj4gDQo+IENhc2UgKDIp IGlzIGNsZWFybHkgYmFkLCBhbmQgaXQgd291bGQgYmUgYSBzaWduIHRoYXQgdGhlIHBhdGNoIHNl cmllcw0KPiBkb2VzIG5vdCBmdWxseSBmaXggdGhlIGlzc3VlLg0KPiANCj4gQ2FzZSAoMSkgd291 bGQgYmUgdG9sZXJhYmxlLCBpbiBteSBvcGluaW9uLiBJIGFzc3VtZSBhIEdFTl9JUCBTQU4gaXMN Cj4gcHJldHR5IHJhcmUgaW4gcHJhY3RpY2UuIFRodXMgcmVncmVzc2luZyBpdCAocGVyaGFwcyB0 ZW1wb3JhcmlseSkgc2hvdWxkDQo+IGJlIGFuIGFjY2VwdGFibGUgdHJhZGUtb2ZmIGZvciBmaXhp bmcgdGhlIGN1cnJlbnQgZ2FwaW5nIGhvbGUgKD0gc3ViamVjdA0KPiBuYW1lIG5vdCBjaGVja2Vk IGF0IGFsbCkuDQo+IA0KPiBUaGFua3MNCj4gTGFzemxvDQo=