From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received-SPF: None (no SPF record) identity=mailfrom; client-ip=15.241.140.73; helo=g4t3427.houston.hpe.com; envelope-from=thomas.palmer@hpe.com; receiver=edk2-devel@lists.01.org Received: from g4t3427.houston.hpe.com (g4t3427.houston.hpe.com [15.241.140.73]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ml01.01.org (Postfix) with ESMTPS id 964B722106DC3 for ; Thu, 29 Mar 2018 11:11:14 -0700 (PDT) Received: from G2W6310.americas.hpqcorp.net (g2w6310.austin.hp.com [16.197.64.52]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by g4t3427.houston.hpe.com (Postfix) with ESMTPS id 579D44E; Thu, 29 Mar 2018 18:17:53 +0000 (UTC) Received: from G4W9120.americas.hpqcorp.net (2002:10d2:150f::10d2:150f) by G2W6310.americas.hpqcorp.net (2002:10c5:4034::10c5:4034) with Microsoft SMTP Server (TLS) id 15.0.1178.4; Thu, 29 Mar 2018 18:17:53 +0000 Received: from NAM01-BN3-obe.outbound.protection.outlook.com (15.241.52.12) by G4W9120.americas.hpqcorp.net (16.210.21.15) with Microsoft SMTP Server (TLS) id 15.0.1178.4 via Frontend Transport; Thu, 29 Mar 2018 18:17:53 +0000 Received: from TU4PR8401MB1086.NAMPRD84.PROD.OUTLOOK.COM (10.169.48.9) by TU4PR8401MB0590.NAMPRD84.PROD.OUTLOOK.COM (10.169.44.21) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.609.10; Thu, 29 Mar 2018 18:17:51 +0000 Received: from TU4PR8401MB1086.NAMPRD84.PROD.OUTLOOK.COM ([fe80::2c7b:349e:b098:30e9]) by TU4PR8401MB1086.NAMPRD84.PROD.OUTLOOK.COM ([fe80::2c7b:349e:b098:30e9%17]) with mapi id 15.20.0609.012; Thu, 29 Mar 2018 18:17:50 +0000 From: "Palmer, Thomas" To: Laszlo Ersek , edk2-devel-01 CC: Ruiyu Ni , Eric Dong , "Ard Biesheuvel" , Jordan Justen , "Lin, Gary" , Anthony Perard , Star Zeng Thread-Topic: [edk2] [PATCH 0/4] MdeModulePkg, OvmfPkg: support large CA cert list for HTTPS boot Thread-Index: AQHTxtMoGH8rxtpkC0a9WZAypb1YnKPmpOrQgAB3ngCAAGotwA== Date: Thu, 29 Mar 2018 18:17:50 +0000 Message-ID: References: <20180328202651.1478-1-lersek@redhat.com> In-Reply-To: Accept-Language: en-US X-MS-Has-Attach: X-MS-TNEF-Correlator: authentication-results: spf=none (sender IP is ) smtp.mailfrom=thomas.palmer@hpe.com; x-originating-ip: [15.203.227.15] x-ms-publictraffictype: Email x-microsoft-exchange-diagnostics: 1; TU4PR8401MB0590; 7:j4doZp3p0yAxxSYPWrX3UUr5VqnY2uVmXOQUQl999DaDNyZvBSIUp3wnvHwjwNR0nVW5aLdc+i9bYswAOnrlHDvM73c2RWVP0sljAg6bEdFnpXqDV6iL7aDqRTtnOV2l/Qn/dsA7nLAzi7yuc9cuQsnzLrVjm+cT8t5EKMWqShkyEKFNHEd5rVId3/L6U1Zzlm+uCBJhG0Y3ihedD3IyNV1Hdsqex1pD+pHgK42UQoZLQooOlVwyPHDMSzUtxAgl x-ms-exchange-antispam-srfa-diagnostics: SOS; x-ms-office365-filtering-ht: Tenant x-ms-office365-filtering-correlation-id: 4624d80e-198d-45b6-90cb-08d595a16204 x-microsoft-antispam: UriScan:(222181515654134); BCL:0; PCL:0; RULEID:(7020095)(4652020)(8989060)(48565401081)(5600026)(4604075)(3008032)(4534165)(4627221)(201703031133081)(201702281549075)(8990040)(2017052603328)(7153060)(7193020); SRVR:TU4PR8401MB0590; x-ms-traffictypediagnostic: TU4PR8401MB0590: x-ld-processed: 105b2061-b669-4b31-92ac-24d304d195dc,ExtAddr x-microsoft-antispam-prvs: x-exchange-antispam-report-test: UriScan:(227479698468861)(158342451672863)(162533806227266)(70601490899591)(222181515654134)(228905959029699); x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(8211001083)(6040522)(2401047)(5005006)(8121501046)(93006095)(93001095)(10201501046)(3002001)(3231221)(944501327)(52105095)(6055026)(6041310)(20161123560045)(20161123558120)(20161123564045)(201703131423095)(201702281528075)(20161123555045)(201703061421075)(201703061406153)(20161123562045)(6072148)(201708071742011); SRVR:TU4PR8401MB0590; BCL:0; PCL:0; RULEID:; SRVR:TU4PR8401MB0590; x-forefront-prvs: 0626C21B10 x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(346002)(396003)(39860400002)(376002)(366004)(39380400002)(199004)(189003)(13464003)(6246003)(68736007)(186003)(6506007)(5660300001)(5250100002)(53936002)(81166006)(229853002)(81156014)(8676002)(26005)(102836004)(106356001)(7696005)(99286004)(76176011)(53546011)(105586002)(2900100001)(25786009)(66066001)(3846002)(97736004)(6116002)(486005)(316002)(446003)(486005)(33656002)(14454004)(74316002)(2906002)(6436002)(478600001)(9686003)(8936002)(11346002)(7736002)(8666007)(3280700002)(4326008)(3660700001)(54906003)(55016002)(305945005)(86362001)(110136005)(476003); DIR:OUT; SFP:1102; SCL:1; SRVR:TU4PR8401MB0590; H:TU4PR8401MB1086.NAMPRD84.PROD.OUTLOOK.COM; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en; received-spf: None (protection.outlook.com: hpe.com does not designate permitted sender hosts) x-microsoft-antispam-message-info: AEN9LhSI8dmKazIEv6Aqw42EVAdZEcSiFUB/m0Sj2RkEHyKgPc5h85zA7yrveV52tVmdyVpL7PiBo26C9lFTy6sKT7HYKhpyKn2RtZEOhTzcRkW9Ja/VMmCpOfTTVRUFfmlXDEwSxQTi7IpNSRq7ciUi2bPPwdYfSntVfCgdY1jobVXhP8YmB2rW0o7iESf0JRLAUhgUWHYsP6lHLhj0EKwFkC1lNDEVRHvQFtzWsSdzLKsoOCL54sXeFKZ2FZGgmNbHcpK63aTGj2LgT9mzfoiDg1D17z9dsPVnpNqlTDobBKktE141Xv0/4cxabOIpB+4456wMJ84QBsoO5G32MA== spamdiagnosticoutput: 1:99 spamdiagnosticmetadata: NSPM MIME-Version: 1.0 X-MS-Exchange-CrossTenant-Network-Message-Id: 4624d80e-198d-45b6-90cb-08d595a16204 X-MS-Exchange-CrossTenant-originalarrivaltime: 29 Mar 2018 18:17:50.9064 (UTC) X-MS-Exchange-CrossTenant-fromentityheader: Hosted X-MS-Exchange-CrossTenant-id: 105b2061-b669-4b31-92ac-24d304d195dc X-MS-Exchange-Transport-CrossTenantHeadersStamped: TU4PR8401MB0590 X-OriginatorOrg: hpe.com Subject: Re: [PATCH 0/4] MdeModulePkg, OvmfPkg: support large CA cert list for HTTPS boot X-BeenThere: edk2-devel@lists.01.org X-Mailman-Version: 2.1.26 Precedence: list List-Id: EDK II Development List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 29 Mar 2018 18:11:15 -0000 Content-Language: en-US Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: base64 U29ycnkgdG8gbWlzcyB5b3UgdGhpcyB0aW1lLCBtYXliZSBuZXh0Lg0KDQpZZXMsIEkgd2FzIGZp bmUgdGhlIGZpeGVzIGJ1dCB3YW50ZWQgdG8ga25vdyAid2h5Ii4gVGhhbmtzDQoNCg0KUmVnYXJk cywNCg0KVGhvbWFzIFBhbG1lcg0KDQrigJxJIGhhdmUgb25seSBtYWRlIHRoaXMgbGV0dGVyIGxv bmdlciBiZWNhdXNlIEkgaGF2ZSBub3QgaGFkIHRoZSB0aW1lIHRvIG1ha2UgaXQgc2hvcnRlcuKA nSAtIEJsYWlzZSBQYXNjYWwNCg0KLS0tLS1PcmlnaW5hbCBNZXNzYWdlLS0tLS0NCkZyb206IExh c3psbyBFcnNlayBbbWFpbHRvOmxlcnNla0ByZWRoYXQuY29tXSANClNlbnQ6IFRodXJzZGF5LCBN YXJjaCAyOSwgMjAxOCA2OjU3IEFNDQpUbzogUGFsbWVyLCBUaG9tYXMgPHRob21hcy5wYWxtZXJA aHBlLmNvbT47IGVkazItZGV2ZWwtMDEgPGVkazItZGV2ZWxAbGlzdHMuMDEub3JnPg0KQ2M6IFJ1 aXl1IE5pIDxydWl5dS5uaUBpbnRlbC5jb20+OyBFcmljIERvbmcgPGVyaWMuZG9uZ0BpbnRlbC5j b20+OyBBcmQgQmllc2hldXZlbCA8YXJkLmJpZXNoZXV2ZWxAbGluYXJvLm9yZz47IEpvcmRhbiBK dXN0ZW4gPGpvcmRhbi5sLmp1c3RlbkBpbnRlbC5jb20+OyBMaW4sIEdhcnkgPEdMaW5Ac3VzZS5j b20+OyBBbnRob255IFBlcmFyZCA8YW50aG9ueS5wZXJhcmRAY2l0cml4LmNvbT47IFN0YXIgWmVu ZyA8c3Rhci56ZW5nQGludGVsLmNvbT4NClN1YmplY3Q6IFJlOiBbZWRrMl0gW1BBVENIIDAvNF0g TWRlTW9kdWxlUGtnLCBPdm1mUGtnOiBzdXBwb3J0IGxhcmdlIENBIGNlcnQgbGlzdCBmb3IgSFRU UFMgYm9vdA0KDQpPbiAwMy8yOS8xOCAwNjo1NiwgUGFsbWVyLCBUaG9tYXMgd3JvdGU6DQo+IExh c3psbywNCj4NCj4gICAgICAgKEZpcnN0LCBhcmUgeW91IGFyZSBwbHVnZmVzdD8gTGV0J3MgY2hh dC4pDQoNCkkgbGlrZSBjaGF0dGluZyA6KSBidXQgSSdtIG5vdCBhdCB0aGUgcGx1Z2Zlc3QuIEkg dHJhdmVsIG9ubHkgb25jZSBwZXIgeWVhciwgYW5kIHRoYXQncyB0byB0aGUgS1ZNIEZvcnVtLg0K DQo+ICAgICAgIFNlY29uZCwgd2hhdCBuZWVkIGRvIHlvdSBzZWUgZm9yIGhhdmluZyBLQiB3b3J0 aCBvZiBDQSBhdCBVRUZJJ3MNCj4gICAgICAgZGlzcG9zYWw/IElmIEhUVFBTIGZlYXR1cmUgaXMg cHJpbWFyaWx5IGZvciBQWEUgYm9vdGluZyBPUydzLA0KPiAgICAgICB0aGVuIGl0IGlzIGxpa2Vs eSB0aGUgSVQgYWRtaW5pc3RyYXRvciB3aG8gc2V0dXAgdGhlIFBYRSBzZXJ2ZXINCj4gICAgICAg YWxzbyBoYXMgYSBzaW5nbGUgQ0EgdGhleSB3YW50IHVzZSBmb3IgUFhFLiAgIEJ5IGFsbG93aW5n IGFueQ0KPiAgICAgICBhbmQgZXZlcnkgQ0EgdG8gYmUgaW5zdGFsbGVkIChpbnN0ZWFkIG9mIGhh dmluZyB0aGUgdXNlciBwaWNrDQo+ICAgICAgIG9ubHkgdGhlIGltbWVkaWF0ZWx5IG5lZWRlZCBD QXMpLCB3ZSBpbmFkdmVydGVudGx5IG9wZW4gSFRUUFMgdG8NCj4gICAgICAgc3RhdGUtYmFja2Vk L3dlbGwtZmluYW5jZWQgbWFsaWNpb3VzIGFjdG9ycyB3aG8gY2FuIHBheSBmb3INCj4gICAgICAg cXVhbGl0eSBTU0wgc2lnbmluZyBzZXJ2aWNlcy4gICAoVGhlIGxlc3MgQ0FzIHRoZW4gdGhlIGxl c3MgdGhhdA0KPiAgICAgICBjYW4gZ28gd3JvbmcpLg0KDQpJbiBhIHZpcnQgc2V0dXAsIHdlIGhh dmUgdG8gc3BsaXQgdGhpcyBxdWVzdGlvbiBpbiB0d28uDQoNCigxKSBXaHkgZG8gd2Ugd2FudCB0 byBjb25maWd1cmUgdGhlIGd1ZXN0IGZyb20gdGhlIGhvc3Qgc2lkZT8NCg0KKDIpIFdoeSBkbyB3 ZSB3YW50IHRvIHB1c2ggZG93biBzbyBtYW55IENBIGNlcnRzIHRvIHRoZSBndWVzdD8NCg0KVGhl IGFuc3dlciB0byAoMSkgaXMgcXVpdGUgb2J2aW91czogY29uZmlndXJpbmcgdGhlIGd1ZXN0IGZy b20gdGhlIGhvc3Qgc2lkZSBhbGxvd3MgZm9yIGJldHRlciBhdXRvbWF0aW9uLCBsYXJnZXIgc2Nh bGUgZGVwbG95bWVudCwgaW50ZWdyYXRpb24gd2l0aCBtYW5hZ2VtZW50IHRvb2xzIGV0Yy4NCg0K UmVnYXJkaW5nICgyKSwgdGhlIHByZW1pc2UgaXMgdGhhdCB0aGUgdmlydHVhbGl6YXRpb24gaG9z dCBhZG1pbmlzdHJhdG9yIGhhcyBhIGNhcmVmdWxseSBjdXJhdGVkIHNldCBvZiB0cnVzdGVkIENB IGNlcnRpZmljYXRlcy4gSXQgZG9lcyBub3QgbmVjZXNzYXJpbHkgbmVlZCB0byBiZSB0aGUgZnVs bCBDQSBidW5kbGUgZnJvbSBNb3ppbGxhLCBpdCBqdXN0IG1heSBiZS4NClRoZSBmZWF0dXJlIHRo YXQgZm9sa3MgZnJvbSBvdXIgY3J5cHRvIGFuZCB2aXJ0IG1hbmFnZW1lbnQgdG9vbHMgdGVhbXMg YXJlIHJlcXVlc3RpbmcgaXMgdGhhdCB0aGUgSFRUUFMgY29uZmlndXJhdGlvbiBpbiB0aGUgZ3Vl c3QsIGZvciBPVk1GIG5ldGJvb3RpbmcsIG5vdCByZXF1aXJlICpzZXBhcmF0ZSogYWRtaW5pc3Ry YXRpb24gZnJvbSB0aGUgaG9zdCBDQSBjdXJhdGlvbi4NCg0KKFRoZSBzYW1lIGFwcGxpZXMgdG8g dGhlIHRydXN0ZWQgY2lwaGVyIHN1aXRlcyBhcyB3ZWxsLCBhbmQgSSdtIGdvaW5nIHRvIHBvc3Qg cGF0Y2hlcyBmb3IgdGhhdCB0b28uKQ0KDQo+ICAgICAgIFRoaXMgaXMgbm90IHRvIHByZXZlbnQg eW91ciBwYXRjaGVzIGdvaW5nIGluLCBidXQgd291bGQgbGlrZSB0bw0KPiAgICAgICBlbnN1cmUg bWFudWZhY3R1cmVycyAvIGFkbWlucyBrbm93IGhvdyB0byBwcm9wZXJseSB1c2UgdGhlIENBDQo+ ICAgICAgIGxpc3QNCg0KT2gsIGRlZmluaXRlbHkuIFRoZSBpZGVhIGhlcmUgaXMgKmFic29sdXRl bHkgbm90KiB0byBlbmNvdXJhZ2UgcGxhdGZvcm0gdmVuZG9ycyAocGh5c2ljYWwgb3IgdmlydHVh bCkgdG8gaGVhcCBzaGFkeSBDQXMgaW50byBFRklfVExTX0NBX0NFUlRJRklDQVRFX1ZBUklBQkxF LiBUaGlzIHdvcmsgaXMgYWxsIGFib3V0IG1lY2hhbmlzbSwgbm90IHBvbGljeTsgSSdtIGp1c3Qg YnVpbGRpbmcgdGhlIGNvbmR1aXQgdGhyb3VnaCB3aWNoIHRoZSB2aXJ0IGhvc3QgYWRtaW4gY2Fu IHNlbmQgZG93biB0aGUgQ0EgbGlzdCB0aGF0IHRoZXkgaGF2ZSAqY2FyZWZ1bGx5KiB2ZXR0ZWQg Zm9yIGhvc3Qtc2lkZSB1c2UgYWxyZWFkeS4gSWYgdGhhdCBsaXN0IGNvbnRhaW5zIGp1c3Qgb25l IGNlcnRpZmljYXRlLCBzbyBiZSBpdC4NCg0KSW4gbXkgdGVzdGluZywgdGhlIDE4MktCIG51bWJl ciBjb21lcyBmcm9tIHRoZSBkZWZhdWx0IENBIGJ1bmRsZSBmcm9tIE1vemlsbGEgKHRoZSAiY2Et Y2VydGlmaWNhdGVzIiBwYWNrYWdlKSBvbiBteSBSSEVMLTcgbGFwdG9wLCB3aGljaCAtLSBhcyB5 b3UgY2FuIGxpa2VseSB0ZWxsIDopIC0tIEkgaGF2ZW4ndCBwZXJzb25hbGx5IGZpbHRlcmVkIGRv d24uDQoNClRoYW5rcw0KTGFzemxvDQo=