<feed xmlns='http://www.w3.org/2005/Atom'>
<title>delta/cpython-git.git, branch v2.7.16rc1</title>
<subtitle>github.com: python/cpython.git
</subtitle>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/cpython-git.git/'/>
<entry>
<title>Set version to 2.7.16rc1.</title>
<updated>2019-02-16T19:02:20+00:00</updated>
<author>
<name>Benjamin Peterson</name>
<email>benjamin@python.org</email>
</author>
<published>2019-02-16T19:02:20+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/cpython-git.git/commit/?id=baacaac06f93dd624c9d7b3bac0e13fbe34f2d8c'/>
<id>baacaac06f93dd624c9d7b3bac0e13fbe34f2d8c</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Collect 2.7.16rc1 release notes.</title>
<updated>2019-02-16T19:01:44+00:00</updated>
<author>
<name>Benjamin Peterson</name>
<email>benjamin@python.org</email>
</author>
<published>2019-02-16T19:01:44+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/cpython-git.git/commit/?id=44039c2cf1dac274c27aa6fd008a52c103a03520'/>
<id>44039c2cf1dac274c27aa6fd008a52c103a03520</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Update IDLE.app plist copyright date. (GH-11890)</title>
<updated>2019-02-16T07:03:48+00:00</updated>
<author>
<name>Ned Deily</name>
<email>nad@python.org</email>
</author>
<published>2019-02-16T07:03:48+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/cpython-git.git/commit/?id=b27e30553c856394fcadecd43e24ccf62254907e'/>
<id>b27e30553c856394fcadecd43e24ccf62254907e</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>[2.7] bpo-33570: Enable OpenSSL 1.1.1 testing within the multissltests (GH-11879)</title>
<updated>2019-02-15T18:01:27+00:00</updated>
<author>
<name>stratakis</name>
<email>cstratak@redhat.com</email>
</author>
<published>2019-02-15T18:01:27+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/cpython-git.git/commit/?id=c3c49ec56890d9d591f8fd1609c8436019f28f96'/>
<id>c3c49ec56890d9d591f8fd1609c8436019f28f96</id>
<content type='text'>
multissltests: fix _build_src(), add 'cwd' variable.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
multissltests: fix _build_src(), add 'cwd' variable.
</pre>
</div>
</content>
</entry>
<entry>
<title>[2.7] bpo-32947: Fixes for TLS 1.3 and OpenSSL 1.1.1 (GH-8761) (GH-11876)</title>
<updated>2019-02-15T17:27:44+00:00</updated>
<author>
<name>stratakis</name>
<email>cstratak@redhat.com</email>
</author>
<published>2019-02-15T17:27:44+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/cpython-git.git/commit/?id=2149a9ad7a9d39d7d680ec0fb602042c91057484'/>
<id>2149a9ad7a9d39d7d680ec0fb602042c91057484</id>
<content type='text'>
Backport of TLS 1.3 related fixes from 3.7.

Misc fixes and workarounds for compatibility with OpenSSL 1.1.1 from git
master and TLS 1.3 support. With OpenSSL 1.1.1, Python negotiates TLS 1.3 by
default. Some test cases only apply to TLS 1.2.

OpenSSL 1.1.1 has added a new option OP_ENABLE_MIDDLEBOX_COMPAT for TLS
1.3. The feature is enabled by default for maximum compatibility with
broken middle boxes. Users should be able to disable the hack and CPython's test suite needs
it to verify default options

Signed-off-by: Christian Heimes &lt;christian@python.org&gt;
(cherry picked from commit 2a4ee8aa01d61b6a9c8e9c65c211e61bdb471826)</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Backport of TLS 1.3 related fixes from 3.7.

Misc fixes and workarounds for compatibility with OpenSSL 1.1.1 from git
master and TLS 1.3 support. With OpenSSL 1.1.1, Python negotiates TLS 1.3 by
default. Some test cases only apply to TLS 1.2.

OpenSSL 1.1.1 has added a new option OP_ENABLE_MIDDLEBOX_COMPAT for TLS
1.3. The feature is enabled by default for maximum compatibility with
broken middle boxes. Users should be able to disable the hack and CPython's test suite needs
it to verify default options

Signed-off-by: Christian Heimes &lt;christian@python.org&gt;
(cherry picked from commit 2a4ee8aa01d61b6a9c8e9c65c211e61bdb471826)</pre>
</div>
</content>
</entry>
<entry>
<title>Fixup from test_ssl test_default_ecdh_curve (GH-11877)</title>
<updated>2019-02-15T16:18:58+00:00</updated>
<author>
<name>stratakis</name>
<email>cstratak@redhat.com</email>
</author>
<published>2019-02-15T16:18:58+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/cpython-git.git/commit/?id=28eb87f4f558952f259fada7be1ab5b31b8a91ef'/>
<id>28eb87f4f558952f259fada7be1ab5b31b8a91ef</id>
<content type='text'>
Partial backport from cb5b68abdeb1b1d56c581d5b4d647018703d61e3

Co-authored-by: Christian Heimes &lt;christian@python.org&gt;</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Partial backport from cb5b68abdeb1b1d56c581d5b4d647018703d61e3

Co-authored-by: Christian Heimes &lt;christian@python.org&gt;</pre>
</div>
</content>
</entry>
<entry>
<title>[2.7] bpo-28043: improved default settings for SSLContext (GH-10608)</title>
<updated>2019-02-15T14:24:11+00:00</updated>
<author>
<name>stratakis</name>
<email>cstratak@redhat.com</email>
</author>
<published>2019-02-15T14:24:11+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/cpython-git.git/commit/?id=b8eaec697a2b5d9d2def2950a0aa50e8ffcf1059'/>
<id>b8eaec697a2b5d9d2def2950a0aa50e8ffcf1059</id>
<content type='text'>
The options OP_NO_COMPRESSION, OP_CIPHER_SERVER_PREFERENCE,
OP_SINGLE_DH_USE, OP_SINGLE_ECDH_USE, OP_NO_SSLv2 (except
for PROTOCOL_SSLv2), and OP_NO_SSLv3 (except for PROTOCOL_SSLv3)
are set by default. The initial cipher suite list contains only
HIGH ciphers, no NULL ciphers and MD5 ciphers (except for PROTOCOL_SSLv2).

(cherry picked from commit 358cfd426ccc0fcd6a7940d306602138e76420ae)</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
The options OP_NO_COMPRESSION, OP_CIPHER_SERVER_PREFERENCE,
OP_SINGLE_DH_USE, OP_SINGLE_ECDH_USE, OP_NO_SSLv2 (except
for PROTOCOL_SSLv2), and OP_NO_SSLv3 (except for PROTOCOL_SSLv3)
are set by default. The initial cipher suite list contains only
HIGH ciphers, no NULL ciphers and MD5 ciphers (except for PROTOCOL_SSLv2).

(cherry picked from commit 358cfd426ccc0fcd6a7940d306602138e76420ae)</pre>
</div>
</content>
</entry>
<entry>
<title>[2.7] bpo-33570: TLS 1.3 ciphers for OpenSSL 1.1.1 (GH-6976) (GH-8760) (GH-10607)</title>
<updated>2019-02-15T13:17:12+00:00</updated>
<author>
<name>stratakis</name>
<email>cstratak@redhat.com</email>
</author>
<published>2019-02-15T13:17:12+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/cpython-git.git/commit/?id=c49f63c1761ce03df7850b9e0b31a18c432dac64'/>
<id>c49f63c1761ce03df7850b9e0b31a18c432dac64</id>
<content type='text'>
Change TLS 1.3 cipher suite settings for compatibility with OpenSSL
1.1.1-pre6 and newer. OpenSSL 1.1.1 will have TLS 1.3 cipers enabled by
default.

Also update multissltests to test with latest OpenSSL.

Signed-off-by: Christian Heimes &lt;christian@python.org&gt;.
(cherry picked from commit 3e630c541b35c96bfe5619165255e559f577ee71)
Co-authored-by: Christian Heimes &lt;christian@python.org&gt;</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Change TLS 1.3 cipher suite settings for compatibility with OpenSSL
1.1.1-pre6 and newer. OpenSSL 1.1.1 will have TLS 1.3 cipers enabled by
default.

Also update multissltests to test with latest OpenSSL.

Signed-off-by: Christian Heimes &lt;christian@python.org&gt;.
(cherry picked from commit 3e630c541b35c96bfe5619165255e559f577ee71)
Co-authored-by: Christian Heimes &lt;christian@python.org&gt;</pre>
</div>
</content>
</entry>
<entry>
<title>bpo-35746: Credit Colin Read and Nicolas Edet (GH-11866)</title>
<updated>2019-02-15T11:34:17+00:00</updated>
<author>
<name>Victor Stinner</name>
<email>vstinner@redhat.com</email>
</author>
<published>2019-02-15T11:34:17+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/cpython-git.git/commit/?id=826a8b708165796151ad4135b0ddbd79da6d39f1'/>
<id>826a8b708165796151ad4135b0ddbd79da6d39f1</id>
<content type='text'>
Add credit for the cert parser vulnerability. Mention also Cisco
TALOS-2018-0758 identifier.</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Add credit for the cert parser vulnerability. Mention also Cisco
TALOS-2018-0758 identifier.</pre>
</div>
</content>
</entry>
<entry>
<title>Doc sidebar: 3.6 has moved to security-fix mode. (GH-11810)</title>
<updated>2019-02-10T21:43:52+00:00</updated>
<author>
<name>Miss Islington (bot)</name>
<email>31488909+miss-islington@users.noreply.github.com</email>
</author>
<published>2019-02-10T21:43:52+00:00</published>
<link rel='alternate' type='text/html' href='http://91.123.203.49/cgit/delta/cpython-git.git/commit/?id=2f1a317d5fdc45b9d714b067906f612f636ba08e'/>
<id>2f1a317d5fdc45b9d714b067906f612f636ba08e</id>
<content type='text'>
(cherry picked from commit 9db56fb8faaa3cd66e7fe82740a4ae4d786bb27f)

Co-authored-by: Julien Palard &lt;julien@palard.fr&gt;</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
(cherry picked from commit 9db56fb8faaa3cd66e7fe82740a4ae4d786bb27f)

Co-authored-by: Julien Palard &lt;julien@palard.fr&gt;</pre>
</div>
</content>
</entry>
</feed>
