Commit 3e6d457
committed
fix(signing): add the webhook target-uri code and reject authorities that empty
Two review corrections.
1. The spec DOES define the webhook twin. security.mdx's webhook checklist
lists `webhook_target_uri_malformed` in the error taxonomy and requires it
at step 10 for a malformed or mismatched authority. The earlier claim that
no webhook twin existed came from grepping this repo rather than the spec,
and retagging onto `webhook_signature_header_malformed` put a stable but
WRONG code on the wire. Adds WEBHOOK_TARGET_URI_MALFORMED and maps
REQUEST_TARGET_URI_MALFORMED to it. The name breaks the
`webhook_signature_` prefix the rest of the family carries because the spec
names it that way.
2. `_canon_host` stripped the trailing root dot AFTER
`_malformed_authority_reason` had already accepted the netloc, and the raw
netloc `.` is non-empty and passes as a host. So `https://./p`
canonicalized to `https:///p` -- the empty authority this module rejects as
`malformed-empty-authority`, reached by a path that ran the gate too early.
`https://../p` yielded the authority `.`.
The check now re-runs after the strip and is stated as "no empty label", so
`https://a..b/p` is covered too.
Refs #978, #977.1 parent 9be012b commit 3e6d457
4 files changed
Lines changed: 50 additions & 14 deletions
File tree
- src/adcp/signing
- tests/conformance/signing
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
267 | 267 | | |
268 | 268 | | |
269 | 269 | | |
| 270 | + | |
| 271 | + | |
| 272 | + | |
| 273 | + | |
| 274 | + | |
| 275 | + | |
| 276 | + | |
| 277 | + | |
270 | 278 | | |
271 | 279 | | |
272 | 280 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
116 | 116 | | |
117 | 117 | | |
118 | 118 | | |
| 119 | + | |
| 120 | + | |
| 121 | + | |
| 122 | + | |
| 123 | + | |
| 124 | + | |
| 125 | + | |
119 | 126 | | |
120 | 127 | | |
121 | 128 | | |
122 | 129 | | |
123 | 130 | | |
124 | 131 | | |
125 | 132 | | |
126 | | - | |
127 | | - | |
128 | | - | |
129 | | - | |
130 | | - | |
131 | | - | |
132 | | - | |
133 | | - | |
| 133 | + | |
134 | 134 | | |
135 | 135 | | |
136 | 136 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
203 | 203 | | |
204 | 204 | | |
205 | 205 | | |
| 206 | + | |
| 207 | + | |
| 208 | + | |
| 209 | + | |
| 210 | + | |
| 211 | + | |
| 212 | + | |
| 213 | + | |
| 214 | + | |
| 215 | + | |
| 216 | + | |
| 217 | + | |
| 218 | + | |
| 219 | + | |
| 220 | + | |
| 221 | + | |
| 222 | + | |
| 223 | + | |
| 224 | + | |
| 225 | + | |
| 226 | + | |
| 227 | + | |
| 228 | + | |
| 229 | + | |
| 230 | + | |
Lines changed: 9 additions & 6 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
38 | 38 | | |
39 | 39 | | |
40 | 40 | | |
41 | | - | |
| 41 | + | |
42 | 42 | | |
43 | 43 | | |
44 | 44 | | |
| |||
164 | 164 | | |
165 | 165 | | |
166 | 166 | | |
167 | | - | |
168 | | - | |
169 | | - | |
| 167 | + | |
| 168 | + | |
| 169 | + | |
| 170 | + | |
| 171 | + | |
| 172 | + | |
170 | 173 | | |
171 | 174 | | |
172 | 175 | | |
| |||
180 | 183 | | |
181 | 184 | | |
182 | 185 | | |
183 | | - | |
| 186 | + | |
184 | 187 | | |
185 | | - | |
| 188 | + | |
186 | 189 | | |
187 | 190 | | |
188 | 191 | | |
| |||
0 commit comments