does someone want to double-check whether I’m right to say "fix your deployment" here: https://github.com/horazont/aioxmpp/issues/324 ?
LNJhas joined
Half-Shot[m]has left
Daniel
Yes
Daniel
I mean it would probably also work if he just sets localhost as a hostname
Daniel
Not sure if and how aioxmpp supports that
jonas’
the setup is weird
jonas’
I think it’s truly remote, but still uses 127.0.0.1 as JID domain
jonas’
told them before that that’s a bad idea
jonas’
we had a very fun thread here already: https://github.com/horazont/aioxmpp/issues/322
Daniel
I mean in any case your verifier isn't wrong
jonas’
I wanted to say that their certificate isn’t for localhost, but for some real internet name
adiaholichas left
Daniel
Though in Conversations it'll accept the hostname as well when you specify it somewhere
Daniel
The important bit is that the user entered it somewhere
jonas’
yeah
jonas’
I could implement that, and I probably should at some point, but it’s a bit tricky (as outlined in my comment) because the way how you can override the hostname is also the way aioxmpp for example stores the SM recnonection point.
jonas’
and that’s where the security implications of trusting the hostnames in that list become slightly more tricky
Daniel
Yeah for a library you can also probably just have the user inject their own verifier
Daniel
You need that anyway if you want to accept self signed certs
jonas’
oh, they could do that, too. but that’s much crazier.
jonas’
and easy to get wrong
jonas’
so I hesitate to recommend that
Daniel
Well given the scope of their crazy deployment...
pdurbinhas joined
jonas’
hm, the hostname does indeed not resolve
jonas’
I mean if it’s purely local, they can just set no_verify=True and call it a day
Nekithas left
Nekithas joined
jonas’
FWIW, for self-signed certs we have the Pinning verifier built-in. It allows for a callback to check the certificate; since that’s interactive it’s disabled by default.
mukt2has left
Daniel
Oh. It's a Cisco thing
Daniel
Obviously
pdurbinhas left
ralphm
pubsub.127.0.0.1. I like it :-D
calvinhas left
mathijshas left
mathijshas joined
jonas’
yeah…
Ellenor Malik
About the inbox XEP on omemo file upload.
They're planning on changing the initialisation vector.
It is the continuation of the saying, that translates as "but to persist (in error), is diabolical".
ralphm
Make of that what you will.
lovetoxhas joined
mukt2has joined
mathijshas left
larmahas joined
mathijshas joined
lorddavidiiihas left
lorddavidiiihas joined
andrey.ghas left
mukt2has left
lorddavidiiihas left
Dele Olajidehas left
larmahas left
lorddavidiiihas joined
Dele Olajidehas joined
lorddavidiiihas left
lorddavidiiihas joined
lorddavidiiihas left
mathijshas left
mathijshas joined
Shellhas joined
stpeterhas joined
Alexhas left
larmahas joined
lorddavidiiihas joined
Wojtekhas left
Shellhas left
Shellhas joined
Dele Olajidehas left
pdurbinhas joined
andyhas left
stpeterhas left
pdurbinhas left
mathijshas left
mukt2has joined
andrey.ghas joined
mathijshas joined
mukt2has left
Wojtekhas joined
Shellhas left
Shellhas joined
Douglas Terabytehas left
Steve Killehas left
Yagizahas left
Shellhas left
Shellhas joined
Shellhas left
Shellhas joined
larmahas left
Steve Killehas joined
Douglas Terabytehas joined
andyhas joined
Shellhas left
Shellhas joined
Alexhas joined
Marchas left
Marchas joined
Alexhas left
mukt2has joined
LNJhas left
larmahas joined
LNJhas joined
Danielhas left
Danielhas joined
mukt2has left
Ellenor Malik
ralphm: isn't there a rule against languages which are not English?
wojtekhas joined
wojtekhas left
ralphm
L.S. I'd make an exception for a bit of Latin now and then. I.e. languages like English, French, Dutch, etc. are full of Latin phrases. E.g. the one above.
debaclehas joined
Ge0rG
There is also a certain kind of people who are full of Latin phrases.
Ellenor Malik
medecins
debaclehas left
debaclehas joined
ralphm
Ge0rG: I'll use simpler words.
Shellhas left
pdurbinhas joined
ellenorhas joined
pdurbinhas left
lovetoxhas left
eevvoorhas joined
lovetoxhas joined
mathijshas left
mathijshas joined
adiaholichas joined
Marandahas left
Marandahas joined
Douglas Terabytehas left
wurstsalathas left
wurstsalathas joined
Nekithas left
krauqhas left
larmahas left
larmahas joined
lorddavidiiihas left
Shellhas joined
larmahas left
Shellhas left
Shellhas joined
jonas’
I need someone to remind me out-of-band that I need to reapply.
jonas’
I totally missed the emails on members@, I’m going to set a calendar reminder, but I know I often unintentionally ignore/miss those, too
MattJ
Oh, thanks
Shellhas left
Shellhas joined
jonas’
Daniel, too
Shellhas left
Shellhas joined
Zash
Roadtrip‽
pep.
I'd be up for another roadtrip!
krauqhas joined
Shellhas left
Shellhas joined
eevvoorhas left
LNJhas left
Ge0rG
jonas’: do you consider xmpp as in band or out of band?