moparisthebest, valid points indeed.
i'd still really like to avoid piling more stuff on to HTTPS reliance, and agree that putting it anywhere near experimental will likely get it adopted by someone.
for comparison, i guess matrix's point 3 for s2s resolution is applicable to all this chatter .. https://spec.matrix.org/v1.2/server-server-api/#resolving-server-names
skimming through it, once the HTTPS well-known endpoint (on the requested domain) has delegated to another domain, then further cert validation will be for that delegated_domain (as opposed to the original requested domain)
reimarhas left
Vidakhas left
Vidakhas joined
archas left
pjnhas left
archas joined
TheCoffeMaker
maybe this helps ... maybe not ... but when my ISP desides to let me with no service nothing http realed works but somehow xmpp keeps working, my users send and receive message with no issues (http uploads do not work when that happends) ... so ... have this in mind, not reinventing the wheel over http is not a bug, it's a feature
BASSGODhas left
Andrzejhas joined
intosihas joined
kyemxdenhas left
BASSGODhas joined
ti_gj06has joined
Andrzejhas left
dwdhas joined
wladmishas left
wladmishas joined
intosihas left
adiaholichas left
rafasaurushas left
adiaholichas joined
rafasaurushas joined
dwdhas left
Matthew (away)has left
homebeachhas left
Rixon 👁🗨has left
uhoreghas left
Half-Shothas left
Half-Shothas joined
Matthew (away)has joined
Rixon 👁🗨has joined
uhoreghas joined
homebeachhas joined
Andrzejhas joined
pjnhas joined
wladmishas left
karoshihas joined
Paganinihas left
adiaholichas left
adiaholichas joined
Andrzejhas left
adiaholichas left
adiaholichas joined
Tobiashas joined
intosihas joined
Alexhas joined
xnamedhas left
karoshihas left
Danielhas left
Danielhas joined
Mikaelahas joined
dan.caseleyhas left
dan.caseleyhas joined
dan.caseleyhas left
dan.caseleyhas joined
intosihas left
Maranda[x]has left
Maranda[x]has joined
wurstsalathas joined
restive_monkhas left
adiaholichas left
pjnhas left
rafasaurushas left
msavoritiashas joined
debaclehas joined
emushas joined
adiaholichas joined
rafasaurushas joined
chronosx88has joined
restive_monkhas joined
adiaholichas left
marc0shas left
marc0shas joined
karoshihas joined
restive_monkhas left
intosihas joined
intosihas left
goffihas joined
intosihas joined
adiaholichas joined
ti_gj06has left
restive_monkhas joined
Andrzejhas joined
marc0shas left
marc0shas joined
ti_gj06has joined
pasdesushihas joined
adiaholichas left
adiaholichas joined
marc0shas left
marc0shas joined
Danielhas left
Danielhas joined
TheCoffeMakerhas left
TheCoffeMakerhas joined
flow
moparisthebest, I am not sure if it is guaranteed that we will be with both things forever, and even if, I am not sure if it would be a problem. and I also believe you can't prevent it from happening
Danielhas left
Danielhas joined
marc0shas left
marc0shas joined
flow
maybe we need to define what both things here are, so that we don't talk past each other: secureed information of an XMPPs service's endpoint(s), placed either in DNS or served via HTTP(S). That correct?
Danielhas left
Danielhas joined
ti_gj06has left
Andrzejhas left
adiaholichas left
qwestionhas joined
pjnhas joined
marc0shas left
marc0shas joined
adiaholichas joined
mjkhas joined
djorzhas joined
Danielhas left
Danielhas joined
reimarhas joined
adiaholichas left
adiaholichas joined
ti_gj06has joined
adiaholichas left
adiaholichas joined
Titihas left
chronosx88has left
chronosx88has joined
marc0shas left
marc0shas joined
msavoritiashas left
msavoritiashas joined
beanhas left
Andrzejhas joined
adiaholichas left
restive_monkhas left
adiaholichas joined
intosihas left
intosihas joined
restive_monkhas joined
ti_gj06has left
pjnhas left
mjkhas left
mjkhas joined
lskdjfhas joined
intosihas left
roberthas left
goffihas left
kyemxdenhas joined
debaclehas left
adiaholichas left
marc0shas left
marc0shas joined
marc0shas left
marc0shas joined
adiaholichas joined
intosihas joined
ti_gj06has joined
marc0shas left
marc0shas joined
rafasaurushas left
pjnhas joined
Yagizahas left
roberthas joined
Yagizahas joined
Yagizahas left
Yagizahas joined
rafasaurushas joined
intosihas left
mdosch
What exactly is the issue with srv that get's solved by switching to https?
Link Mauve
Possibly that it isn’t accessible in the web sandbox, but we have XEP-0156 for that.
Matthew (away)has left
Rixon 👁🗨has left
uhoreghas left
homebeachhas left
Half-Shothas left
Half-Shothas joined
Matthew (away)has joined
Rixon 👁🗨has joined
uhoreghas joined
homebeachhas joined
gooyahas joined
ti_gj06has left
marc0shas left
marc0shas joined
marc0shas left
marc0shas joined
ti_gj06has joined
Titihas joined
mjkhas left
gooyahas left
gooyahas joined
mjkhas joined
moparisthebest
flow: yes that's right
reimarhas left
APachhas left
APachhas joined
moparisthebest
mdosch: there are a few more, but the #1 issue I don't see a way around is simply that dnssec isn't widely deployed or even usable on domains like .im
u70jfzo5eyeb468b9ohas left
u70jfzo5eyeb468b9ohas joined
mdosch
Does it matter as long as you authenticate with the service and check it's cert?
dan.caseleyhas left
dan.caseleyhas joined
neshtaxmpphas left
neshtaxmpphas joined
intosihas joined
adiaholichas left
moparisthebest
mdosch: impossible for websocket and Bosh, and secure but not ideal for hosted XMPP services (no support for secure delegation)
pjnhas left
moparisthebest
Other issues: no transport security without sending all your queries directly to cloudflare/Google, impossible to carry additional info like key pinning (think DANE)
adiaholichas joined
moparisthebest
junaid: thanks for the link, kind of odd they decided for a mix of srv and .well-known for a brand new protocol....
millesimushas left
millesimushas joined
rionhas left
rionhas joined
ti_gj06has left
millesimushas left
intosihas left
mjkhas left
mjkhas joined
adiaholichas left
adiaholichas joined
neshtaxmpphas left
u70jfzo5eyeb468b9ohas left
u70jfzo5eyeb468b9ohas joined
neshtaxmpphas joined
neshtaxmpphas left
neshtaxmpphas joined
ti_gj06has joined
reimarhas joined
goffihas joined
intosihas joined
jgarthas left
chronosx88has left
chronosx88has joined
pjnhas joined
intosihas left
rafasaurushas left
rafasaurushas joined
Esbernhas left
mjkhas left
ti_gj06has left
mjkhas joined
millesimushas joined
tykaynhas joined
neshtaxmpphas left
neshtaxmpphas joined
gooyahas left
gooyahas joined
Yagizahas left
mjkhas left
intosihas joined
Matthew (away)has left
homebeachhas left
Rixon 👁🗨has left
uhoreghas left
Half-Shothas left
Half-Shothas joined
Matthew (away)has joined
Rixon 👁🗨has joined
uhoreghas joined
homebeachhas joined
Sevehas left
TheCoffeMakerhas left
mjkhas joined
millesimushas left
Sevehas joined
ti_gj06has joined
intosihas left
millesimushas joined
adiaholichas left
mjkhas left
TheCoffeMakerhas joined
mjkhas joined
adiaholichas joined
mjkhas left
mjkhas joined
Tobiashas left
Tobiashas joined
mjkhas left
mjkhas joined
millesimushas left
Paganinihas joined
millesimushas joined
Friendly Resident Cynichas left
ti_gj06has left
Andrzejhas left
Andrzejhas joined
goffihas left
Titihas left
Maranda[x]has left
Maranda[x]has joined
intosihas joined
karoshihas left
Andrzejhas left
florettahas left
intosihas left
Andrzejhas joined
me9has joined
me9has left
florettahas joined
Calvinhas joined
neshtaxmpphas left
neshtaxmpphas joined
karoshihas joined
Andrzejhas left
stphas left
marc0shas left
marc0shas joined
Andrzejhas joined
harry837374884has left
adiaholichas left
APachhas left
dan.caseleyhas left
dan.caseleyhas joined
adiaholichas joined
qwestionhas left
ti_gj06has joined
APachhas joined
Andrzejhas left
adiaholichas left
adiaholichas joined
harry837374884has joined
ti_gj06has left
intosihas joined
ti_gj06has joined
jgarthas joined
L29Ahhas left
adiaholichas left
harry837374884has left
harry837374884has joined
intosihas left
adiaholichas joined
xnamedhas joined
Andrzejhas joined
marc0shas left
millesimushas left
millesimushas joined
gooyahas left
gooyahas joined
BASSGODhas left
wladmishas joined
marc0shas joined
debaclehas joined
pasdesushihas left
intosihas joined
Friendly Resident Cynichas joined
me9has joined
Titihas joined
chronosx88has left
me9has left
ti_gj06has left
ti_gj06has joined
karoshihas left
rafasaurushas left
chronosx88has joined
millesimushas left
rafasaurushas joined
intosihas left
L29Ahhas joined
Alexhas left
Alexhas joined
karoshihas joined
Alexhas left
Alexhas joined
intosihas joined
goffihas joined
restive_monkhas left
restive_monkhas joined
neshtaxmpphas left
neshtaxmpphas joined
BASSGODhas joined
intosihas left
Dele Olajidehas joined
Dele Olajidehas left
Dele Olajidehas joined
Dele Olajidehas left
Dele Olajidehas joined
florettahas left
florettahas joined
Dele Olajidehas left
adiaholichas left
adiaholichas joined
millesimushas joined
marc0shas left
marc0shas joined
adiaholichas left
adiaholichas joined
Dele Olajidehas joined
Dele Olajidehas left
Dele Olajidehas joined
intosihas joined
Dele Olajidehas left
goffihas left
ti_gj06has left
pasdesushihas joined
intosihas left
dwdhas joined
ti_gj06has joined
mjkhas left
mjkhas joined
BASSGODhas left
BASSGODhas joined
Maranda[x]has left
Maranda[x]has joined
Maranda[x]has left
Maranda[x]has joined
Maranda[x]has left
Maranda[x]has joined
ti_gj06has left
dwdhas left
marc0shas left
marc0shas joined
adiaholichas left
intosihas joined
adiaholichas joined
dwdhas joined
harry837374884has left
harry837374884has joined
stphas joined
intosihas left
dwdhas left
BASSGODhas left
adiaholichas left
dan.caseleyhas left
dan.caseleyhas joined
adiaholichas joined
ti_gj06has joined
florettahas left
BASSGODhas joined
marc0shas left
marc0shas joined
florettahas joined
marc0shas left
marc0shas joined
adiaholichas left
papatutuwawahas joined
emushas left
goffihas joined
chronosx88has left
chronosx88has joined
atomicwatchhas left
xeckshas left
me9has joined
adiaholichas joined
intosihas joined
andrey.ghas joined
xeckshas joined
huhnhas left
adiaholichas left
adiaholichas joined
florettahas left
me9has left
me9has joined
xnamedhas left
xnamedhas joined
Neustradamushas left
Neustradamushas joined
atomicwatchhas joined
intosihas left
adiaholichas left
florettahas joined
adiaholichas joined
restive_monkhas left
chronosx88has left
chronosx88has joined
robertooohas left
gooyahas left
dan.caseleyhas left
dan.caseleyhas joined
Calvinhas left
Andrzejhas left
emushas joined
gooyahas joined
adiaholichas left
chronosx88has left
chronosx88has joined
florettahas left
Andrzejhas joined
intosihas joined
adiaholichas joined
mjkhas left
mjkhas joined
chronosx88has left
adiaholichas left
me9has left
florettahas joined
Neustradamushas left
chronosx88has joined
robertooohas joined
Neustradamushas joined
adiaholichas joined
intosihas left
intosihas joined
adiaholichas left
Mikaelahas left
moparisthebest
xmpp-js is no longer vulnerable to _xmppconnect !
reimarhas left
chronosx88has left
chronosx88has joined
florettahas left
Vaulorhas left
Sevehas left
Sevehas joined
florettahas joined
Vaulorhas joined
intosihas left
msavoritiashas left
msavoritiashas joined
beanhas joined
beanhas left
xnamedhas left
antranigvhas left
florettahas left
sonny
xmpp.js 🙂
florettahas joined
atomicwatchhas left
Alexhas left
Andrzejhas left
Andrzejhas joined
xnamedhas joined
adiaholichas joined
andrey.ghas left
me9has joined
atomicwatchhas joined
adiaholichas left
Andrzejhas left
intosihas joined
harry837374884has left
BASSGODhas left
ti_gj06has left
harry837374884has joined
Andrzejhas joined
intosihas left
moparisthebest
Sorry, and thanks :)
florettahas left
chronosx88has left
Tobiashas left
atomicwatchhas left
atomicwatchhas joined
Andrzejhas left
chronosx88has joined
chronosx88has left
chronosx88has joined
florettahas joined
Andrzejhas joined
chronosx88has left
kyemxdenhas left
kyemxdenhas joined
msavoritiashas left
intosihas joined
andrey.ghas joined
moparisthebest
sonny: sorry haven't got to respond to issue yet, I think leaving 156 around as just a registry for additional rel= definitions like Bosh makes sense, fyi I plan to add more like websocket-s2s and quic c2s and s2s, but I could also see arguments for putting those in their own xep, do you have opinions?