Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(10)

Issue 2108833005: Adds domain names for all qualified CT logs (Closed)

Created:
4 years, 5 months ago by Rob Percival
Modified:
4 years, 5 months ago
CC:
cbentzel+watch_chromium.org, certificate-transparency-chrome_googlegroups.com, chromium-reviews, Eran Messeri
Base URL:
https://chromium.googlesource.com/chromium/src.git@master
Target Ref:
refs/pending/heads/master
Project:
chromium
Visibility:
Public.

Description

Adds domain names for all qualified CT logs This is required for querying those logs over DNS (more specifically, Google mirrors of those logs). BUG=612439 Committed: https://crrev.com/b6f0fc49ec0e4c360d1212bc7832c89a7556c1bd Cr-Commit-Position: refs/heads/master@{#407519}

Patch Set 1 #

Total comments: 8

Patch Set 2 : Addresses Eran's comments #

Total comments: 4

Patch Set 3 : Make dns_domain a required parameter of CtLogVerifier::Create #

Total comments: 4

Patch Set 4 : Use empty string instead of nullptr #

Patch Set 5 : Allow a log's DNS domain to be specified on the command-line #

Patch Set 6 : Updates command-line documentation #

Total comments: 19

Patch Set 7 : Remove #includes from ct_known_logs_static-inc.h and fix a call to CTLogVerifier::Create #

Patch Set 8 : Rebase #

Patch Set 9 : Adds domain names for disqualified logs #

Patch Set 10 : Updates CTLogInfo comment to say log_dns_domain may be empty, not null #

Patch Set 11 : Fixes line length warning #

Patch Set 12 : Slightly more documentation about DNS endpoints for logs #

Unified diffs Side-by-side diffs Delta from patch set Stats (+73 lines, -30 lines) Patch
M chrome/browser/io_thread.cc View 1 2 3 4 5 1 chunk +5 lines, -2 lines 0 comments Download
M chrome/common/chrome_switches.cc View 1 2 3 4 5 6 7 8 9 10 1 chunk +5 lines, -1 line 0 comments Download
M components/certificate_transparency/single_tree_tracker_unittest.cc View 1 2 3 4 5 6 1 chunk +1 line, -1 line 0 comments Download
M net/cert/ct_known_logs.cc View 1 2 chunks +4 lines, -2 lines 0 comments Download
M net/cert/ct_known_logs_static-inc.h View 1 2 3 4 5 6 7 8 9 10 11 6 chunks +28 lines, -11 lines 0 comments Download
M net/cert/ct_log_verifier.h View 1 2 4 chunks +13 lines, -2 lines 0 comments Download
M net/cert/ct_log_verifier.cc View 1 1 chunk +7 lines, -3 lines 0 comments Download
M net/cert/ct_log_verifier_unittest.cc View 1 2 2 chunks +5 lines, -4 lines 0 comments Download
M net/cert/ct_objects_extractor_unittest.cc View 1 2 3 1 chunk +1 line, -1 line 0 comments Download
M net/cert/multi_log_ct_verifier_unittest.cc View 1 2 3 1 chunk +1 line, -1 line 0 comments Download
M net/quic/crypto/proof_verifier_chromium_test.cc View 1 2 3 1 chunk +3 lines, -2 lines 0 comments Download

Messages

Total messages: 60 (34 generated)
commit-bot: I haz the power
Dry run: CQ is trying da patch. Follow status at https://chromium-cq-status.appspot.com/v2/patch-status/codereview.chromium.org/2108833005/1
4 years, 5 months ago (2016-06-28 22:59:50 UTC) #2
Rob Percival
PTAL
4 years, 5 months ago (2016-06-28 23:01:42 UTC) #4
Rob Percival
On 2016/06/28 23:01:42, Rob Percival wrote: > PTAL Note to selves: we ought to add ...
4 years, 5 months ago (2016-06-28 23:05:02 UTC) #5
commit-bot: I haz the power
Dry run: CQ is trying da patch. Follow status at https://chromium-cq-status.appspot.com/v2/patch-status/codereview.chromium.org/2108833005/20001
4 years, 5 months ago (2016-06-28 23:13:03 UTC) #9
commit-bot: I haz the power
Dry run: Try jobs failed on following builders: android_compile_dbg on master.tryserver.chromium.android (JOB_FAILED, https://build.chromium.org/p/tryserver.chromium.android/builders/android_compile_dbg/builds/88922) mac_chromium_compile_dbg_ng on ...
4 years, 5 months ago (2016-06-28 23:30:20 UTC) #11
commit-bot: I haz the power
Dry run: CQ is trying da patch. Follow status at https://chromium-cq-status.appspot.com/v2/patch-status/codereview.chromium.org/2108833005/40001
4 years, 5 months ago (2016-06-28 23:34:02 UTC) #14
commit-bot: I haz the power
Dry run: This issue passed the CQ dry run.
4 years, 5 months ago (2016-06-29 01:11:38 UTC) #16
Eran Messeri
lgtm once the comments about naming are addressed. (I feel we should be explicit here ...
4 years, 5 months ago (2016-06-30 20:02:51 UTC) #17
Rob Percival
https://codereview.chromium.org/2108833005/diff/40001/net/cert/ct_known_logs_static-inc.h File net/cert/ct_known_logs_static-inc.h (right): https://codereview.chromium.org/2108833005/diff/40001/net/cert/ct_known_logs_static-inc.h#newcode24 net/cert/ct_known_logs_static-inc.h:24: const char* const log_domain; On 2016/06/30 at 20:02:51, Eran ...
4 years, 5 months ago (2016-07-08 09:45:42 UTC) #19
Rob Percival
PTAL
4 years, 5 months ago (2016-07-08 09:52:54 UTC) #22
eroman
https://codereview.chromium.org/2108833005/diff/80001/net/cert/ct_known_logs_static-inc.h File net/cert/ct_known_logs_static-inc.h (right): https://codereview.chromium.org/2108833005/diff/80001/net/cert/ct_known_logs_static-inc.h#newcode52 net/cert/ct_known_logs_static-inc.h:52: "digicert.ct.googleapis.com"}, Is it expected that these are all at ...
4 years, 5 months ago (2016-07-16 00:14:28 UTC) #23
Rob Percival
https://codereview.chromium.org/2108833005/diff/80001/net/cert/ct_known_logs_static-inc.h File net/cert/ct_known_logs_static-inc.h (right): https://codereview.chromium.org/2108833005/diff/80001/net/cert/ct_known_logs_static-inc.h#newcode52 net/cert/ct_known_logs_static-inc.h:52: "digicert.ct.googleapis.com"}, On 2016/07/16 00:14:28, eroman wrote: > Is it ...
4 years, 5 months ago (2016-07-18 09:52:28 UTC) #24
eroman
lgtm https://codereview.chromium.org/2108833005/diff/120001/net/cert/ct_objects_extractor_unittest.cc File net/cert/ct_objects_extractor_unittest.cc (right): https://codereview.chromium.org/2108833005/diff/120001/net/cert/ct_objects_extractor_unittest.cc#newcode35 net/cert/ct_objects_extractor_unittest.cc:35: "https://ct.example.com", nullptr); nullptr doesn't make sense to me ...
4 years, 5 months ago (2016-07-18 17:09:46 UTC) #26
Rob Percival
https://codereview.chromium.org/2108833005/diff/120001/net/cert/ct_objects_extractor_unittest.cc File net/cert/ct_objects_extractor_unittest.cc (right): https://codereview.chromium.org/2108833005/diff/120001/net/cert/ct_objects_extractor_unittest.cc#newcode35 net/cert/ct_objects_extractor_unittest.cc:35: "https://ct.example.com", nullptr); On 2016/07/18 17:09:46, eroman wrote: > nullptr ...
4 years, 5 months ago (2016-07-18 18:19:47 UTC) #27
Rob Percival
Hi Ryan, PTAL - this adds domain names for the CT logs, to later be ...
4 years, 5 months ago (2016-07-18 18:49:19 UTC) #33
Ryan Sleevi
Where can I read about the design decision to make the DNS API optional, and ...
4 years, 5 months ago (2016-07-18 19:06:39 UTC) #36
Rob Percival
The decision to make the DNS API optional was a result of the lack of ...
4 years, 5 months ago (2016-07-18 22:20:07 UTC) #39
Ryan Sleevi
Regarding UMA vs chromium-dev vs CT - No, I don't think so. We don't tend ...
4 years, 5 months ago (2016-07-18 23:14:47 UTC) #40
Rob Percival
I'll address everything you've brought up in a new section of the design doc (https://docs.google.com/document/d/1FP5J5Sfsg0OR9P4YT0q1dM02iavhi8ix1mZlZe_z-ls/edit?usp=sharing), ...
4 years, 5 months ago (2016-07-19 00:04:20 UTC) #41
Eran Messeri
https://codereview.chromium.org/2108833005/diff/180001/chrome/browser/io_thread.cc File chrome/browser/io_thread.cc (right): https://codereview.chromium.org/2108833005/diff/180001/chrome/browser/io_thread.cc#newcode542 chrome/browser/io_thread.cc:542: if (command_line.HasSwitch(switches::kCertificateTransparencyLog)) { On 2016/07/18 22:20:06, Rob Percival wrote: ...
4 years, 5 months ago (2016-07-21 15:03:51 UTC) #42
Ryan Sleevi
LGTM although we should continue the discussion in follow-up. https://codereview.chromium.org/2108833005/diff/180001/chrome/browser/io_thread.cc File chrome/browser/io_thread.cc (right): https://codereview.chromium.org/2108833005/diff/180001/chrome/browser/io_thread.cc#newcode542 chrome/browser/io_thread.cc:542: ...
4 years, 5 months ago (2016-07-22 22:35:45 UTC) #43
Rob Percival
Happy for me to submit this then, and possibly remove the command-line flag in a ...
4 years, 5 months ago (2016-07-25 16:41:09 UTC) #48
Ryan Sleevi
On 2016/07/25 16:41:09, Rob Percival wrote: > Happy for me to submit this then, and ...
4 years, 5 months ago (2016-07-25 17:15:58 UTC) #51
commit-bot: I haz the power
CQ is trying da patch. Follow status at https://chromium-cq-status.appspot.com/v2/patch-status/codereview.chromium.org/2108833005/300001
4 years, 5 months ago (2016-07-25 18:15:02 UTC) #56
commit-bot: I haz the power
Committed patchset #12 (id:300001)
4 years, 5 months ago (2016-07-25 18:18:41 UTC) #58
commit-bot: I haz the power
4 years, 5 months ago (2016-07-25 18:21:01 UTC) #60
Message was sent while issue was closed.
Patchset 12 (id:??) landed as
https://crrev.com/b6f0fc49ec0e4c360d1212bc7832c89a7556c1bd
Cr-Commit-Position: refs/heads/master@{#407519}

Powered by Google App Engine
This is Rietveld 408576698