Project

General

Custom queries

Profile

Actions

Feature #6426

closed

HTTP/2 - app-layer-event and normalization when userinfo is in the :authority pseudo header for the http.host header

Added by Brandon Murphy over 1 year ago. Updated over 1 year ago.

Status:
Closed
Priority:
Normal
Target version:
Effort:
Difficulty:
Label:

Description

as per RFC 9113

":authority" MUST NOT include the deprecated userinfo subcomponent for "http" or "https" schemed URIs.

I'm wondering if we can get an app-layer-event for when this occurs and for the information to be normalized out when populating the http.host buffer but leaving it in the http.host.raw buffer.

Attached is a pcap of this occurring.


Files

http2_userinfo_in_authority_1.pcap (1.05 KB) http2_userinfo_in_authority_1.pcap Brandon Murphy, 10/27/2023 08:58 PM

Subtasks 2 (0 open2 closed)

Feature #6430: HTTP/2 - app-layer-event and normalization when userinfo is in the :authority pseudo header for the http.host header (6.0.x backport)ClosedPhilippe AntoineActions
Feature #6507: HTTP/2 - app-layer-event and normalization when userinfo is in the :authority pseudo header for the http.host header (7.0.x backport)ClosedPhilippe AntoineActions
#2

Updated by Victor Julien over 1 year ago

  • Status changed from New to Assigned
  • Assignee changed from OISF Dev to Philippe Antoine
  • Target version changed from TBD to 7.0.3
  • Label Needs backport to 6.0 added
#3

Updated by OISF Ticketbot over 1 year ago

  • Subtask #6430 added
#4

Updated by OISF Ticketbot over 1 year ago

  • Label deleted (Needs backport to 6.0)
#5

Updated by Philippe Antoine over 1 year ago

  • Status changed from Assigned to Resolved
#12

Updated by Philippe Antoine over 1 year ago

  • Status changed from Resolved to In Review
#19

Updated by Victor Julien over 1 year ago

  • Target version changed from 7.0.3 to 8.0.0-beta1
  • Label Needs backport to 7.0 added
#20

Updated by OISF Ticketbot over 1 year ago

  • Subtask #6507 added
#21

Updated by OISF Ticketbot over 1 year ago

  • Label deleted (Needs backport to 7.0)
#22

Updated by Philippe Antoine over 1 year ago

  • Status changed from In Review to Resolved
#24

Updated by Philippe Antoine over 1 year ago

  • Status changed from Resolved to Closed
Actions

Also available in: Atom PDF