From e899deed46b2f1ab9bff1890482a497cc190ed23 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Fri, 31 Mar 2023 04:11:13 +0000 Subject: [PATCH] build: bump rustls from 0.20.8 to 0.21.0 Bumps [rustls](https://github.com/rustls/rustls) from 0.20.8 to 0.21.0. - [Release notes](https://github.com/rustls/rustls/releases) - [Changelog](https://github.com/rustls/rustls/blob/main/RELEASE_NOTES.md) - [Commits](https://github.com/rustls/rustls/compare/v/0.20.8...v/0.21.0) --- updated-dependencies: - dependency-name: rustls dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] --- Cargo.lock | 30 ++++++++++++++++--- .../rust/ockam/ockam_command/Cargo.toml | 2 +- tools/cargo-deny/deny.toml | 7 +++++ 3 files changed, 34 insertions(+), 5 deletions(-) diff --git a/Cargo.lock b/Cargo.lock index c6bac18dd98..85d212ba922 100644 --- a/Cargo.lock +++ b/Cargo.lock @@ -2494,7 +2494,7 @@ checksum = "1788965e61b367cd03a62950836d5cd41560c3577d90e40e0819373194d1661c" dependencies = [ "http", "hyper", - "rustls", + "rustls 0.20.8", "tokio", "tokio-rustls", ] @@ -3330,7 +3330,7 @@ dependencies = [ "rand", "regex", "reqwest", - "rustls", + "rustls 0.21.0", "rustls-native-certs", "serde", "serde_bare", @@ -4219,7 +4219,7 @@ dependencies = [ "once_cell", "percent-encoding", "pin-project-lite", - "rustls", + "rustls 0.20.8", "rustls-native-certs", "rustls-pemfile", "serde", @@ -4375,6 +4375,18 @@ dependencies = [ "webpki", ] +[[package]] +name = "rustls" +version = "0.21.0" +source = "registry+https://github.com/rust-lang/crates.io-index" +checksum = "07180898a28ed6a7f7ba2311594308f595e3dd2e3c3812fa0a80a47b45f17e5d" +dependencies = [ + "log", + "ring", + "rustls-webpki", + "sct", +] + [[package]] name = "rustls-native-certs" version = "0.6.2" @@ -4396,6 +4408,16 @@ dependencies = [ "base64 0.21.0", ] +[[package]] +name = "rustls-webpki" +version = "0.100.1" +source = "registry+https://github.com/rust-lang/crates.io-index" +checksum = "d6207cd5ed3d8dca7816f8f3725513a34609c0c765bf652b8c3cb4cfd87db46b" +dependencies = [ + "ring", + "untrusted", +] + [[package]] name = "rustversion" version = "1.0.12" @@ -5265,7 +5287,7 @@ version = "0.23.4" source = "registry+https://github.com/rust-lang/crates.io-index" checksum = "c43ee83903113e03984cb9e5cebe6c04a5116269e900e3ddba8f068a62adda59" dependencies = [ - "rustls", + "rustls 0.20.8", "tokio", "webpki", ] diff --git a/implementations/rust/ockam/ockam_command/Cargo.toml b/implementations/rust/ockam/ockam_command/Cargo.toml index 358d5fee828..31aa0170fd1 100644 --- a/implementations/rust/ockam/ockam_command/Cargo.toml +++ b/implementations/rust/ockam/ockam_command/Cargo.toml @@ -91,7 +91,7 @@ strip-ansi-escapes = "0.1.1" validator = "0.16" colorful = "0.2" regex = "1.7.1" -rustls = "0.20.8" +rustls = "0.21.0" rustls-native-certs = "0.6.2" pem-rfc7468 = { version = "0.7.0", features = ["std"]} termimad = "0.23" diff --git a/tools/cargo-deny/deny.toml b/tools/cargo-deny/deny.toml index 4c2447385dc..887e70896db 100644 --- a/tools/cargo-deny/deny.toml +++ b/tools/cargo-deny/deny.toml @@ -38,6 +38,13 @@ license-files = [ { path = "LICENSE", hash = 0x001c7e6c }, ] +[[licenses.clarify]] +name = "rustls-webpki" +expression = "ISC" +license-files = [ + { path = "LICENSE", hash = 0x001c7e6c }, +] + [advisories] unmaintained = "deny" vulnerability = "deny"