Merge lp://staging/~davidc3/unity-scope-reddit/new-ssl-uri into lp://staging/unity-scope-reddit

Proposed by David Callé
Status: Merged
Approved by: David Callé
Approved revision: 6
Merged at revision: 5
Proposed branch: lp://staging/~davidc3/unity-scope-reddit/new-ssl-uri
Merge into: lp://staging/unity-scope-reddit
Diff against target: 12 lines (+1/-1)
1 file modified
src/unity_reddit_daemon.py (+1/-1)
To merge this branch: bzr merge lp://staging/~davidc3/unity-scope-reddit/new-ssl-uri
Reviewer Review Type Date Requested Status
David Callé (community) Approve
PS Jenkins bot (community) continuous-integration Approve
Simon Davy (community) Approve
Chris Wayne (community) Approve
Review via email: mp+217342@code.staging.launchpad.net

Commit message

New API uri

Description of the change

New API uri

To post a comment you must log in.
Revision history for this message
PS Jenkins bot (ps-jenkins) wrote :

FAILED: Continuous integration, rev:5
No commit message was specified in the merge proposal. Click on the following link and set the commit message (if you want a jenkins rebuild you need to trigger it yourself):
https://code.launchpad.net/~davidc3/unity-scope-reddit/new-ssl-uri/+merge/217342/+edit-commit-message

http://jenkins.qa.ubuntu.com/job/unity-scope-reddit-ci/9/
Executed test runs:
    SUCCESS: http://jenkins.qa.ubuntu.com/job/unity-scope-reddit-saucy-amd64-ci/9
    SUCCESS: http://jenkins.qa.ubuntu.com/job/unity-scope-reddit-saucy-armhf-ci/9
    SUCCESS: http://jenkins.qa.ubuntu.com/job/unity-scope-reddit-saucy-i386-ci/9

Click here to trigger a rebuild:
http://s-jenkins.ubuntu-ci:8080/job/unity-scope-reddit-ci/9/rebuild

review: Needs Fixing (continuous-integration)
Revision history for this message
Chris Wayne (cwayne) wrote :

LGTM

review: Approve
Revision history for this message
David Callé (davidc3) wrote :

Thanks Chris, but before merging, I'm reaching to Reddit to get a definitive answer on their ssl API, this one appears to be redirecting to http anyway.

review: Needs Information
Revision history for this message
Olli Ries (ories) wrote :

what about the cert check, suggested by Marc? Ben's comments in the bug also seem to indicate that simply changing the URL won't fix it.

6. By David Callé

Last week of research shows that no proper ssl reddit uri exists today for non-authenticated API calls. Switching to http for the server->reddit talk, user to server is -as always- https

Revision history for this message
Simon Davy (bloodearnest) :
review: Approve
Revision history for this message
Simon Davy (bloodearnest) wrote :

> what about the cert check, suggested by Marc? Ben's comments in the bug also
> seem to indicate that simply changing the URL won't fix it.

It will provide unauthenticated encryption, which is better than no encryption. Only prevents casual eavesdropping, not MITM, but that fix is bit more involved.

review: Approve
Revision history for this message
PS Jenkins bot (ps-jenkins) wrote :
review: Approve (continuous-integration)
Revision history for this message
David Callé (davidc3) :
review: Approve

Preview Diff

[H/L] Next/Prev Comment, [J/K] Next/Prev File, [N/P] Next/Prev Hunk
The diff is not available at this time. You can reload the page or download it.

Subscribers

People subscribed via source and target branches

to all changes: