Skip to content

Bump hyper-rustls from 0.23.2 to 0.27.6#173

Closed
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/cargo/hyper-rustls-0.27.6
Closed

Bump hyper-rustls from 0.23.2 to 0.27.6#173
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/cargo/hyper-rustls-0.27.6

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Jun 1, 2025

Bumps hyper-rustls from 0.23.2 to 0.27.6.

Release notes

Sourced from hyper-rustls's releases.

0.27.6

Avoid duplicate dependencies in downstream projects by upgrading to webpki-roots 1.

What's Changed

0.27.5

Refactoring in #245 (first released in 0.25.0) broke the optional enforcement of HTTPS only connections (that is, only HTTPS connections can be made through the connector) on the hyper-rustls HttpsConnector; this was found and fixed in #295.

What's Changed

0.27.4

What's Changed

v/0.27.3

What's Changed

0.27.2

What's Changed

0.27.1

Added

  • New ConnectorBuilder::with_server_name_resolver() fn for specifying an implementation of the ResolveServerName trait to dynamically resolve the subject name used when verifying a server's certificate.
  • New fips feature flag for enabling the aws-lc-rs Rustls crypto provider in FIPS mode.

... (truncated)

Commits
  • e6a2371 Bump version to 0.27.6
  • 76d427f Upgrade webpki-roots to 1
  • 8f9728a build: drop unused dependency on futures-util
  • 426c0a7 Bump version to 0.27.5
  • ae297aa tests: inline tls_config() helper
  • 4d0a441 tests: inline connector setup
  • a38dfae tests: inline trivial helper functions
  • 515822c tests: use concrete type for helper function
  • 5669885 Re-order test module items
  • 985f323 Re-order verifier options
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [hyper-rustls](https://github.com/rustls/hyper-rustls) from 0.23.2 to 0.27.6.
- [Release notes](https://github.com/rustls/hyper-rustls/releases)
- [Commits](rustls/hyper-rustls@v/0.23.2...v/0.27.6)

---
updated-dependencies:
- dependency-name: hyper-rustls
  dependency-version: 0.27.6
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Jun 1, 2025

The reviewers field in the dependabot.yml file will be removed soon. Please use the code owners file to specify reviewers for Dependabot PRs. For more information, see this blog post.

@dependabot dependabot bot requested a review from a team June 1, 2025 10:25
@dependabot dependabot bot added dependencies Pull requests that update a dependency file rust Pull requests that update Rust code labels Jun 1, 2025
@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Jul 1, 2025

Superseded by #174.

@dependabot dependabot bot closed this Jul 1, 2025
@dependabot dependabot bot deleted the dependabot/cargo/hyper-rustls-0.27.6 branch July 1, 2025 12:04
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file rust Pull requests that update Rust code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants