aws-otel-java-instrumentation icon indicating copy to clipboard operation
aws-otel-java-instrumentation copied to clipboard

Bump org.apache.httpcomponents.client5:httpclient5 from 5.2.1 to 5.3.1

Open dependabot[bot] opened this issue 1 year ago • 4 comments

Bumps org.apache.httpcomponents.client5:httpclient5 from 5.2.1 to 5.3.1.

Changelog

Sourced from org.apache.httpcomponents.client5:httpclient5's changelog.

Release 5.3.1

This is a maintenance release that fixes several minor defects and a regression in the Fluent module causing the response body truncation discovered since release 5.3.

Change Log

  • Restored backwards-compatible #createSocket calls in Contributed by Clayton Walker

  • HTTPCLIENT-2315: Client builders fail to apply system properties to the default connection manager. Contributed by Oleg Kalnichevski

  • HTTPCLIENT-2314: Handle gracefully a failure of DnsResolver to return a list of resolved addresses (#533). Contributed by Philip Helger

  • HTTPCLIENT-2314: Throw ConnectionShutdownException in case of pooled connection having been closed or discarded instead of plain IllegalStateException. Contributed by Oleg Kalnichevski

  • HTTPCLIENT-2312: Fixed response body truncation in the fluent API (#521). Contributed by Arturo Bernal

  • HTTPCLIENT-2313: Fixed NullPointerException in PoolingHttpClientConnectionManager when debug logging is enabled. Contributed by Oleg Kalnichevski

Release 5.3

This is the first GA release in the 5.3 release series. This release finalizes the 5.3 APIs and also includes all bug fixes from the 5.2 release branch.

The 5.3 release series introduces support for the Bearer authentication scheme (RFC 6750) and deprecates NTLM and GSS-based experimental authentication schemes in favor of Basic / Bearer authentication with TLS.

Notable changes and features included in the 5.3 series:

  • Introduction of the Bearer authentication scheme.

  • Deprecation of the NTLM authentication scheme.

  • Deprecation of the GSS-based experimental authentication schemes.

... (truncated)

Commits
  • 4f85260 HttpClient 5.3.1 release
  • 2aa9ac6 Updated release notes for HttpClient 5.3.1 release
  • 8d9f9de Updated NOTICE to 2024
  • bece935 Allow backwards-compatible createSocket calls
  • fbd6954 Example demonstrating how to make HttpClient negotiate or force a particular ...
  • 6639de1 Added example demonstrating how to get details of the underlying connection e...
  • d02687d Corrected the use of the wrong request object in the example
  • 679991a HTTPCLIENT-2315: client builders fails to apply system properties to the defa...
  • 1650831 HTTPCLIENT-2314: Handle gracefully a failure of DnsResolver to return a list ...
  • 67519a1 HTTPCLIENT-2314: Throw ConnectionShutdownException in case of pooled connecti...
  • Additional commits viewable in compare view

Dependabot compatibility score

You can trigger a rebase of this PR by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Note Automatic rebases have been disabled on this pull request as it has been open for over 30 days.

dependabot[bot] avatar Jan 30 '24 02:01 dependabot[bot]

Codecov Report

Attention: 102 lines in your changes are missing coverage. Please review.

Comparison is base (09e6487) 85.71% compared to head (045f2a1) 50.73%. Report is 234 commits behind head on main.

Files Patch % Lines
...ent/providers/AwsAppSignalsCustomizerProvider.java 24.00% 35 Missing and 3 partials :warning:
...gent/providers/AwsSpanMetricsProcessorBuilder.java 0.00% 20 Missing :warning:
...ders/AttributePropagatingSpanProcessorBuilder.java 0.00% 16 Missing :warning:
...viders/AwsMetricAttributesSpanExporterBuilder.java 0.00% 11 Missing :warning:
...try/javaagent/providers/AwsSpanProcessingUtil.java 90.16% 1 Missing and 5 partials :warning:
...vaagent/providers/AwsMetricAttributeGenerator.java 96.89% 2 Missing and 3 partials :warning:
...y/javaagent/providers/AwsSpanMetricsProcessor.java 91.48% 0 Missing and 4 partials :warning:
...t/providers/AttributePropagatingSpanProcessor.java 94.59% 2 Missing :warning:

:exclamation: Your organization needs to install the Codecov GitHub app to enable full functionality.

Additional details and impacted files
@@              Coverage Diff              @@
##               main     #734       +/-   ##
=============================================
- Coverage     85.71%   50.73%   -34.99%     
- Complexity       19      264      +245     
=============================================
  Files             3       39       +36     
  Lines            49     1301     +1252     
  Branches          5      141      +136     
=============================================
+ Hits             42      660      +618     
- Misses            3      609      +606     
- Partials          4       32       +28     

:umbrella: View full report in Codecov by Sentry.
:loudspeaker: Have feedback on the report? Share it here.

codecov-commenter avatar Jan 30 '24 03:01 codecov-commenter

This PR is stale because it has been open 60 days with no activity.

github-actions[bot] avatar Mar 31 '24 20:03 github-actions[bot]

This PR is stale because it has been open 60 days with no activity.

github-actions[bot] avatar Jun 09 '24 20:06 github-actions[bot]

A newer version of org.apache.httpcomponents.client5:httpclient5 exists, but since this PR has been edited by someone other than Dependabot I haven't updated it. You'll get a PR for the updated version as normal once this PR is merged.

dependabot[bot] avatar Sep 24 '24 02:09 dependabot[bot]

OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version. You can also ignore all major, minor, or patch releases for a dependency by adding an ignore condition with the desired update_types to your config file.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.

dependabot[bot] avatar Oct 18 '24 18:10 dependabot[bot]