| commit | e597ddee0f6ace4167105358e7152d4ba8c700e8 | [log] [tgz] |
|---|---|---|
| author | jprat <jprat@google.com> | Sun Oct 05 14:54:47 2025 -0700 |
| committer | Copybara-Service <copybara-worker@google.com> | Sun Oct 05 14:56:11 2025 -0700 |
| tree | b07403e19bd515cf8d19351e85048675abd30c0e | |
| parent | 30eb0cbcadf2cc73ced01cc927918415c29d9bfd [diff] |
Delay closing QUIC connections on invalid SNI and log the normalized SNI. This change defers closing the connection due to an invalid SNI until after the transport parameters have been processed so that the SNI received in ClientHello can be compared with the SNI received in the transport parameter. This allows for logging the normalized SNI from the ClientHello, even in cases where the SNI is invalid. Protected by FLAGS_quic_reloadable_flag_quic_delay_connection_close_on_invalid_sni. PiperOrigin-RevId: 815464154
QUICHE stands for QUIC, Http, Etc. It is Google‘s production-ready implementation of QUIC, HTTP/2, HTTP/3, and related protocols and tools. It powers Google’s servers, Chromium, Envoy, and other projects. It is actively developed and maintained.
There are two public QUICHE repositories. Either one may be used by embedders, as they are automatically kept in sync:
To embed QUICHE in your project, platform APIs need to be implemented and build files need to be created. Note that it is on the QUICHE team's roadmap to include default implementation for all platform APIs and to open-source build files. In the meanwhile, take a look at open source embedders like Chromium and Envoy to get started:
To contribute to QUICHE, follow instructions at CONTRIBUTING.md.
QUICHE is only supported on little-endian platforms.