git/list[1] front-page[2] threads[3] people[4] search[5] about
 

Re: What's up with the GIT archive on www.kernel.org?

From
TLTony Luck <tony.luck@gmail.com>
Date
Sep 12, 2005, 18:22 UTC
Message-ID
<12c511ca050912112266470d8b@mail.gmail.com>
In-Reply-To
<Pine.LNX.4.58.0509111422510.3242@g5.osdl.org>
On 9/11/05, Linus Torvalds <torvalds@osdl.org> wrote:
> There is such an anonymous server, btw: "git-daemon" implements anonymous
> access much more efficient than rsync/http. Sadly, kernel.org still
> doesn't offer it (but it's now used in the wild, ie I've done a couple of
> merges with people running the git daemon).

Should the git daemon take a look at objects/info/alternates to check that if it exists, it points to a repository that also has a "git-daemon-export-ok" file? I don't see that this could be used for anything nasty, but it does provide a loophole where the daemon may open files outside the initial repository ... so a sanity check seems in order.

-Tony
Previous: H. Peter AnvinNext: Linus Torvalds
Message 16 of 18 in “Re: What's up with the GIT archive on www.kernel.org?”
  1. Linus TorvaldsSep 11, 2005
  2. Sam RavnborgSep 11, 2005
  3. Linus TorvaldsSep 11, 2005
  4. Roland DreierSep 11, 2005
  5. Linus TorvaldsSep 11, 2005
  6. Linus TorvaldsSep 11, 2005
  7. Junio C HamanoSep 12, 2005
  8. Dmitry TorokhovSep 12, 2005
  9. Ryan AndersonSep 12, 2005
  10. Linus TorvaldsSep 12, 2005
  11. Define relative .git/objects/info/alternates semantics.Junio C Hamano, Sep 13, 2005
  12. Linus TorvaldsSep 13, 2005
  13. Junio C HamanoSep 13, 2005
  14. Daniel BarkalowSep 13, 2005
  15. H. Peter AnvinSep 12, 2005
  16. Tony LuckSep 12, 2005
  17. Linus TorvaldsSep 12, 2005
  18. Junio C HamanoSep 11, 2005

Read the whole thread, see it on lore, or plain text.

$ cat FOOTERMessages come from the public archive at lore.kernel.org/git, fetched every hour. The front page is chosen and written each morning by an AI editor and can be wrong; the threads themselves are the record. About and API. For agents: an MCP server at https://gitlist.dev/mcp, and any thread, story or person page as Markdown by adding .md to its URL (or sending Accept: text/markdown). Details in /llms.txt.