git/list[1] front-page[2] threads[3] people[4] search[5] about
 

Re: git-fetch in 1.5.4 fails versus 1.5.3.8

From
Jeff King <peff@peff.net>
Date
Feb 5, 2008, 05:07 UTC
Message-ID
<20080205050741.GA4624@coredump.intra.peff.net>
In-Reply-To
<pan.2008.02.04.18.25.26@progsoc.org>
On Mon, Feb 04, 2008 at 06:25:25PM +0000, Anand Kumria wrote:
Show 9 quoted lines
> $ cat .git/config
> {{ ... }}
> [remote "richard"]
>     url = https://server.example.com/~richard/newfoo.git
>     fetch = +refs/heads/*:refs/remotes/richard/*
> 
> $ git fetch richard
> error:  (curl_result = 77, http_code = 0, sha1 = 
> 0bc27e5162d0e74053b71fc637cbbf8fc942e969)

I was unable to reproduce your problem here. However, peeking in curl's header files, it looks like error 77 is:

    CURLE_SSL_CACERT_BADFILE,  /* 77 - could not load CACERT file, missing
                                  or wrong format */
> Downgrading to git-core in Debian (1.5.3.8) and it works perfectly.

Since you are running Debian, can you confirm whether you have the 'ca-certificates' package installed? It creates the /etc/ssl/certs/ca-certificates.crt file, which is presumably the source of the complaining.

That being said, there seems to be some difference between 1.5.3.8 and 1.5.4 that made us care more about SSL certs (though I note that the SSL_VERIFYPEER curl knob has been set since pre-1.0). Have you tried setting GIT_SSL_NO_VERIFY?

-Peff
Previous: Anand KumriaNext: Jari Aalto
Message 2 of 44 in “git-fetch in 1.5.4 fails versus 1.5.3.8”
  1. Anand KumriaFeb 4, 2008
  2. Jeff KingFeb 5, 2008
  3. Jari AaltoFeb 5, 2008
  4. Anand KumriaFeb 6, 2008
  5. Jeff KingFeb 7, 2008
  6. Mike HommeyFeb 7, 2008
  7. Anand KumriaFeb 7, 2008
  8. Jeff KingFeb 7, 2008
  9. Mike HommeyFeb 7, 2008
  10. Jeff KingFeb 7, 2008
  11. Mike HommeyFeb 7, 2008
  12. Jeff KingFeb 8, 2008
  13. Mike HommeyFeb 8, 2008
  14. Mike HommeyFeb 8, 2008
  15. Work around curl-gnutls not liking to be reinitializedMike Hommey, Feb 8, 2008
  16. Mike HommeyFeb 8, 2008
  17. Junio C HamanoFeb 8, 2008
  18. Mike HommeyFeb 8, 2008
  19. Mike HommeyFeb 8, 2008
  20. Work around curl-gnutls not liking to be reinitializedMike Hommey, Feb 8, 2008
  21. Johannes SchindelinFeb 8, 2008
  22. Work around curl-gnutls not liking to be reinitializedMike Hommey, Feb 8, 2008
  23. Mike HommeyFeb 8, 2008
  24. Work around curl-gnutls not liking to be reinitializedMike Hommey, Feb 9, 2008
  25. Daniel StenbergFeb 9, 2008
  26. Florian WeimerFeb 9, 2008
  27. Mike HommeyFeb 9, 2008
  28. Johannes SchindelinFeb 8, 2008
  29. Mike HommeyFeb 8, 2008
  30. Jeff KingFeb 9, 2008
  31. Frank LichtenheldFeb 7, 2008
  32. Linus TorvaldsFeb 7, 2008
  33. Frank LichtenheldFeb 7, 2008
  34. Linus TorvaldsFeb 7, 2008
  35. Anand KumriaFeb 7, 2008
  36. Jeff KingFeb 7, 2008
  37. Linus TorvaldsFeb 7, 2008
  38. Martin LanghoffFeb 7, 2008
  39. Dmitry PotapovFeb 7, 2008
  40. Jeff KingFeb 7, 2008
  41. Jeff KingFeb 7, 2008
  42. Dmitry PotapovFeb 7, 2008
  43. Anand KumriaFeb 8, 2008
  44. Dmitry PotapovFeb 8, 2008

Read the whole thread, see it on lore, or plain text.

$ cat FOOTERMessages come from the public archive at lore.kernel.org/git, fetched every hour. The front page is chosen and written each morning by an AI editor and can be wrong; the threads themselves are the record. About and API. For agents: an MCP server at https://gitlist.dev/mcp, and any thread, story or person page as Markdown by adding .md to its URL (or sending Accept: text/markdown). Details in /llms.txt.