git/list[1] front-page[2] threads[3] people[4] search[5] about
 

Re: [PATCH] contrib: Honor symbolic port in git-credential-netrc.

From
brian m. carlson <sandals@crustytoothpaste.net>
Date
Jun 21, 2025, 15:52 UTC
Message-ID
<aFbVKEbhunWyljkR@fruit.crustytoothpaste.net>
In-Reply-To
<87bjqhgr47.fsf@terra.mail-host-address-is-not-set>
On 2025-06-21 at 13:29:28, Maxim Cournoyer wrote:
Show 14 quoted lines
> I'm quite new to the credential-manager of git, so I do not have an
> answer to these excellent questions.  But, as some perhaps useful
> datapoint, at least using Emacs's auth-source library with a
> ~/.authinfo.gpg file (which is in the netrc format), if you use a
> symbolic port name, you have to use it everywhere if you want
> auth-source to match it correctly (it doesn't translate smtps to 465 for
> example). If you put 'port smtps' in the .authinfo.gpg but specify the
> SMTP port in the your Emacs MTA to a integer like 465, it won't match.
> 
> This could be considered a bug in auth-source.el, and git
> credential-manager can do better by converting all port input values to
> their integer form, as you suggested.  Then mismatched configurations
> (e.g.: smtps in netrc and sendemail.smtpServerPort = 465 or vice-versa)
> would be handled correctly.

Yes, I would say that we should be using numeric ports everywhere in the credential protocol. If `git send-email` receives "submission" as the port, then it needs to convert that to "587" before it even requests a credential.

The git-credential(1) documentation says this for the `host` entry in the protocol:

    The remote hostname for a network credential. This includes the port
    number if one was specified (e.g., "example.com:8088").
Note that that says "port number", not "symbolic port".

So I think we'd need some answers as to what's going over the protocol first and how it works for built-in Git functionality (e.g., HTTPS) before we decide if this is a change we want to make.

> Did I understand correctly with my suggestion/rewording of yours above?
> git-credential-netrc reads its input from the netrc file, which may well
> have a symbolic port, so it should itself convert from symbolic to
> actual port numbers, IIUC.

The netrc format is actually underspecified and libcurl doesn't support ports at all, so I would not say that using a symbolic port is a good idea or reliably supported in general. In fact, I would say that the netrc credential helper is the only tool I can find that accepts ports at all. I've looked at multiple different tools and manual pages online and the `port` or `protocol` key is not even mentioned.

If we do accept symbolic ports in the netrc file, then we need to convert them to a numeric port before sending anything over the protocol, which I don't believe your patch does. Perl does offer `getservbyname` for this purpose, so it shouldn't be too difficult to make this change.

-- 
brian m. carlson (they/them)
Toronto, Ontario, CA
Previous: Maxim CournoyerNext: Maxim Cournoyer
Message 10 of 31 in “contrib: Honor symbolic port in git-credential-netrc.”
  1. contrib: Honor symbolic port in git-credential-netrc.Maxim Cournoyer, Jun 20, 2025
  2. Junio C HamanoJun 20, 2025
  3. Andreas SchwabJun 20, 2025
  4. Junio C HamanoJun 20, 2025
  5. Maxim CournoyerJun 21, 2025
  6. Maxim CournoyerJun 23, 2025
  7. Maxim CournoyerJun 23, 2025
  8. brian m. carlsonJun 20, 2025
  9. Maxim CournoyerJun 21, 2025
  10. brian m. carlsonJun 21, 2025
  11. 1/3 contrib: use a more portable shebang for git-credential-netrcMaxim Cournoyer, Jun 22, 2025
  12. 0/3 git-credential-netrc: better symbolic port names supportMaxim Cournoyer, Jun 22, 2025
  13. 3/3 contrib: better support symbolic port names in git-credential-netrcMaxim Cournoyer, Jun 22, 2025
  14. Junio C HamanoJun 23, 2025
  15. Maxim CournoyerJun 24, 2025
  16. 2/3 contrib: warn for invalid netrc file ports in git-credential-netrcMaxim Cournoyer, Jun 22, 2025
  17. 1/3 contrib: use a more portable shebang for git-credential-netrcMaxim Cournoyer, Jun 24, 2025
  18. 0/3 git-credential-netrc: better symbolic port names supportMaxim Cournoyer, Jun 24, 2025
  19. Junio C HamanoJun 24, 2025
  20. Maxim CournoyerJun 24, 2025
  21. Junio C HamanoJun 25, 2025
  22. Maxim CournoyerJun 25, 2025
  23. 0/3 git-credential-netrc: better symbolic port names supportMaxim Cournoyer, Jun 25, 2025
  24. 2/3 contrib: warn for invalid netrc file ports in git-credential-netrcMaxim Cournoyer, Jun 25, 2025
  25. 3/3 contrib: better support symbolic port names in git-credential-netrcMaxim Cournoyer, Jun 25, 2025
  26. 1/3 contrib: use a more portable shebang for git-credential-netrcMaxim Cournoyer, Jun 25, 2025
  27. Junio C HamanoJun 25, 2025
  28. Maxim CournoyerJun 26, 2025
  29. 3/3 contrib: better support symbolic port names in git-credential-netrcMaxim Cournoyer, Jun 24, 2025
  30. Junio C HamanoJun 24, 2025
  31. 2/3 contrib: warn for invalid netrc file ports in git-credential-netrcMaxim Cournoyer, Jun 24, 2025

Read the whole thread, see it on lore, or plain text.

$ cat FOOTERMessages come from the public archive at lore.kernel.org/git, fetched every hour. The front page is chosen and written each morning by an AI editor and can be wrong; the threads themselves are the record. About and API. For agents: an MCP server at https://gitlist.dev/mcp, and any thread, story or person page as Markdown by adding .md to its URL (or sending Accept: text/markdown). Details in /llms.txt.