git/list[1] front-page[2] threads[3] people[4] search[5] about
 

Re: [PATCH 0/9] git archive: use gzip again by default, document output stabilty

From
PWPhillip Wood <phillip.wood123@gmail.com>
Date
Feb 6, 2023, 14:46 UTC
Message-ID
<b24fc8ae-a9f8-868f-b281-74c256447084@dunelm.org.uk>
In-Reply-To
<230203.86fsbmbzwp.gmgdl@evledraar.gmail.com>
On 03/02/2023 13:49, Ævar Arnfjörð Bjarmason wrote:
Show 7 quoted lines
> 
> On Thu, Feb 02 2023, Phillip Wood wrote: >> Reverting the change gives the misleading impression that we're making
>> a commitment to keeping the output stable.
> 
> I don't see how you can conclude that from this series. It explicitly
> states that we make no such promises, what it does is go back to
> allowing the gzip(1) command to make its own promises.

This series would not be happening if we were not reverting a change to the compressed output of 'git archive'. The documentation updates are very welcome but I think we're undermining the message that the compressed output can change by reverting that change.

Show 9 quoted lines
>> The focus of this thread seems to be the
>> problems relating to github which they have already addressed.
> 
> Which they've addressed by reverting the change, but while they're a
> major user of git they're not the only one. They just happened to use
> "git archive".
> 
> I think it would be a mistake to conclude that everyone who's run into
> this has already done so, or is aware of it.

I've spent some time trying to find reports of problems caused by this change and have not seen anything apart from the issue with GitHub. Although it takes a while for new versions of git to get into linux distributions if there is a widespread problem we normally hear about it pretty quickly. This change has been in two releases now. If anyone does have a problem there is an easy fix in the form of setting tar.<format>.command

Show 6 quoted lines
>> I think there is general agreement that it is not practical to promise
>> that the compressed output of "git archive" is stable so maybe it is
>> better[...]
> 
> ...better than what? This seems to imply that this series is making new
> promises about the output stability, which it isn't doing.

It's better people realize they cannot rely on the output being stable now when they can safely work around the problem while working on a proper fix rather than waiting until the change in output is caused by a security issue in gzip which means the work around is no longer safe.

Best Wishes
Phillip
Show 30 quoted lines
>> [...]to make that clear now while users can work around it in the
>> short term with a config setting rather than waiting until we're faced
>> with some security or other issue that forces a change to the output
>> which users cannot work around so easily.
> 
> I think it's always been clear that you can use that setting. For ages
> we've been saying:
> 
> 	The `tar.gz` and `tgz` formats are defined automatically and use the
> 	command `gzip -cn` by default.
> 
> Then v2.38.0 changed it to:
> 
> 	[...]
>          magic command `git archive gzip` by default
> 
> Which IMO was easily missed among other "Performance, Internal
> Implementation, Development Support etc." items in the release notes,
> which said:
> 
>     Teach "git archive" to (optionally and then by default) avoid
>     spawning an external "gzip" process when creating ".tar.gz" (and
>     ".tgz") archives.
> 
> But I agree that all of this is subjective. To me a 2% reduction in CPU
> use (at the cost of ~20% increse in wallclock) & some unclear benefits
> to teaching users that they can't rely on our "gzip" output seems
> unclear or hypothetical.
> 
> Whereas the widespread breakage reported is very real,
where are the reports of widespread berakage outside of GitHub?
Show 7 quoted lines
> and we should
> consider GitHub as a canary for that, not the the stand & end of its
> potential impact.
> 
> As we didn't have a strong reason to change this in the first place (and
> as my series shows, we can have our cake & eat it too if we don't have a
> "gzip") I think the obvious choice is to go back to using "gzip".
Previous: Ævar Arnfjörð BjarmasonNext: Theodore Ts'o
Message 23 of 57 in “Stability of git-archive, breaking (?) the Github universe, and a possible solution”
  1. Eli SchwartzJan 31, 2023
  2. Ævar Arnfjörð BjarmasonJan 31, 2023
  3. Eli SchwartzJan 31, 2023
  4. 0/9 git archive: use gzip again by default, document output stabiltyÆvar Arnfjörð Bjarmason, Feb 2, 2023
  5. 1/9 archive & tar config docs: de-duplicate configuration sectionÆvar Arnfjörð Bjarmason, Feb 2, 2023
  6. 2/9 git config docs: document "tar.<format>.{command,remote}"Ævar Arnfjörð Bjarmason, Feb 2, 2023
  7. 3/9 archiver API: make the "flags" in "struct archiver" an enumÆvar Arnfjörð Bjarmason, Feb 2, 2023
  8. 4/9 archive: omit the shell for built-in "command" filtersÆvar Arnfjörð Bjarmason, Feb 2, 2023
  9. 5/9 archive-tar.c: move internal gzip implementation to a functionÆvar Arnfjörð Bjarmason, Feb 2, 2023
  10. 6/9 archive: use "gzip -cn" for stability, not "git archive gzip"Ævar Arnfjörð Bjarmason, Feb 2, 2023
  11. 7/9 test-lib.sh: add a lazy GZIP prerequisiteÆvar Arnfjörð Bjarmason, Feb 2, 2023
  12. 8/9 archive tests: test for "gzip -cn" and "git archive gzip" stabilityÆvar Arnfjörð Bjarmason, Feb 2, 2023
  13. 9/9 git archive docs: document output non-stabilityÆvar Arnfjörð Bjarmason, Feb 2, 2023
  14. brian m. carlsonFeb 2, 2023
  15. Ævar Arnfjörð BjarmasonFeb 2, 2023
  16. Junio C HamanoFeb 2, 2023
  17. brian m. carlsonFeb 4, 2023
  18. Phillip WoodFeb 2, 2023
  19. Junio C HamanoFeb 2, 2023
  20. Raymond E. PascoFeb 2, 2023
  21. archive: document output stability concernsRaymond E. Pasco, Feb 3, 2023
  22. Ævar Arnfjörð BjarmasonFeb 3, 2023
  23. Phillip WoodFeb 6, 2023
  24. Theodore Ts'oFeb 3, 2023
  25. Junio C HamanoFeb 2, 2023
  26. René ScharfeFeb 4, 2023
  27. Ævar Arnfjörð BjarmasonFeb 5, 2023
  28. René ScharfeFeb 12, 2023
  29. brian m. carlsonJan 31, 2023
  30. Ævar Arnfjörð BjarmasonJan 31, 2023
  31. Konstantin RyabitsevJan 31, 2023
  32. brian m. carlsonJan 31, 2023
  33. Ævar Arnfjörð BjarmasonFeb 1, 2023
  34. demerphqFeb 1, 2023
  35. Michal SuchánekFeb 1, 2023
  36. demerphqFeb 1, 2023
  37. Ævar Arnfjörð BjarmasonFeb 1, 2023
  38. demerphqFeb 1, 2023
  39. Theodore Ts'oFeb 1, 2023
  40. Joey HessFeb 2, 2023
  41. Theodore Ts'oFeb 3, 2023
  42. Ævar Arnfjörð BjarmasonFeb 3, 2023
  43. Raymond E. PascoFeb 1, 2023
  44. brian m. carlsonFeb 1, 2023
  45. Junio C HamanoFeb 1, 2023
  46. brian m. carlsonFeb 2, 2023
  47. rsbecker@nexbridge.comFeb 2, 2023
  48. Ævar Arnfjörð BjarmasonFeb 3, 2023
  49. Ævar Arnfjörð BjarmasonFeb 2, 2023
  50. Eli SchwartzJan 31, 2023
  51. Konstantin RyabitsevJan 31, 2023
  52. Eli SchwartzJan 31, 2023
  53. Konstantin RyabitsevJan 31, 2023
  54. Michal SuchánekJan 31, 2023
  55. brian m. carlsonFeb 1, 2023
  56. Ævar Arnfjörð BjarmasonFeb 1, 2023
  57. brian m. carlsonFeb 1, 2023

Read the whole thread, see it on lore, or plain text.

$ cat FOOTERMessages come from the public archive at lore.kernel.org/git, fetched every hour. The front page is chosen and written each morning by an AI editor and can be wrong; the threads themselves are the record. About and API. For agents: an MCP server at https://gitlist.dev/mcp, and any thread, story or person page as Markdown by adding .md to its URL (or sending Accept: text/markdown). Details in /llms.txt.