Re: Git clone sends first an empty authorization header
- From
Andreas Schwab <schwab@linux-m68k.org>
- Date
- Mar 5, 2016, 08:47 UTC
- Message-ID
- <m2r3fpgvk7.fsf@linux-m68k.org>
- In-Reply-To
- <CAMDzUty+O2Gu7o4bFib71AaNZn647WQ1v7ceiznHOs7-xwZGUg@mail.gmail.com>
Guilherme <guibufolo@gmail.com> writes:
Show 5 quoted lines
> When doing basic authentication using git clone by passing the > username and password in the url git clone will first send a GET > request without the authorization header set. > > Am i seeing this right?
Yes, that is the correct way to implement HTTP authentication. The client won't know which authentication method to use until the server tells it.
Andreas.
-- Andreas Schwab, schwab@linux-m68k.org GPG Key fingerprint = 58CA 54C7 6D53 942B 1756 01D3 44D5 214B 8276 4ED5 "And now for something completely different."