git/list[1] front-page[2] threads[3] people[4] search[5] about
 

Re: [PATCH] docs: git-send-email: difference between ssl and tls smtp-encryption

From
Junio C Hamano <gitster@pobox.com>
Date
Oct 10, 2022, 23:56 UTC
Message-ID
<xmqq35bvz10b.fsf@gitster.g>
In-Reply-To
<Y0R2AwKuXAVMP5Ma@tapette.crustytoothpaste.net>
"brian m. carlson" <sandals@crustytoothpaste.net> writes:
Show 13 quoted lines
>>  --smtp-encryption=<encryption>::
>> +	Specify the encryption to use, either 'ssl' or 'tls'. Any other
>> +	value reverts to plain SMTP. The difference between the two for Git is
>> +	that 'ssl' uses implicit encryption and defaults to port 465, 'tls'
>> +	uses explicit encryption and defaults to port 25. Other ports might be
>> +	used by the SMTP server. Default is the value of
>>  	`sendemail.smtpEncryption`.
>
> This is a definite improvement, but maybe we'd want to say that 'tls' is
> really STARTTLS, while 'ssl' is always-on encryption over a dedicated
> port.  It might also be worth mentioning that the choice of name doesn't
> affect the actual protocol and version used and the user is almost
> certainly using TLS either way.

So, it is not really specifying "the encryption", rather the way to get into the encrypted communication.

I think the prose is OK, as long as we are not adding the third value, at which time we may want to use enumeration instead.

        Specify how SMTP connection should be entered into encrypted
        mode.  The valid values are 'ssl' and 'tls'. Any other value
        reverts to plain (unencrypted) SMTP.  'ssl' refers to "implicit"
        encryption (sometimes calls SMTPS) that uses port 465 or 587 by
        default. 'tls' refers to "explicit" encryption (often known as
        STARTTLS) that uses port 25 by default.  Despite their names, it
        is likely the user is using the newer TLS protocol, not the
        deprecated SSL, for the actual encryption protocol either way.
    +
    Other ports might be used by the SMTP server. Default is the value of
    `sendemail.smtpEncryption`.
We might want to
 * introduce synonyms implicit/smtps vs explicit/starttls and
   deprecate the current confusing names over time?
 * error out when invalid value is given, instead of silently
   talking plaintext SMTP?
Previous: brian m. carlsonNext: Aaron Schrab
Message 4 of 7 in “docs: git-send-email: difference between ssl and tls smtp-encryption”
  1. docs: git-send-email: difference between ssl and tls smtp-encryptionsndanailov@wired4ever.net, Oct 10, 2022
  2. Junio C HamanoOct 10, 2022
  3. brian m. carlsonOct 10, 2022
  4. Junio C HamanoOct 10, 2022
  5. Aaron SchrabOct 11, 2022
  6. Philip OakleyOct 11, 2022
  7. Sotir DanailovOct 11, 2022

Read the whole thread, see it on lore, or plain text.

$ cat FOOTERMessages come from the public archive at lore.kernel.org/git, fetched every hour. The front page is chosen and written each morning by an AI editor and can be wrong; the threads themselves are the record. About and API. For agents: an MCP server at https://gitlist.dev/mcp, and any thread, story or person page as Markdown by adding .md to its URL (or sending Accept: text/markdown). Details in /llms.txt.