git/list[1] front-page[2] threads[3] people[4] search[5] about
 

Re: [PATCH v3] http: add support for specifying the SSL version

From
Junio C Hamano <gitster@pobox.com>
Date
Aug 14, 2015, 17:21 UTC
Message-ID
<xmqqlhddiy5a.fsf@gitster.dls.corp.google.com>
In-Reply-To
<55CCBF6F.3070808@web.de>
Torsten Bögershausen <tboegi@web.de> writes:
Show 11 quoted lines
>> diff --git a/Documentation/config.txt b/Documentation/config.txt
>> index 315f271..b23b01a 100644
>> --- a/Documentation/config.txt
>> +++ b/Documentation/config.txt
>> @@ -1595,6 +1595,28 @@ http.saveCookies::
>>  	If set, store cookies received during requests to the file specified by
>>  	http.cookieFile. Has no effect if http.cookieFile is unset.
>>  
>> +http.sslVersion::
> should this be https.sslVersion ?
> (http doesn't use ssl)

But there are sslCipherList, etc., already present, and more importantly, I think you want http.proxy to apply even if you happen to be talking http over SSL.

More importantly, given that we have the "limited to this URL" mechanism "http.<url>.<variable>" that overrides "http.<variable>", introducing "https.sslWhatEver" would force people to have two configuration sections for no real benefit, other than silencing pedants that want to say "these things should be defined only for https".

Show 11 quoted lines
>> + if (sslversions[i].name != NULL && *sslversions[i].name &&
>> !strcmp(ssl_version,sslversions[i].name)) {
>> +				curl_easy_setopt(result, CURLOPT_SSLVERSION,
>> +					sslversions[i].ssl_version);
> This is what my man page says:
>  CURLcode curl_easy_setopt(CURL *handle, CURLoption option, parameter);
> []
>
> RETURN VALUE
>        CURLE_OK (zero) means that the option was set properly...
> Should the return value checked (and we die() if we fail ?
Probably.  Do we check status from other calls to setopt?
Previous: Elia PintoNext: Elia Pinto
Message 12 of 13 in “http: add support for specifying the SSL version”
  1. http: add support for specifying the SSL versionElia Pinto, Aug 13, 2015
  2. Eric SunshineAug 13, 2015
  3. Elia PintoAug 13, 2015
  4. Eric SunshineAug 13, 2015
  5. Elia PintoAug 13, 2015
  6. Eric SunshineAug 13, 2015
  7. Eric SunshineAug 13, 2015
  8. Torsten BögershausenAug 13, 2015
  9. Elia PintoAug 13, 2015
  10. Ilari LiusvaaraAug 13, 2015
  11. Elia PintoAug 13, 2015
  12. Junio C HamanoAug 14, 2015
  13. Elia PintoAug 14, 2015

Read the whole thread, see it on lore, or plain text.

$ cat FOOTERMessages come from the public archive at lore.kernel.org/git, fetched every hour. The front page is chosen and written each morning by an AI editor and can be wrong; the threads themselves are the record. About and API. For agents: an MCP server at https://gitlist.dev/mcp, and any thread, story or person page as Markdown by adding .md to its URL (or sending Accept: text/markdown). Details in /llms.txt.