diff options
author | Junio C Hamano <gitster@pobox.com> | 2015-04-27 12:23:47 -0700 |
---|---|---|
committer | Junio C Hamano <gitster@pobox.com> | 2015-04-27 12:23:50 -0700 |
commit | 631f6f1d47cc51a46c8ab48ea1178ea04cff0b8a (patch) | |
tree | b2ecf2c3862aa8328f036c6882c2c851ed781cba /compat/strlcpy.c | |
parent | Git 2.3.6 (diff) | |
parent | push --signed: tighten what the receiving end can ask to sign (diff) | |
download | tgif-631f6f1d47cc51a46c8ab48ea1178ea04cff0b8a.tar.xz |
Merge branch 'jc/push-cert' into maint
The "git push --signed" protocol extension did not limit what the
"nonce" that is a server-chosen string can contain or how long it
can be, which was unnecessarily lax. Limit both the length and the
alphabet to a reasonably small space that can still have enough
entropy.
* jc/push-cert:
push --signed: tighten what the receiving end can ask to sign
Diffstat (limited to 'compat/strlcpy.c')
0 files changed, 0 insertions, 0 deletions