From mboxrd@z Thu Jan 1 00:00:00 1970 Path: news.gmane.org!.POSTED.blaine.gmane.org!not-for-mail From: Tara Sawyer Newsgroups: gmane.emacs.bugs Subject: bug#34937: [PATCH] update user docs for emacs-gnutls; tofu and program vs built-in Date: Thu, 21 Mar 2019 09:26:20 -0700 Message-ID: <20190321162620.85383-1-tara@anne.cat> Mime-Version: 1.0 Content-Transfer-Encoding: 8bit Injection-Info: blaine.gmane.org; posting-host="blaine.gmane.org:195.159.176.226"; logging-data="166494"; mail-complaints-to="usenet@blaine.gmane.org" Cc: Tara Sawyer To: 34937@debbugs.gnu.org Original-X-From: bug-gnu-emacs-bounces+geb-bug-gnu-emacs=m.gmane.org@gnu.org Thu Mar 21 17:56:10 2019 Return-path: Envelope-to: geb-bug-gnu-emacs@m.gmane.org Original-Received: from lists.gnu.org ([209.51.188.17]) by blaine.gmane.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:256) (Exim 4.89) (envelope-from ) id 1h70zA-000hBG-Fz for geb-bug-gnu-emacs@m.gmane.org; Thu, 21 Mar 2019 17:56:08 +0100 Original-Received: from localhost ([127.0.0.1]:42221 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1h70z9-00068u-Dh for geb-bug-gnu-emacs@m.gmane.org; Thu, 21 Mar 2019 12:56:07 -0400 Original-Received: from eggs.gnu.org ([209.51.188.92]:48002) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1h70vU-0002ez-OH for bug-gnu-emacs@gnu.org; Thu, 21 Mar 2019 12:52:24 -0400 Original-Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1h70fr-0005jP-BH for bug-gnu-emacs@gnu.org; Thu, 21 Mar 2019 12:36:12 -0400 Original-Received: from debbugs.gnu.org ([209.51.188.43]:39902) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_128_CBC_SHA1:16) (Exim 4.71) (envelope-from ) id 1h70fi-0005ZY-Na for bug-gnu-emacs@gnu.org; Thu, 21 Mar 2019 12:36:04 -0400 Original-Received: from Debian-debbugs by debbugs.gnu.org with local (Exim 4.84_2) (envelope-from ) id 1h70fi-0000oJ-GO for bug-gnu-emacs@gnu.org; Thu, 21 Mar 2019 12:36:02 -0400 X-Loop: help-debbugs@gnu.org Resent-From: Tara Sawyer Original-Sender: "Debbugs-submit" Resent-CC: bug-gnu-emacs@gnu.org Resent-Date: Thu, 21 Mar 2019 16:36:02 +0000 Resent-Message-ID: Resent-Sender: help-debbugs@gnu.org X-GNU-PR-Message: report 34937 X-GNU-PR-Package: emacs X-GNU-PR-Keywords: patch X-Debbugs-Original-To: bug-gnu-emacs@gnu.org Original-Received: via spool by submit@debbugs.gnu.org id=B.15531861383077 (code B ref -1); Thu, 21 Mar 2019 16:36:02 +0000 Original-Received: (at submit) by debbugs.gnu.org; 21 Mar 2019 16:35:38 +0000 Original-Received: from localhost ([127.0.0.1]:53446 helo=debbugs.gnu.org) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1h70fJ-0000nX-Hc for submit@debbugs.gnu.org; Thu, 21 Mar 2019 12:35:37 -0400 Original-Received: from eggs.gnu.org ([209.51.188.92]:56572) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1h70XC-0000ac-Np for submit@debbugs.gnu.org; Thu, 21 Mar 2019 12:27:16 -0400 Original-Received: from lists.gnu.org ([209.51.188.17]:37072) by eggs.gnu.org with esmtps (TLS1.0:RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1h70X6-0005Ha-An for submit@debbugs.gnu.org; Thu, 21 Mar 2019 12:27:08 -0400 Original-Received: from eggs.gnu.org ([209.51.188.92]:42683) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1h70X4-0005VG-7Q for bug-gnu-emacs@gnu.org; Thu, 21 Mar 2019 12:27:07 -0400 Original-Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1h70X2-00050q-H2 for bug-gnu-emacs@gnu.org; Thu, 21 Mar 2019 12:27:06 -0400 Original-Received: from out.migadu.com ([91.121.223.63]:54174) by eggs.gnu.org with esmtps (TLS1.0:DHE_RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1h70X1-0004kf-9x for bug-gnu-emacs@gnu.org; Thu, 21 Mar 2019 12:27:04 -0400 Original-Received: (Migadu outbound); Thu, 21 Mar 2019 16:27:00 +0000 Authentication-Results: out.migadu.com; auth=pass (plain) Original-Received: from localhost.localdomain (48.sub-174-237-130.myvzw.com [174.237.130.48]) by out.migadu.com (Haraka/2.8.16) with ESMTPSA id 7756D848-010C-44C2-AC15-68B7070BA812.1 envelope-from (authenticated bits=0) (version=TLSv1/SSLv3 cipher=ECDHE-RSA-AES128-SHA256 verify=FAIL); Thu, 21 Mar 2019 16:26:59 +0000 X-Mailer: git-send-email 2.21.0 DKIM-Signature: v=1; a=rsa-sha256; bh=WXRh+eDRbxJ32OEnGchftvyxt5pfp5Gnxa1gwQlLHpA=; c=relaxed/simple; d=anne.cat; h=from:subject:date:to; s=default; b=Qyw278DBxc2g4mjBIjedWhWgLSNC2U7SP110ub5dIlhV4whGWgxzCAgthKZv1FJH1opHDfqRF+DUiZsChW8Vd52dokxp9Zhae4w/B1fu2F+g0GLQSre2WlGzN133mYExLDv1mEeF1+5tmKY0uTFwBPoqpGwYQM7ZxXAdloZFfyc= X-detected-operating-system: by eggs.gnu.org: GNU/Linux 2.2.x-3.x [generic] X-detected-operating-system: by eggs.gnu.org: GNU/Linux 2.6.x X-Mailman-Approved-At: Thu, 21 Mar 2019 12:35:36 -0400 X-BeenThere: debbugs-submit@debbugs.gnu.org X-Mailman-Version: 2.1.18 Precedence: list X-detected-operating-system: by eggs.gnu.org: GNU/Linux 2.2.x-3.x [generic] X-Received-From: 209.51.188.43 X-BeenThere: bug-gnu-emacs@gnu.org List-Id: "Bug reports for GNU Emacs, the Swiss army knife of text editors" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: bug-gnu-emacs-bounces+geb-bug-gnu-emacs=m.gmane.org@gnu.org Original-Sender: "bug-gnu-emacs" Xref: news.gmane.org gmane.emacs.bugs:156571 Archived-At: --- doc/misc/emacs-gnutls.texi | 18 ++++++++++++++++++ 1 file changed, 18 insertions(+) diff --git a/doc/misc/emacs-gnutls.texi b/doc/misc/emacs-gnutls.texi index add79d12e4..e79174d784 100644 --- a/doc/misc/emacs-gnutls.texi +++ b/doc/misc/emacs-gnutls.texi @@ -93,6 +93,24 @@ There's one way to find out if GnuTLS is available, by calling @url{http://sourceforge.net/projects/ezwinports/files/} thanks to Eli Zaretskii) in the same directory as Emacs, you should be OK. +To debug GnuTLS problems, first check the messages buffer, and then +check the function below @code{gnutls-log-level} + +If GnuTLS is not available as a built-in (@code{gnutls-available-p} +returns an empty list (), emacs will call out to the @code{gnutls-cli} +program to perform TLS connections. If you need to modify +the command it calls you can do this with the variable +@code{tls-program}. +For example, if you want to pin a certificate and use Trust On First +Use(TOFU), then something like this: + @code{(add-to-list 'tls-program "gnutls-cli --tofu --x509cafile %t -p + %p %h ")} + will probably serve you well. + + + +@section Functions and Variables + @defun gnutls-available-p This function returns non-@code{nil} if GnuTLS is available in this instance of Emacs, @code{nil} otherwise. If GnuTLS is available, the -- 2.21.0