From mboxrd@z Thu Jan 1 00:00:00 1970 X-Msuck: nntp://news.gmane.io/gmane.emacs.gnus.general/71203 Path: news.gmane.org!not-for-mail From: Richard Riley Newsgroups: gmane.emacs.gnus.general Subject: Re: [gnus git] Add ~/.authinfo to the default, since that's probably most useful for users. Date: Mon, 20 Sep 2010 16:10:34 +0200 Organization: aich tea tea pea dicky riley dot net Message-ID: References: <87iq238tgr.fsf@lifelogs.com> NNTP-Posting-Host: lo.gmane.org Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii X-Trace: dough.gmane.org 1284991885 13312 80.91.229.12 (20 Sep 2010 14:11:25 GMT) X-Complaints-To: usenet@dough.gmane.org NNTP-Posting-Date: Mon, 20 Sep 2010 14:11:25 +0000 (UTC) Cc: ding@gnus.org To: Robert Pluim Original-X-From: ding-owner+M19576@lists.math.uh.edu Mon Sep 20 16:11:23 2010 Return-path: Envelope-to: ding-account@gmane.org Original-Received: from util0.math.uh.edu ([129.7.128.18]) by lo.gmane.org with esmtp (Exim 4.69) (envelope-from ) id 1Oxh5S-0005To-EI for ding-account@gmane.org; Mon, 20 Sep 2010 16:11:18 +0200 Original-Received: from localhost ([127.0.0.1] helo=lists.math.uh.edu) by util0.math.uh.edu with smtp (Exim 4.63) (envelope-from ) id 1Oxh5Q-00019w-1k; Mon, 20 Sep 2010 09:11:16 -0500 Original-Received: from mx1.math.uh.edu ([129.7.128.32]) by util0.math.uh.edu with esmtps (TLSv1:AES256-SHA:256) (Exim 4.63) (envelope-from ) id 1Oxh5O-00019i-M1 for ding@lists.math.uh.edu; Mon, 20 Sep 2010 09:11:14 -0500 Original-Received: from quimby.gnus.org ([80.91.231.51]) by mx1.math.uh.edu with esmtp (Exim 4.72) (envelope-from ) id 1Oxh5J-0003hI-Nf for ding@lists.math.uh.edu; Mon, 20 Sep 2010 09:11:14 -0500 Original-Received: from mail-fx0-f42.google.com ([209.85.161.42]) by quimby.gnus.org with esmtp (Exim 3.36 #1 (Debian)) id 1Oxh5I-0003dn-00 for ; Mon, 20 Sep 2010 16:11:08 +0200 Original-Received: by fxm11 with SMTP id 11so879476fxm.15 for ; Mon, 20 Sep 2010 07:10:38 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=googlemail.com; s=gamma; h=domainkey-signature:received:received:from:to:cc:subject :organization:references:date:in-reply-to:message-id:user-agent :mime-version:content-type; bh=7HKJ9KRVwds3ouPmENOso2h1fI/jbyT64nVW9GyVeZM=; b=wSYhxCFBNZgQJTVy3lr4UYmhGRJSlFylmpm6Brs/c92nqX5jbv16dW0esOWMG1i+vI 6bOsP3yBdUVVHUTplbSczYSJdmtj5qwYMmuvmjU/+boF9xqiZS9MDLI2w/QSFOu9qwZc ZJNLLBzoP8vUxdUN7oUzUSiF6Vz0cm1gCDonk= DomainKey-Signature: a=rsa-sha1; c=nofws; d=googlemail.com; s=gamma; h=from:to:cc:subject:organization:references:date:in-reply-to :message-id:user-agent:mime-version:content-type; b=VO6w5+LrPE+8Tnu6Tl3MqIUruqtxEM7U9pFAZNIdUEa/U6kxrw4BbT65gI6Eggbk0b RQbBtBW/l+OXN76mt273vy7TuPCRt5kMiSAiwXl8aBNHLZwPAYAWKP6eR4Sf5c2NjJYH QisvBl14YilKLPIyZzhrA1AHnwffhELGxyyrg= Original-Received: by 10.223.107.80 with SMTP id a16mr4219158fap.30.1284991838264; Mon, 20 Sep 2010 07:10:38 -0700 (PDT) Original-Received: from localhost ([85.183.18.158]) by mx.google.com with ESMTPS id 2sm2939616faz.38.2010.09.20.07.10.36 (version=TLSv1/SSLv3 cipher=RC4-MD5); Mon, 20 Sep 2010 07:10:37 -0700 (PDT) In-Reply-To: (Robert Pluim's message of "Mon, 20 Sep 2010 13:03:38 +0200") User-Agent: Gnus/5.13 (Gnus v5.13) Emacs/23.2 (gnu/linux) X-Spam-Score: -2.0 (--) List-ID: Precedence: bulk Xref: news.gmane.org gmane.emacs.gnus.general:71203 Archived-At: Robert Pluim writes: > Ted Zlatanov writes: > >> On Sat, 18 Sep 2010 00:33:36 +0200 Lars Magne Ingebrigtsen wrote: >> >> LMI> * auth-source.el (auth-sources): Add ~/.authinfo to the default, since >> LMI> that's probably most useful for users. >> >> LMI> -(defcustom auth-sources '((:source "~/.authinfo.gpg")) >> >> LMI> +(defcustom auth-sources '((:source "~/.authinfo.gpg") >> LMI> + (:source "~/.authinfo")) >> >> I was trying to discourage people from putting their password in an >> unencrypted file. So I'm sort of OK with making the unencrypted file >> the second choice, but I'd like to at least warn the user. WDYT? > > Apropos, I have a ~/.authinfo which contains > > machine myimapserver login myusername port imap > > machine myimapserver login myusername port 993 > > machine myimapserver login myusername port imaps > > And I *still* get prompted for both my username and password when > connecting to imap. What magic incantation am I missing? (and no, I'm > not going to be putting my password in that file). > > Regards > > Robert > Hi Robert, Some suggestions : Change it to a .gpg file. Put it wherever you want and customise the auth-sources variable accordingly. (I would expect to be prompted for userid and password if you dont include passwords in a file thats supposed to include your authorities) EPA is pretty seamless in 23 onwards. No one should be using .authinfo IMO - .authinfo.gpg is the way forward since its publicly distributable (think free git repos) and not prey to accidental to chmods.