git/list[1] front-page[2] threads[3] people[4] search[5] about
 

Re: shared GIT repos

From
Matthias Urlichs <smurf@smurf.noris.de>
Date
Sep 27, 2005, 08:45 UTC
Message-ID
<20050927084513.GU31276@kiste.smurf.noris.de>
In-Reply-To
<7vu0g70yqg.fsf_-_@assigned-by-dhcp.cox.net>
Hi,
Junio C Hamano:
> Do you want to guard the repository from malicious users?  Or is
> it enough to guard a casual/careless user from making mistakes?
> 

Well, s/malicious users/somebody who wants to cover up an ugly mistake/ would be more accurate.

What I am doing: I'm writing a system management frontend which allows people to install version-controlled stuff (like, the configuration for a backup server, or Yet Another PHPBB Installation) on servers -- without even having a login there.

Some of these contain login scripts that might need root privileges or similar (like, "restart Apache"). I want people to be unable to simply remove the commit that included the "rm -rf /" command, move the ref back, upload a new version, and pretend that nothing happened *la la la*.

> If one has commit privileges, then one can already do enough
> harm to the project without being able to remove objects nor
> updating a ref with non-fast-forward ref.
But in that case it's traceable what happened and whodunit.
> I think most of the pieces are already there and you only need to
> assemble them and write a howto ;-).
> [ list ]
OK, thanks, that helps. I'll write something up.
-- 
Matthias Urlichs   |   {M:U} IT Design @ m-u-it.de   |  smurf@smurf.noris.de
Disclaimer: The quote was selected randomly. Really. | http://smurf.noris.de
 - -
When angry, count four; when very angry, swear.
Previous: Junio C HamanoNext: Sergey Vlasov
Message 22 of 26 in “rsync deprecated but promoted?”
  1. Zack BrownSep 25, 2005
  2. H. Peter AnvinSep 25, 2005
  3. Martin CoxallSep 25, 2005
  4. Petr BaudisSep 26, 2005
  5. Brian GerstSep 26, 2005
  6. Petr BaudisSep 26, 2005
  7. Brian GerstSep 26, 2005
  8. Linus TorvaldsSep 26, 2005
  9. Petr BaudisSep 26, 2005
  10. Linus TorvaldsSep 26, 2005
  11. Petr BaudisNov 10, 2005
  12. waltSep 26, 2005
  13. Linus TorvaldsSep 26, 2005
  14. waltSep 26, 2005
  15. Johannes SchindelinSep 26, 2005
  16. Junio C HamanoSep 26, 2005
  17. Daniel BarkalowSep 26, 2005
  18. Junio C HamanoSep 26, 2005
  19. Petr BaudisSep 26, 2005
  20. hared GIT repos (was Re: rsync deprecated but promoted?)Matthias Urlichs, Sep 27, 2005
  21. Junio C HamanoSep 27, 2005
  22. Matthias UrlichsSep 27, 2005
  23. Sergey VlasovSep 27, 2005
  24. Matthias UrlichsSep 27, 2005
  25. Linus TorvaldsSep 27, 2005
  26. A Large Angry SCMSep 27, 2005

Read the whole thread, see it on lore, or plain text.

$ cat FOOTERMessages come from the public archive at lore.kernel.org/git, fetched every hour. The front page is chosen and written each morning by an AI editor and can be wrong; the threads themselves are the record. About and API. For agents: an MCP server at https://gitlist.dev/mcp, and any thread, story or person page as Markdown by adding .md to its URL (or sending Accept: text/markdown). Details in /llms.txt.