git/list[1] front-page[2] threads[3] people[4] search[5] about
 

Re: shared GIT repos

From
Junio C Hamano <junkio@cox.net>
Date
Sep 27, 2005, 07:13 UTC
Message-ID
<7vu0g70yqg.fsf_-_@assigned-by-dhcp.cox.net>
In-Reply-To
<pan.2005.09.27.06.35.35.834134@smurf.noris.de>
Matthias Urlichs <smurf@smurf.noris.de> writes:
Show 6 quoted lines
> Speaking of which -- is anybody working on that one?
>
> I find myself in need of a multiuser shared repository that cannot
> be corrupted (i.e. I want to prevent the users from removing objects,
> and replacing a ref with something that is not a child of the sha1 that's
> already there should also be prevented).

Do you want to guard the repository from malicious users? Or is it enough to guard a casual/careless user from making mistakes?

If one has commit privileges, then one can already do enough harm to the project without being able to remove objects nor updating a ref with non-fast-forward ref. So let's assume for now that malicious users are not something we worry about. In that case, "working on" might be too scary a word. I think most of the pieces are already there and you only need to assemble them and write a howto ;-).

 - Place the users that has write access to the repository in
   the same Unix group, and have the repository owned by that
   group;
 - Give the users ssh access, perhaps with authorized_keys set
   up to only allow running git-receive-pack and nothing else
   (like normal shell access);
 - Set up hooks/update to make sure the ref updates are fast
   forward.  Additionally, you could set up a mapping that says
   which user can/cannot update which refs if you wanted to.
-jc
Previous: Matthias UrlichsNext: Matthias Urlichs
Message 21 of 26 in “rsync deprecated but promoted?”
  1. Zack BrownSep 25, 2005
  2. H. Peter AnvinSep 25, 2005
  3. Martin CoxallSep 25, 2005
  4. Petr BaudisSep 26, 2005
  5. Brian GerstSep 26, 2005
  6. Petr BaudisSep 26, 2005
  7. Brian GerstSep 26, 2005
  8. Linus TorvaldsSep 26, 2005
  9. Petr BaudisSep 26, 2005
  10. Linus TorvaldsSep 26, 2005
  11. Petr BaudisNov 10, 2005
  12. waltSep 26, 2005
  13. Linus TorvaldsSep 26, 2005
  14. waltSep 26, 2005
  15. Johannes SchindelinSep 26, 2005
  16. Junio C HamanoSep 26, 2005
  17. Daniel BarkalowSep 26, 2005
  18. Junio C HamanoSep 26, 2005
  19. Petr BaudisSep 26, 2005
  20. hared GIT repos (was Re: rsync deprecated but promoted?)Matthias Urlichs, Sep 27, 2005
  21. Junio C HamanoSep 27, 2005
  22. Matthias UrlichsSep 27, 2005
  23. Sergey VlasovSep 27, 2005
  24. Matthias UrlichsSep 27, 2005
  25. Linus TorvaldsSep 27, 2005
  26. A Large Angry SCMSep 27, 2005

Read the whole thread, see it on lore, or plain text.

$ cat FOOTERMessages come from the public archive at lore.kernel.org/git, fetched every hour. The front page is chosen and written each morning by an AI editor and can be wrong; the threads themselves are the record. About and API. For agents: an MCP server at https://gitlist.dev/mcp, and any thread, story or person page as Markdown by adding .md to its URL (or sending Accept: text/markdown). Details in /llms.txt.