git/list[1] front-page[2] threads[3] people[4] search[5] about
 

Re: User Authentication ?

From
Jakub Narebski <jnareb@gmail.com>
Date
Oct 11, 2008, 18:28 UTC
Message-ID
<m3y70vj8ag.fsf@localhost.localdomain>
In-Reply-To
<912ec82a0810110941t33343fe1mfe1bce58739f79fa@mail.gmail.com>
"Neshama Parhoti" <pneshama@gmail.com> writes:
Show 5 quoted lines
> I want to setup a git server on the web but I need user
> authentication.
> 
> From what I understand, currently git-daemon does not support
> authentication.

The purpose of git-daemon is to allow fast (and bandwidth-saving) anonymous read-only (fetch) access to git repositories. The ability to push via git-daemon was added later, and is turned off by default because it should be used only in special situation.

> Is there any way to achieve that ?

The reason behind git-daemon not supporting authentication is that re-implementing authentication poorly is a bad idea.

If you need authentication there is SSH that provides authentication (for ssh:// protocol), or WebDAV (for HTTP push protocol). Perhaps also future "smart" HTTP server would support some kind of authentification...

> I really don't want to give ssh logins for people who I just want to
> be able to access my repository...

First, you can always set git-shell as shell for those git only accounts. Second, you can set up Gitosis, which IIRC needs only single account, and handles authentication by itself; I have heard also of ssh_acl in this context...

I don't know if there is some other equivalent of Gitosis...
HTH
-- 
Jakub Narebski
Poland
ShadeHawk on #git
Previous: Neshama ParhotiNext: Neshama Parhoti
Message 2 of 4 in “User Authentication ?”
  1. Neshama ParhotiOct 11, 2008
  2. Jakub NarebskiOct 11, 2008
  3. Neshama ParhotiOct 13, 2008
  4. Jakub NarebskiOct 13, 2008

Read the whole thread, see it on lore, or plain text.

$ cat FOOTERMessages come from the public archive at lore.kernel.org/git, fetched every hour. The front page is chosen and written each morning by an AI editor and can be wrong; the threads themselves are the record. About and API. For agents: an MCP server at https://gitlist.dev/mcp, and any thread, story or person page as Markdown by adding .md to its URL (or sending Accept: text/markdown). Details in /llms.txt.