info-cvs archive search

Search String: Display: Description: Sort:

Results:

References: [ pserver: 4404 ] [ security: 1340 ]

Total 529 documents matching your query.

281. Re: Moving to Pserver from .rhosts (score: 118)
Author: HIDDEN
Date: Fri, 15 Nov 2002 22:12:38 -0800
Greg opines: Then you have no accountability in your CVS repository. None. You have as much accountability as you have from ssh and the passwd file: you know the name of the person (from the pserver
/archive/html/info-cvs/2002-11/msg00184.html (7,709 bytes)

282. RE: Moving to Pserver from .rhosts (score: 118)
Author: HIDDEN
Date: Fri, 15 Nov 2002 16:13:08 -0500 (EST)
[ On Friday, November 15, 2002 at 11:17:10 (-0800), Shankar Unni wrote: ] No you don't. CVS is not a security application. It was not designed to be one and it cannot ensure any (i.e. not any at all)
/archive/html/info-cvs/2002-11/msg00180.html (7,122 bytes)

283. Re: Moving to Pserver from .rhosts (score: 113)
Author: HIDDEN
Date: Fri, 15 Nov 2002 13:40:56 -0500 (EST)
[ On Friday, November 15, 2002 at 17:08:16 (+0100), Fredrik Wendt wrote: ] Then you have no accountability in your CVS repository. None. You cannot have security without accountability. Integrity alo
/archive/html/info-cvs/2002-11/msg00178.html (6,874 bytes)

284. Hello all, newbie questions re setup (score: 9)
Author: HIDDEN
Date: Fri, 8 Nov 2002 14:56:37 -0500
I have been racking my brain on reading documentation on CVS and so I am left with but a few questions. Ok, so, I've installed cvs on two machines. Oh, btw, my questions will be related to the follow
/archive/html/info-cvs/2002-11/msg00107.html (8,202 bytes)

285. Re: can't add with wincvs (score: 14)
Author: HIDDEN
Date: Mon, 4 Nov 2002 12:05:57 -0500
I've only had fair-to-middling success getting WinCVS and SSH to get along. But for what it's worth... When you log in manually with SSH, is it asking you for a password? I suspect it is. The error m
/archive/html/info-cvs/2002-11/msg00044.html (7,108 bytes)

286. Re: Providing the functionality of CVS as a library (score: 15)
Author: HIDDEN
Date: Sun, 3 Nov 2002 14:01:58 -0500 (EST)
There's only one client/server protocol that's used by all the client/ server methods (pserver, ext, fork, etc.): see doc/cvsclient.*. -Larry Jones It's clear I'll never have a career in sports until
/archive/html/info-cvs/2002-11/msg00036.html (6,254 bytes)

287. Re: Providing the functionality of CVS as a library (score: 12)
Author: HIDDEN
Date: Sat, 2 Nov 2002 12:25:06 -0500
Larry> That's one of the motivations for the CVS client/server protocol -- Larry> the intent was the people should write new clients rather than trying Larry> to wrap the existing command-line clien
/archive/html/info-cvs/2002-11/msg00030.html (6,607 bytes)

288. RE: Per-modules readers/writers ? (score: 45)
Author: HIDDEN
Date: Tue, 29 Oct 2002 17:19:01 -0500 (EST)
[ On Tuesday, October 29, 2002 at 13:47:05 (-0800), Shankar Unni wrote: ] Good questions. What are _your_ answers? Who said anything about Linux? I certainly didn't. So, which is it? Do you want some
/archive/html/info-cvs/2002-10/msg00455.html (9,317 bytes)

289. RE: Per-modules readers/writers ? (score: 39)
Author: HIDDEN
Date: Tue, 29 Oct 2002 13:47:05 -0800
I think this discussion has hit a wall, but I'll answer these points anyway. But I'm no longer pushing for such a feature to be included, because of the obvious reluctance of so many, so we can let t
/archive/html/info-cvs/2002-10/msg00454.html (8,794 bytes)

290. Re: Per-modules readers/writers ? (score: 24)
Author: HIDDEN
Date: Tue, 29 Oct 2002 13:15:35 -0500 (EST)
A bit of both, I suspect. There is a school of thought (of which Greg is probably the most vociferous spokesman) that I'll call the "purists" who maintain that any security-related feature (e.g., aut
/archive/html/info-cvs/2002-10/msg00446.html (8,577 bytes)

291. RE: Per-modules readers/writers ? (score: 44)
Author: HIDDEN
Date: Mon, 28 Oct 2002 15:57:05 -0500 (EST)
[ On Monday, October 28, 2002 at 12:02:33 (-0800), Shankar Unni wrote: ] It's all part of the same thing. In computer security you can't have any accountability without authorisation, and to do autho
/archive/html/info-cvs/2002-10/msg00424.html (10,775 bytes)

292. RE: Per-modules readers/writers ? (score: 9)
Author: HIDDEN
Date: Mon, 28 Oct 2002 12:02:33 -0800
accounts. Absolutely. No argument there. The issue I was talking about was not authentication, but access control (authorization), using Unix accounts. Authentication using Unix accounts is A-OK. (Us
/archive/html/info-cvs/2002-10/msg00423.html (7,356 bytes)

293. Re: Per-modules readers/writers ? (score: 19)
Author: HIDDEN
Date: Fri, 25 Oct 2002 19:25:43 -0500 (CDT)
I suppose it comes down to how you identify actual users, since the system has to know somehow about who is trying to access a module in order to allow or deny that access. The classic Unix method i
/archive/html/info-cvs/2002-10/msg00402.html (7,623 bytes)

294. Re: Per-modules readers/writers ? (score: 17)
Author: HIDDEN
Date: Thu, 24 Oct 2002 18:07:29 -0400 (EDT)
I strongly suggest using the filesystem's uid/gid and related permissions. Assign a group for each set of modules that require the same access permissions, assign a unique uid to each user (for trace
/archive/html/info-cvs/2002-10/msg00374.html (7,339 bytes)

295. Re: CVS server debugging (score: 9)
Author: HIDDEN
Date: Sat, 19 Oct 2002 17:02:10 -0700
From inetd? I should hope not. This would (I believe) imply a rather serious security gap in inetd. I want to be able to debug the server process from the very beginning, but the best I can do is aft
/archive/html/info-cvs/2002-10/msg00264.html (6,311 bytes)

296. the unprivileged gserver patch (score: 9)
Author: HIDDEN
Date: 19 Sep 2002 17:52:11 -0400
This edition of my unprivileged server patch is the first one which might actually work, marking a sort of milestone in our progress with it here. It should be applied to the stock 1.11.2 distributio
/archive/html/info-cvs/2002-09/msg00229.html (6,769 bytes)

297. Re: How do I manage our enterprise CVS w/o being root? (score: 28)
Author: HIDDEN
Date: Fri, 30 Aug 2002 19:30:06 -0400
Also, on a System-V-like server, you have to find /usr/local/cvs -type d | xargs chmod g+s # or wherever to make the "cvs" group membership that you just applied propagate to newly created files and
/archive/html/info-cvs/2002-08/msg00357.html (8,502 bytes)

298. kserver (score: 15)
Author: HIDDEN
Date: Fri, 30 Aug 2002 12:03:50 +0800 (HKT)
Hi, I'm trying to set up a cvs server, but am having some difficulties doing so. I've compiled and done the cvs init on my '/home/cvs' repository. The question is, should I set it up for pserver or k
/archive/html/info-cvs/2002-08/msg00333.html (4,502 bytes)

299. Re: twisted CVS (score: 18)
Author: HIDDEN
Date: Wed, 14 Aug 2002 07:23:40 -0700 (PDT)
This part is a personal preference. OTOH, if one is talking about security and hackability, accountability and tracability cannot be discounted. Using pserver eliminates any chances of accountability
/archive/html/info-cvs/2002-08/msg00144.html (7,434 bytes)

300. Re: WinCVS 1.10 problem Logging in (score: 14)
Author: HIDDEN
Date: Mon, 15 Jul 2002 21:13:32 -0700
Hmmm - I suspect my question was misunderstood, so I shall ask it differently. If I edit the file CVS/Root for a given working directory, are there any other dependencies to be aware of, or is this j
/archive/html/info-cvs/2002-07/msg00198.html (7,407 bytes)


This search system is powered by Namazu