[svn.haxx.se] · SVN Dev · SVN Users · SVN Org · TSVN Dev · TSVN Users · Subclipse Dev · Subclipse Users · this month's index

Re: CGI for repository administration

From: Philip Martin <philip_at_codematters.co.uk>
Date: 2003-01-07 00:38:26 CET

Josef Wolf <jw@raven.inka.de> writes:

> On Mon, Jan 06, 2003 at 10:38:54PM +0000, Philip Martin wrote:
> > Josef Wolf <jw@raven.inka.de> writes:
>
> > > BTW: Somehow symlinked hook-scripts (which are used by this script)
> > > stopped working. Anyone has an idea why this does not work anymore?
> > Look in libsvn_repos/hooks.c, the code explicitly tests that the hooks
> > are files. The change you are seeing was made in libsvn_subr/io.c in
> > rev 3831.
>
> Oh, I see. What was the reason for this change?

It was quite possibly an unintended side-effect of r3831.

> Is there a security
> issue with it?

I don't believe so. A repository administrator who wants to link to
an insecure file should be free to do so :)

> I don't like the idea to have a large number (eight
> per repository) of copies of the script lying around. This would make
> updates of the script a nightmare :-(

Agreed.

-- 
Philip Martin
---------------------------------------------------------------------
To unsubscribe, e-mail: dev-unsubscribe@subversion.tigris.org
For additional commands, e-mail: dev-help@subversion.tigris.org
Received on Tue Jan 7 00:39:26 2003

This is an archived mail posted to the Subversion Dev mailing list.