[svn.haxx.se] · SVN Dev · SVN Users · SVN Org · TSVN Dev · TSVN Users · Subclipse Dev · Subclipse Users · this month's index

Re: [HCoop-Discuss] SVN security issues

From: Karl Chen <quarl_at_cs.berkeley.edu>
Date: 2006-11-08 10:36:19 CET

>>>>> On 2006-11-06 16:21 PST, Marcus Rueckert writes:

    Marcus> i would veto. this should not be part of svn. The
    Marcus> helper is called sudo. you just need to configure it.
    Marcus> if you dont like my proposal for the
    Marcus> configuration. than come up with a better one.

I did consider the sudo workaround before I came up with the exec
helper proposal, and I believe the exec helper proposal is better.
It would be probably a 1 or 2 line change.

The sudo workaround prevents the user from being able to
administer his own repository, which may be worse than not
allowing hooks and would prevent the hook from modifying the
repository anyway.


Karl 2006-11-08 01:26
To unsubscribe, e-mail: dev-unsubscribe@subversion.tigris.org
For additional commands, e-mail: dev-help@subversion.tigris.org
Received on Wed Nov 8 10:36:33 2006

This is an archived mail posted to the Subversion Dev mailing list.