[svn.haxx.se] · SVN Dev · SVN Users · SVN Org · TSVN Dev · TSVN Users · Subclipse Dev · Subclipse Users · this month's index

Re: RFC: New authn/authz policy for svn.collab.net

From: C. Michael Pilato <cmpilato_at_collab.net>
Date: Thu, 30 Jul 2009 12:37:12 -0400

Arfrever Frehtes Taifersar Arahesis wrote:
> 2009-07-30 18:11:03 C. Michael Pilato napisaƂ(a):
>> I'm contemplating a relatively minor change of authn/authz policy for
>> svn.collab.net. Specifically, I'd like to make two changes:
>>
>> 1. Allow authenticated repository access only over SSL connections, and
>> anonymous repository access only over non-SSL connections.
>
> IMHO anonymous repository access should be still available over SSL connections.

I disagree. Doing this adds unnecessary complication to the configuration
(some of which is exactly the kind of thing I'm trying to get rid of by
applying the rules I suggested), unnecessary performance/load penalties to
the server (why do we want to be doing SSL calculations for anonymous
accessors?), and all while bringing no discernible benefit to the users.

-- 
C. Michael Pilato <cmpilato_at_collab.net>
CollabNet   <>   www.collab.net   <>   Distributed Development On Demand
------------------------------------------------------
http://subversion.tigris.org/ds/viewMessage.do?dsForumId=462&dsMessageId=2377041

Received on 2009-07-30 18:37:32 CEST

This is an archived mail posted to the Subversion Dev mailing list.