Hi Ron,

On Aug 27, 2015, at 6:27 PM, Ron W <ronw.m...@gmail.com> wrote:

> Since any HTTPS access to /admin/fossil/ is authenticated by lighttpd, we set 
> Fossil's "nobody" permissions to "a" (admin) and add the "admin" user for "s" 
> (setup) permissions.
> 
> Why "a" and not "d" (developer)? Seems to me that would cover the needed 
> permissions to manager the Astrix and AstLinux conf files.

Since the user has lighttpd's admin privileges under the AstLinux web 
interface, it seemed reasonable to us that "a" privileges in Fossil would be 
appropriate.  Possibly we are allowing some privilege we really don't want, but 
in our testing things seemed appropriate.

If there is some reference describing the extra permissions of 'a' vs. 'dei' I 
would appreciate it.

Lonnie


_______________________________________________
fossil-users mailing list
fossil-users@lists.fossil-scm.org
http://lists.fossil-scm.org:8080/cgi-bin/mailman/listinfo/fossil-users

Reply via email to