On 02/04/2010 03:04 AM, Thomas Schamm wrote:
> Sorry, of course the strainer script doesn't check if the specific person is 
> allowed to access the repository, but the anongit user itself. So the anongit 
> user allows unauthorized ro access to public repositories, whereas access to 
> private repositories is forbidden. User-specific private/public repository 
> access should be checked using the default strainer.
> 
> Thomas
> 
> Am 04.02.2010 um 08:52 schrieb Thomas Schamm:
> 
>> Hi Jeff,
>>
>> for read access control, we have disabled the git-daemon and added another 
>> gitorious user (anongit), which uses a modified version of the gitorious 
>> script and strainer.rb.
>> Such, anyone can access a repository using [email protected]:repos... 
>> and strainer will check if this person is allowed to read the content of the 
>> repository.

Thanks for the input. I don't have an explicit need for this *yet* --
but maybe it's something the Gitorious guys might be interested in
thinking about  :-)

--Jeff

Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to