•  
      request #10782 Disable usage of unix users and groups
    Infos
    #10782
    Manuel Vacelet (vaceletm)
    2018-02-28 11:08
    2017-10-26 17:02
    10765
    Details
    Disable usage of unix users and groups

    Since ages, Tuleap has a strong integration with underlying OS because all users have their counterpart on the OS as unix users and all projects have their own group.

    This is used for:

    • Publishing stuff in 'homepages':
      • autenticated FTP
      • SCPing stuff
    • CVS
    • Subversion (repositories are owned by codendiadm but the group is the project because ... probably is was the config of CVS even if it's useless)

    From a security stand point it's really bad and corresponding services are only their for legacy reasons until we can remove them.

    Recent platforms should not deploy nss & co.

    This is enabled by default on enalean/tuleap-aio docker image only ATM

    Installation process
    9.17
    Empty
    • [x] enhancement
    • [ ] internal improvement
    Empty
    Stage
    Manuel Vacelet (vaceletm)
    Closed
    2018-02-09
    Attachments
    Empty
    References

    Follow-ups

    • User avatar
      • Original Submission
        Something went wrong, the follow up content couldn't be loaded
        Only formatting have been changed, you should switch to markup to see the changes
    • User avatar
      Thomas Gerbet (tgerbet)2018-02-09 12:51
      Integrated into Tuleap 9.17.99.69.

      • Status changed from Under review to Closed
      • Connected artifacts
      • Close date set to 2018-02-09
    • User avatar

      • Category set to Installation process
      • Status changed from New to Under review
      • Assigned to changed from None to Manuel Vacelet (vaceletm)
      • Reported in version set to 9.17