•  
      request #10782 Disable usage of unix users and groups
    Infos
    #10782
    Manuel Vacelet (vaceletm)
    2018-02-28 11:08
    2017-10-26 17:02
    10955
    Details
    Disable usage of unix users and groups

    Since ages, Tuleap has a strong integration with underlying OS because all users have their counterpart on the OS as unix users and all projects have their own group.

    This is used for:

    • Publishing stuff in 'homepages':
      • autenticated FTP
      • SCPing stuff
    • CVS
    • Subversion (repositories are owned by codendiadm but the group is the project because ... probably is was the config of CVS even if it's useless)

    From a security stand point it's really bad and corresponding services are only their for legacy reasons until we can remove them.

    Recent platforms should not deploy nss & co.

    This is enabled by default on enalean/tuleap-aio docker image only ATM

    Installation process
    9.17
    Empty
    • [x] enhancement
    • [ ] internal improvement
    Empty
    Stage
    Manuel Vacelet (vaceletm)
    Closed
    2018-02-09
    Attachments
    Empty
    References

    Follow-ups

    User avatar
    • Original Submission
      Something went wrong, the follow up content couldn't be loaded
      Only formatting have been changed, you should switch to markup to see the changes
    User avatar
    Thomas Gerbet (tgerbet)2018-02-09 12:51
    Integrated into Tuleap 9.17.99.69.

    • Status changed from Under review to Closed
    • Connected artifacts
    • Close date set to 2018-02-09
    User avatar

    • Category set to Installation process
    • Status changed from New to Under review
    • Assigned to changed from None to Manuel Vacelet (vaceletm)
    • Reported in version set to 9.17