Repository Security improvement - the default for creating a new repository should be restricted to admins until specifically configured.

XMLWordPrintable

      I just noticed that when setting up repositories, they were created with 'default' which mean if public sign up was on, they were able to see the repos. For the sake of security, a fresh install should default to restricting access to admins, perhaps through a default-created group 'admins'. Anon access should also default to the safe NO option.

      Given that access to a repo enables complete tarball dumps, security must take precedence over any initial ease of use...

              Assignee:
              Unassigned
              Reporter:
              Deleted Account (Inactive)
              Votes:
              0 Vote for this issue
              Watchers:
              0 Start watching this issue

                Created:
                Updated:
                Resolved: