feat: finer-grained ACLs for server accesses #90

Merged
raito merged 1 commit from acls into main 2024-10-05 14:25:29 +00:00
Owner

In the process of adding multi-tenant infrastructure, it seems relevant
to add finer-grained ACLs.

Related to #89.

Signed-off-by: Raito Bezarius masterancpp@gmail.com

In the process of adding multi-tenant infrastructure, it seems relevant to add finer-grained ACLs. Related to https://git.lix.systems/the-distro/infra/issues/89. Signed-off-by: Raito Bezarius <masterancpp@gmail.com>
raito added 1 commit 2024-08-01 21:46:13 +00:00
In the process of adding multi-tenant infrastructure, it seems relevant
to add finer-grained ACLs.

Signed-off-by: Raito Bezarius <masterancpp@gmail.com>
Author
Owner

Confirmed via dry-activation that this doesn't remove all SSH keys from the universe: /nix/store/bwj5af2f257azmir090g08d3jy2hvnma-root-authorized_keys on public01.

Confirmed via `dry-activation` that this doesn't remove all SSH keys from the universe: `/nix/store/bwj5af2f257azmir090g08d3jy2hvnma-root-authorized_keys` on public01.
raito changed title from WIP: feat: finer-grained ACLs for server accesses to feat: finer-grained ACLs for server accesses 2024-08-01 22:02:31 +00:00
Owner

Do we need all those invisible unicode characters?

Do we need all those invisible unicode characters?
Author
Owner

Do we need all those invisible unicode characters?

we don't but i keep generating them for no reason

> Do we need all those invisible unicode characters? we don't but i keep generating them for no reason
Owner

Well, other than that it looks a bit convoluted in how it reverses the group -> users and user -> groups mapping, but I guess it's fine

Well, other than that it looks a bit convoluted in how it reverses the group -> users and user -> groups mapping, but I guess it's fine
yu-re-ka approved these changes 2024-08-02 19:43:21 +00:00
Author
Owner

Well, other than that it looks a bit convoluted in how it reverses the group -> users and user -> groups mapping, but I guess it's fine

Hm, if you think it's better to go in another direction, I'm all for it ; it doesn't have to be merged that fast.

> Well, other than that it looks a bit convoluted in how it reverses the group -> users and user -> groups mapping, but I guess it's fine Hm, if you think it's better to go in another direction, I'm all for it ; it doesn't have to be merged that fast.
raito force-pushed acls from 130faa2836 to f00bacd8fe 2024-10-05 14:12:38 +00:00 Compare
Author
Owner

I re-inverted the logic, so it's less convoluted I hope. I will merge now because this has been staying for too long.

I re-inverted the logic, so it's less convoluted I hope. I will merge now because this has been staying for too long.
raito force-pushed acls from f00bacd8fe to 6d3e14ec27 2024-10-05 14:20:31 +00:00 Compare
raito merged commit 6d3e14ec27 into main 2024-10-05 14:25:29 +00:00
raito deleted branch acls 2024-10-05 14:25:29 +00:00
Sign in to join this conversation.
No reviewers
No labels
No milestone
No project
No assignees
2 participants
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference: the-distro/infra#90
No description provided.