[SAC] [OSGeo] #2009: Give robe access to secrets file on secure server

OSGeo trac_osgeo at osgeo.org
Sun Oct 15 23:04:03 PDT 2017


#2009: Give robe access to secrets file on secure server
---------------------------+--------------------
 Reporter:  robe           |       Owner:  sac@…
     Type:  task           |      Status:  new
 Priority:  normal         |   Milestone:
Component:  Systems Admin  |  Resolution:
 Keywords:                 |
---------------------------+--------------------

Comment (by strk):

 I've created an "access" group and a directory /root/access
 which is read-writeable by members of such group and not
 accessible by others. Then I added user "robe" to this group.

 Regina: please create a new file in that directory, make
 sure it's not world readable, then add the info in there.
 Name the file after the service.

 I'm hoping to get more fine-grained access control in this way.
 And move closer to a standard password store layout, similar
 to what https://www.passwordstore.org/ uses.

--
Ticket URL: <https://trac.osgeo.org/osgeo/ticket/2009#comment:6>
OSGeo <http://www.osgeo.org/>
OSGeo committee and general foundation issue tracker.


More information about the Sac mailing list