1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
|
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2//EN">
<HTML>
<HEAD>
<TITLE> [Mageia-discuss] Membership handling ( was: Leave )
</TITLE>
<LINK REL="Index" HREF="index.html" >
<LINK REL="made" HREF="mailto:mageia-discuss%40mageia.org?Subject=Re%3A%20%5BMageia-discuss%5D%20Membership%20handling%20%28%20was%3A%20Leave%20%29&In-Reply-To=%3C4db653402d5b8b6c6035c5fbed374a07%40www.ephaone.org%3E">
<META NAME="robots" CONTENT="index,nofollow">
<META http-equiv="Content-Type" content="text/html; charset=us-ascii">
<LINK REL="Previous" HREF="003910.html">
<LINK REL="Next" HREF="003913.html">
</HEAD>
<BODY BGCOLOR="#ffffff">
<H1>[Mageia-discuss] Membership handling ( was: Leave )</H1>
<B>Michael Scherer</B>
<A HREF="mailto:mageia-discuss%40mageia.org?Subject=Re%3A%20%5BMageia-discuss%5D%20Membership%20handling%20%28%20was%3A%20Leave%20%29&In-Reply-To=%3C4db653402d5b8b6c6035c5fbed374a07%40www.ephaone.org%3E"
TITLE="[Mageia-discuss] Membership handling ( was: Leave )">misc at zarb.org
</A><BR>
<I>Mon Mar 7 12:34:57 CET 2011</I>
<P><UL>
<LI>Previous message: <A HREF="003910.html">[Mageia-discuss] Leave
</A></li>
<LI>Next message: <A HREF="003913.html">[Mageia-discuss] Membership handling ( was: Leave )
</A></li>
<LI> <B>Messages sorted by:</B>
<a href="date.html#3911">[ date ]</a>
<a href="thread.html#3911">[ thread ]</a>
<a href="subject.html#3911">[ subject ]</a>
<a href="author.html#3911">[ author ]</a>
</LI>
</UL>
<HR>
<!--beginarticle-->
<PRE> On Mon, 7 Mar 2011 12:14:49 +0100, Wolfgang Bornath wrote:
><i> 2011/3/7 Michael Scherer <<A HREF="https://www.mageia.org/mailman/listinfo/mageia-discuss">misc at zarb.org</A>>:
</I>>><i> This bring the question of account management, ie what should
</I>>><i> we do with a account that is explicitely dropped ?
</I>>><i>
</I>>><i> Ie :
</I>>><i> - disable fully
</I>>><i> - leave it as it is now and :
</I>>><i>  - disable later
</I>>><i>  - leave forever usable
</I>>><i> - disable partially ( ie remove from sensitives groups ( and so
</I>>><i> define
</I>>><i> what group is sensitive ))
</I>>><i>
</I>>><i> So what about last proposal ( remove from sensitive group ) and
</I>>><i> disable
</I>>><i> account
</I>>><i> in 6 months / 1 year  ?
</I>><i>
</I>><i> +1
</I>><i>
</I>><i> We've seen it quite often that people re-discover old interests,
</I>><i> hobbies, ex-wives, etc. So, a "sleep time" of 1 year is a good
</I>><i> solution.
</I>><i>
</I>><i> next thing is to define which are "sensitive groups / access
</I>><i> permissions".
</I>
Depend on the havoc that could be done by someone stealing a unused
account.
Someone posting on the forum under a false name will generate lots of
drama,
but nothing critical. The same goes for bugzilla, or any ml.
Now, someone moderating a forum and wrecking havoc would be
more problematic. The same goes for svn/git/packages/translation/etc.
Maybe it is simple to remove membership from all group, except those
seen as
unsensitive ? ( ie, everything except default users group ).
We also need to see when do we remove such access. IE, if someone after
X months
decide to find interest into doing stuff that requires Y privileges,
what should happen ?
- let him do it without asking ( keep Y privileges )
- need to ask to have his privileges back
- need to redo the whole system from start ?
I guess that depending on X and Y, of course, and so we need to have
first a list
of Y.
Let's try with that :
- commit to developper svn
- commit to packages svn
- submit packages
- commit to web svn
- modifiy ldap
- do sysadmin stuff ( log everywhere, touch to config )
- planet subscription
( insert bugzilla stuff )
( insert blog privs )
( insert i18n stuff )
( insert forums stuff )
( isert missing stuff )
I assume that we can all agree that a leader/deputy/board member
resiging will have
board/leader/deputy access removed.
Kharec, maybe you have something to recommand to us, with regard to
your account ?
( after all, you are the one who is mainly impacted, so it would be
quite unfair to not have your opinion taken in account )
--
Michael Scherer
</PRE>
<!--endarticle-->
<HR>
<P><UL>
<!--threads-->
<LI>Previous message: <A HREF="003910.html">[Mageia-discuss] Leave
</A></li>
<LI>Next message: <A HREF="003913.html">[Mageia-discuss] Membership handling ( was: Leave )
</A></li>
<LI> <B>Messages sorted by:</B>
<a href="date.html#3911">[ date ]</a>
<a href="thread.html#3911">[ thread ]</a>
<a href="subject.html#3911">[ subject ]</a>
<a href="author.html#3911">[ author ]</a>
</LI>
</UL>
<hr>
<a href="https://www.mageia.org/mailman/listinfo/mageia-discuss">More information about the Mageia-discuss
mailing list</a><br>
</body></html>
|