[mirror-admin] rsync ACLs for tier1s

Axel Thimm Axel.Thimm at ATrpms.net
Sun Apr 13 02:52:34 EDT 2008


On Sat, Apr 12, 2008 at 04:00:30PM -0500, Matt Domsch wrote:
> > https://admin.fedoraproject.org/mirrormanager/rsync_acl

> The drawback to using this list is that, honestly, anyone who has a
> Fedora Account System account can create a Site and a Host in the MM
> database, and add their addresses to the ACL.  There are 283 entries
> right now.  In practice, it hasn't been a problem - we haven't had a
> ton of people signing up as mirrors only to leech the bits before
> they're announced but not truly acting as mirrors.  If it becomes a
> problem we may have to go back to people manually asking for entry to
> specific Tier 1's ACLs.

How about adding an approved-by-mirror-wrangler bit to signal that
some registered mirror is trusted and remove that bit once some mirror
shows that it was there for leeching purposes only?
-- 
Axel.Thimm at ATrpms.net
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 197 bytes
Desc: not available
Url : http://mail.ale.org/pipermail/mirror-admin/attachments/20080413/41b62779/attachment.bin 
-------------- next part --------------
--


More information about the Mirror-admin mailing list