Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Hosted site security #7

Open
zflat opened this issue Oct 6, 2014 · 2 comments
Open

Hosted site security #7

zflat opened this issue Oct 6, 2014 · 2 comments

Comments

@zflat
Copy link
Member

zflat commented Oct 6, 2014

Bringing the application out of the shop in onto the web, we need a basic level of security for viewing application content. At the September council meeting, we talked about 1 password to get access to view everything. The shop computers can be set up with that password so logging on will still be easy.

@zflat
Copy link
Member Author

zflat commented Oct 6, 2014

Commit fc75510 adds user groups and a seed user to be a "view all content only" in the "volunteer" group. With this setup, a logon to the volunteer user will be able to see everything but not edit. Editing is only for the staff user.

@zflat
Copy link
Member Author

zflat commented Oct 24, 2014

Commits d01f8a7 and 0ead64b add IP whitelisting functionality. Commit dd7b967 reverts permissions set previously in fc75510.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant