Skip to content

[Bioc-devel] Several ssh keys ?

2 messages · Bernat Gel, Martin Morgan

#
Don't want to be alarmist, but is there anything in place to prevent a 
"malicious agent" inserting a new ssh key to the form and gaining access 
to our git repo? Maybe it would be sufficient to send an email to the 
maintainer whenever a new key is added so we have a clue something has 
gone wrong?

Bernat

*Bernat Gel Moreno*
Bioinformatician

Hereditary Cancer Program
Program of Predictive and Personalized Medicine of Cancer (PMPPC)
Germans Trias i Pujol Research Institute (IGTP)

Campus Can Ruti
Carretera de Can Ruti, Cam? de les Escoles s/n
08916 Badalona, Barcelona, Spain

Tel: (+34) 93 554 3068
Fax: (+34) 93 497 8654
08916 Badalona, Barcelona, Spain
bgel at igtp.cat <mailto:bgel at igtp.cat>
www.germanstrias.org <http://www.germanstrias.org/>

<http://www.germanstrias.org/>







El 09/29/2017 a las 02:32 PM, Turaga, Nitesh escribi?:
#
On 10/02/2017 10:50 AM, Bernat Gel wrote:
yes, there are opportunities for gaining 'unintended' access. We're 
working on tightening these up.

Note that there is a mapping between the public key and the packages 
that the public key provides access to, and the mapping is not itself 
public.

Martin
This email message may contain legally privileged and/or...{{dropped:2}}