Page MenuHomePhabricator

Only require view permissions for read-only Git LFS requests
ClosedPublic

Authored by epriestley on Mar 19 2016, 6:11 PM.
Tags
None
Referenced Files
F14048287: D15499.id.diff
Thu, Nov 14, 7:21 AM
F14036102: D15499.id.diff
Sun, Nov 10, 8:33 AM
F14012015: D15499.id.diff
Fri, Nov 1, 6:55 AM
F14007545: D15499.id37360.diff
Tue, Oct 29, 7:38 AM
F14007544: D15499.id37361.diff
Tue, Oct 29, 7:38 AM
F13996997: D15499.id.diff
Thu, Oct 24, 1:35 AM
F13994642: D15499.id.diff
Wed, Oct 23, 7:29 AM
F13994014: D15499.diff
Wed, Oct 23, 3:09 AM
Subscribers
None

Details

Summary

Ref T7789. Implement proper detection for read-only requests. Previously, we assumed every request was read/write and required lots of permissions, but we don't need "Can Push" permission if you're only cloning/fetching/pulling.

Test Plan
  • Set push policy to "no one".
  • Fetched, got clean data out of LFS.
  • Tried to push, got useful error.

Diff Detail

Repository
rP Phabricator
Lint
Lint Not Applicable
Unit
Tests Not Applicable

Event Timeline

epriestley retitled this revision from to Only require view permissions for read-only Git LFS requests.
epriestley updated this object.
epriestley edited the test plan for this revision. (Show Details)
epriestley added a reviewer: chad.
epriestley edited edge metadata.
  • Also do set_time_limit(0).
chad edited edge metadata.
This revision is now accepted and ready to land.Mar 19 2016, 9:22 PM
This revision was automatically updated to reflect the committed changes.