Answer the question
In order to leave comments, you need to log in
Capistrano: user limits on the server
Good day!
We are trying to implement Capistrano to deploy releases to servers. Everything would be fine if not for the righteous paranoia of the administrator. In this regard, the question arises: by what means is it right to limit the set of allowed actions for the user used for deployment. As well as a list of file system resources to which the user should have (or not have) access.
Only 2 options come to mind:
- dancing with ~/.ssh/authorized_keys
and command
- AppArmor & SELinux
The experience of colleagues in this regard is interesting.
Answer the question
In order to leave comments, you need to log in
Create a new user (developer), give him rights, add to authorized_keys?
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question