Skip to content
GitLab
Explore
Sign in
Primary navigation
Search or go to…
Project
Wiki Replica
Manage
Activity
Members
Labels
Plan
Issues
Issue boards
Milestones
Code
Merge requests
Repository
Branches
Commits
Tags
Repository graph
Compare revisions
Build
Pipelines
Jobs
Pipeline schedules
Artifacts
Deploy
Releases
Container Registry
Model registry
Operate
Environments
Monitor
Incidents
Analyze
Value stream analytics
Contributor analytics
CI/CD analytics
Repository analytics
Model experiments
Help
Help
Support
GitLab documentation
Compare GitLab plans
Community forum
Contribute to GitLab
Provide feedback
Keyboard shortcuts
?
Snippets
Groups
Projects
Show more breadcrumbs
The Tor Project
TPA
Wiki Replica
Commits
6db2aee2
Verified
Commit
6db2aee2
authored
3 years ago
by
anarcat
Browse files
Options
Downloads
Patches
Plain Diff
more nextcloud advantages
parent
b07e7563
No related branches found
No related tags found
No related merge requests found
Changes
1
Hide whitespace changes
Inline
Side-by-side
Showing
1 changed file
policy/tpa-rfc-11-svn-retirement.md
+42
-2
42 additions, 2 deletions
policy/tpa-rfc-11-svn-retirement.md
with
42 additions
and
2 deletions
policy/tpa-rfc-11-svn-retirement.md
+
42
−
2
View file @
6db2aee2
...
...
@@ -79,7 +79,7 @@ but other platforms may be used as deemed fit by the users. Users are
strongly encouraged to consult with TPA before picking alternate
platforms.
##
A
ccess controls
##
Nextcloud a
ccess controls
A key aspect of the SVN replacement is the access controls over the
sensitive data hosted there. The
[
current access control
...
...
@@ -112,6 +112,45 @@ and could be used to encrypt files before they are sent to the
server. OpenPGP programs typically suffer from serious usability flaws
which may make this impractical.
## Authentication improvements
One major improvement between the legacy SVN authentication system and
Nextcloud is that the latter supports state of the art two-factor
authentication (2FA, specifically
[
U2F
](
https://en.wikipedia.org/wiki/Universal_2nd_Factor
)
) which allows
authentication with physical security tokens like the
[
Yubikey
](
https://en.wikipedia.org/wiki/YubiKey
)
.
Another improvement is that Nextcloud delegates the access controls to
non-technical users: instead of relying solely on sysadmins (which
have access anyways) to grant access, non-sysadmin users can be
granted administrator access and respond to authorization requests,
possibly more swiftly than our busy sysadmins. This also enables more
transparency and a better representation of the actual business logic
(e.g. the executive director has the authority) instead of technical
logic (e.g. the system administrator has the authority).
This also implies that Nextcloud is more transparent than the current
SVN implementation: it's easy for an administrator to see who has
access to what in Nextcloud, whereas that required a lengthy, complex,
and possibly inaccurate audit to figure out the same in SVN.
## Usability improvements
Nextcloud should be easier to use than SVN. While both Nextcloud and
SVN have desktop applications for Windows, Linux and MacOS, Nextcloud
also offers iOS (iphone) and Android apps, alongside a much more
powerful and intuitive web interface that can basically be used
everywhere.
Nextcloud, like SVN, also supports the WebDAV standard, which allows
for file transfers across a wide variety of clients and platforms.
## Migration process
SVN users would be responsible for migrating their content out of the
server. Data that would not be migrated would be lost forever, after
an extended retirement timeline, detailed below.
## Timeline
*
November 1st 2021: reminder sent to SVN users to move their data
...
...
@@ -126,7 +165,8 @@ which may make this impractical.
## Affected users
It is believe that
`sue`
is the only remaining user of the SVN
service. Remains TBD.
service. Typically, operations people are the last remaining users of
the data that currently lives solely inside SVN.
# Approvals
...
...
This diff is collapsed.
Click to expand it.
Preview
0%
Loading
Try again
or
attach a new file
.
Cancel
You are about to add
0
people
to the discussion. Proceed with caution.
Finish editing this message first!
Save comment
Cancel
Please
register
or
sign in
to comment