Am 2022-10-18 04:52, schrieb Paul Wise:

Salsa should be there for git (related) things.
NOT as an identity/login provider for Debian
There are already Debian services that do not offer any other option
for auth than Salsa.

Which is bad. And should be changed.

Arguably it is probably a good thing to use Salsa, since it means
services can have an auth option for all of the Debian contributors,
including those who are not currently DDs or DMs.

No, it is a bad, not a good thing, to use Salsa for this.
Salsa is a "repository service" with some added nice features related to them. It is good at that, yay. Fine.

Salsa is really bad as an identity/authentication service. Having a salsa account does NOT mean ANYTHING related to Debian, like DM/DD/whatever. And thats information that such a service ought to provide too. It also does not allow any kind of useful management of identities besides "the account is there/blocked/deleted". And so, as soon as you would want to NOT allow someone a login to a service that uses salsa as a login service - you need to delete their account. Including their repositories and abilities there. Not good.

IMO that functionality of salsa should be deactivated *right* *now*. To not have it get used even more.

Salsa ought to use some service for login, not the other way. Keycloak or whatever else, doesnt matter. And that service ought to be properly integrated with NM and the DSA services.

--
bye Joerg

Reply via email to