Read-only user for /var/log and MySQL access
- Dominant language
- Python
- Stars
- 180
- Forks
- 47
- PR merge metrics
- No merged PRs in 30d
Description
Hubble accesses GitHub Enterprise log data via [administrative shell](https://help.github.com/enterprise/2.11/admin/guides/installation/administrative-shell-ssh-access/) and the database via MySQL. It would be awesome if there would be a read-only administrative shell user limited to `/var/log` and a read-only user for SQL queries.
This would remove the (potential) risk for modifications to the instance. Plus, the user could get a lower priority or could be blocked in case of performance issues.
/cc @b4mboo @djdefi @kai @acrlewis
Contributor guide
Research direction
No files, tests, or entry points are identified. Start by reviewing Hubble's current GitHub Enterprise administrative-shell and MySQL access paths described in the issue. Done would mean defining read-only administrative-shell access limited to /var/log and read-only SQL access, with a way to reduce priority or block access during performance issues.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- github, mysql
- Domain
- databases, infrastructure, security
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 25/100