pulp / pulp/pulp_python

Regex/wildcard filters for include/exclude

未关闭
#1,005 0 条评论 0 个 reaction 已指派 0 人 在 GitHub 查看

还没有人认领这个 Issue。

Feature
主要语言
Python
星标
49
派生
88
平均合并
1 天 10 小时
30 天内合并 PR
31

描述

Is your feature request related to a problem? Please describe.
I want to protect my users from dependency confusion attacks (malicious or accidental).

Describe the solution you'd like
I want to exclude packages in specific namespace (for example google for google-this and google-that) from repository pull-through caching.

Describe alternatives you've considered
Requiring user to configure two repositories where one takes priority.

Additional context
Somewhat related to https://github.com/pulp/pulp_python/issues/998

Repository pull-through sample in https://github.com/pulp/pulp_python/issues/1004

https://matrix.to/#/!ddcyhqxyFqGMoDLDeP:matrix.org/$5kmR0IyrQ0IQCGq9BHvRskUhB0UJROnZ-sISpgokVSA?via=matrix.org&via=ctrl-c.liu.se&via=x9c4.spdns.org

贡献指南

打开贡献指南

从这里开始

  1. 先读完整个 Issue,再读项目的贡献指南。
  2. 在 Issue 下留言说明你要接手 —— 这能避免两个人做同样的事。
  3. Fork 仓库,在一个分支上完成修改。
  4. 提交 Pull Request,并在描述里引用这个 Issue 编号。

调研方向

Start by reading the related pulp_python issues 998 and 1004, especially the repository pull-through sample, and inspect how pull-through caching is described there. Done means users can configure include/exclude regex or wildcard filters that prevent packages in a namespace such as google from being cached.

由索引模型根据 Issue 内容生成。

评估

技术栈
python
领域
backend
Issue 类型
功能
难度
5/5
预计耗时
一周以上
活跃度
停滞
描述清晰度
需要澄清
新手友好度
25/100

把新 issue 发到你的邮箱

精选适合新手参与的 GitHub issue 摘要。