docs: ADR 0031 — git-SSH via rootless image + built-in server (bitborg-infra#91) #40
Inga granskare
Etiketter
Inga etiketter
area/backups
area/ci
area/control-panel
area/identity
area/infra
area/observability
area/payments
area/security
area/storage
area/web
blocked
needs-info
needs-triage
ready-for-implementation
type
bug
type
chore
type
docs
type
epic
type
feature
type
task
wontfix
Ingen milstolpe
Inget projekt
Inga tilldelade
1 deltagare
Notiser
Förfallodatum
Inget förfallodatum satt.
Beroenden
Inga beroenden satta
Referens
bitborg/bitborg-docs!40
Läser in…
Hänvisa till i nytt ärende
Ingen beskrivning angiven.
Ta bort grenen "docs/0031-git-ssh-builtin-rootless"
Borttagning av en gren är permanent. Även om den borttagna grenen kan fortsätta existera en kort tid innan den faktiskt tas bort, kan det INTE ångras i de flesta fall. Vill du fortsätta?
Decision record for #91 (option A2). Move git-SSH from the rootful image's bundled OpenSSH (pasta SNATs the client IP) to the rootless image's built-in Go SSH server + systemd socket activation for :22 — the #81 source-IP-preserving pattern, now applicable because Forgejo matches activated fds by address (verified in
net_unix.go)./data/gitea→/var/lib/gitea/ userns / host-key migration is at its cheapest.podman exec -u git/GITEA_*/path refs (reconciler, web, create-user) retarget to uid 1000 / the rootless layout.Refs #91 (implementation follows this ADR).
docs: ADR 0031 — git-SSH via rootless image + built-in server (gitborg-infra#91)till docs: ADR 0031 — git-SSH via rootless image + built-in server (bitborg-infra#91)