reconciler: participant zero-quota group + quota.default 0 #85

Stängd
öppnade 2026-07-17 16:35:14 +00:00 av supernaut · 0 kommentarer
Ägare

Part of the Open registration epic (bitborg-docs#27; milestone "Open registration").

  • Reconciler: ensure Forgejo quota group participant (rule size:all = 0); assignment precedence ent_lfs_large → ent_lfs → tier_participant→participant → lfs-basic fall-through.
  • app.ini.j2: [quota.default] TOTAL = -1 → 0 — closes the window where a brand-new JIT Forgejo account (first OIDC login, before the next reconciler tick) has UNLIMITED quota.
  • ⚠️ Apply-day precondition: verify every existing account incl. service accounts (gitborg-ci pushes packages) is in an explicit quota group before this lands on prod.
Part of the Open registration epic (bitborg-docs#27; milestone "Open registration"). - Reconciler: ensure Forgejo quota group `participant` (rule `size:all = 0`); assignment precedence `ent_lfs_large` → `ent_lfs` → `tier_participant`→participant → `lfs-basic` fall-through. - `app.ini.j2`: `[quota.default] TOTAL = -1 → 0` — closes the window where a brand-new JIT Forgejo account (first OIDC login, before the next reconciler tick) has UNLIMITED quota. - ⚠️ Apply-day precondition: verify every existing account incl. service accounts (gitborg-ci pushes packages) is in an explicit quota group before this lands on prod.
supernaut lade till denna till milstolpe Open registration 2026-07-17 16:35:54 +00:00
Logga in för att delta i denna konversation.
Ingen milstolpe
Inga tilldelade
1 deltagare
Notiser
Förfallodatum
Förfallodatumet är ogiltigt eller utanför gränserna. Använd formatet "åååå-mm-dd".

Inget förfallodatum satt.

Beroenden

Inga beroenden satta

Referens
bitborg/bitborg-infra#85
Ingen beskrivning angiven.