Hi all,
According to Toshio, we are OK to start authenticating on the staging instance (https://insight.stg.fedoraproject.org) to real FAS. I've made the appropriate changes:
* Pointed the AuthFAS module at admin.fp.o/accounts (In staging, there is magic that makes this actually resolve to admin.stg.fp.o -- so when we move to production it will simply keep working properly using the real admin.fp.o)
* Turned OFF the "trust invalid SSL certs" option. This means if something goes wrong with the SSL certs on the FAS server, we'll know about it. Of course, many other apps will make sure other people know about it, so this isn't a problem, just providing this info for the sake of being complete. :-)
So -- to reiterate, when you login to insight.stg.fp.o, you will use your REAL FAS account information, and it should be secured via HTTPS to the best of everyone's knowledge.
The publictest09 server continues to use FakeFAS. Our development there will most likely be piecemeal now, and we'll discuss that next week at our regular meeting.
Thanks for the information, Paul!
Just FYI, I don't have privs to create content on staging; I did check to make sure that I am a member of cmseditors in the production Fedora Account System. When you get a chance could you add me to the appropriate role on staging? Thanks!
- pascal ________________________________________ From: logistics-bounces@lists.fedoraproject.org [logistics-bounces@lists.fedoraproject.org] On Behalf Of Paul W. Frields [stickster@gmail.com] Sent: Friday, April 01, 2011 8:57 AM To: Fedora Logistics List Cc: Fedora Infrastructure Subject: [Insight] [IMPORTANT] Staging on insight.stg.fp.o now uses REAL FAS
Hi all,
According to Toshio, we are OK to start authenticating on the staging instance (https://insight.stg.fedoraproject.org) to real FAS. I've made the appropriate changes:
* Pointed the AuthFAS module at admin.fp.o/accounts (In staging, there is magic that makes this actually resolve to admin.stg.fp.o -- so when we move to production it will simply keep working properly using the real admin.fp.o)
* Turned OFF the "trust invalid SSL certs" option. This means if something goes wrong with the SSL certs on the FAS server, we'll know about it. Of course, many other apps will make sure other people know about it, so this isn't a problem, just providing this info for the sake of being complete. :-)
So -- to reiterate, when you login to insight.stg.fp.o, you will use your REAL FAS account information, and it should be secured via HTTPS to the best of everyone's knowledge.
The publictest09 server continues to use FakeFAS. Our development there will most likely be piecemeal now, and we'll discuss that next week at our regular meeting.
-- Paul W. Frields http://paul.frields.org/ gpg fingerprint: 3DA6 A0AC 6D58 FEC4 0233 5906 ACDB C937 BD11 3717 http://redhat.com/ - - - - http://pfrields.fedorapeople.org/ Red Hat Summit/JBossWorld -- Register now! http://.theredhatsummit.com _______________________________________________ logistics mailing list logistics@lists.fedoraproject.org https://admin.fedoraproject.org/mailman/listinfo/logistics
On Fri, Apr 01, 2011 at 09:46:42AM -0400, Pascal Calarco wrote:
Thanks for the information, Paul!
Just FYI, I don't have privs to create content on staging; I did check to make sure that I am a member of cmseditors in the production Fedora Account System. When you get a chance could you add me to the appropriate role on staging? Thanks!
Certainly. That would probably mean you haven't applied or been added to the 'cmseditors' group in the real FAS, although you might have been in the fake FAS instance. I can take care of that.
logistics@lists.fedoraproject.org