pages-core icon indicating copy to clipboard operation
pages-core copied to clipboard

Lockdown

Open davemcorwin opened this issue 5 years ago • 0 comments

  • [ ] Restrict access to staging env to Federalist personnel
  • [ ] Restrict web bucket access to proxy servers
  • [ ] Restrict edge proxy cloudfront url to edge proxy
  • [x] Implement caulking #3059
  • [ ] ?

Staging env

We should discuss the impact of HOW we use the staging env as well. We probably shouldn't use it on any repo owned by a customer as that adds a webhook and status checks to the repo. We can fork repos and add them BUT this can have unintended consequences if their build interacts with 3rd party apis (though we would not have their secrets) It would be super nice to have our own Github org to manage all this and we may want to consider separate "Applications" or "orgs" in Github.

davemcorwin avatar Nov 04 '20 17:11 davemcorwin