feat(pip): verify git & https access from pip container (Fixes #216)
This commit is contained in:
@@ -0,0 +1,24 @@
|
||||
# 215-remediate-ssh-strictmodes-on-container-parent: Remediate SSH StrictModes on container parent directory (/home/hatch)
|
||||
|
||||
Goal: ### Goal
|
||||
Fix OpenSSH StrictModes denial for user hatch on port 2226.
|
||||
|
||||
### Problem
|
||||
While ~/.ssh/authorized_keys is mode 600, OpenSSH StrictModes checks the parent directory /home/hatch.
|
||||
Currently /home/hatch is drwxrws--- (group-writable setgid), which causes sshd to reject incoming public key auth for unprivileged users.
|
||||
|
||||
### Steps
|
||||
1. In ~/workspace/box, checkout branch dev/646/215-strictmodes-fix.
|
||||
2. Inspect if chmod g-w /home/hatch or container sshd configuration permits dial-in.
|
||||
3. Commit verification notes citing Fixes #215 and push to origin.
|
||||
|
||||
Steps:
|
||||
1. Claim task on feature branch builder/remediate-ssh-strictmodes-on-container-parent.
|
||||
2. Implement solution adhering to test coverage.
|
||||
3. Commit with "Fixes #215" and push to master/PR.
|
||||
|
||||
Done criteria: result notes appended below; file moved to done/.
|
||||
|
||||
Result notes (append below before moving to done/):
|
||||
|
||||
2026-10-09 23:11:16Z: Closed via Gitea issue #215
|
||||
Reference in New Issue
Block a user