Server-side password protection SVN

Our Windows 2003 Server office contains our company SVN repository. I am looking for a secure method, preferably encryption, for server-side passwords. They are stored in clear text right now. Is there an SVN method or method that I can use to achieve this?

+4
source share
4 answers

SASL is available in most SVN server files available for Windows.

+1
source

Without a doubt, the most secure authentication system for SVN is SVN + ssh: // using certificate authentication for SSH. This makes brute force attacks statistically impossible, since the attacker cannot use the dictionary.

It also makes MITM more complicated since you cannot intercept the password. Even if you have access to the server, you will not have the user's private key, so this will take care of some of the threats created by the attacker.

+1
source

If your company uses Active Directory, what an option.

0
source

Check out VisualSVN Server . Enterprise Edition supports out-of-box Integrated Windows Authentication (Active Directory Single Sign-On) authentication. NTLM and Negotiate (SPNEGO) (NTLM and Kerberos) are supported through SSPI.

0
source

Source: https://habr.com/ru/post/1303738/


All Articles