<?xml version="1.0" encoding="utf-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Capistrano security fun</title>
	<atom:link href="http://www.nobugs.org/blog/archives/2007/03/04/capistrano/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.nobugs.org/blog/archives/2007/03/04/capistrano/</link>
	<description>Thoughts of a software engineer</description>
	<lastBuildDate>Fri, 12 Mar 2010 14:56:25 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Jonathan Wilkins</title>
		<link>http://www.nobugs.org/blog/archives/2007/03/04/capistrano/comment-page-1/#comment-19898</link>
		<dc:creator>Jonathan Wilkins</dc:creator>
		<pubDate>Tue, 23 Oct 2007 19:44:50 +0000</pubDate>
		<guid isPermaLink="false">http://www.nobugs.org/blog/archives/2007/03/04/capistrano/#comment-19898</guid>
		<description>Capistrano 2.0 fixes this.  You can do:

set :deploy_via, :copy
set :copy_strategy, :export


And it will only send a tarball of your exported sources up.</description>
		<content:encoded><![CDATA[<p>Capistrano 2.0 fixes this.  You can do:</p>
<p>set :deploy_via, :copy<br />
set :copy_strategy, :export</p>
<p>And it will only send a tarball of your exported sources up.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Andrew Beacock</title>
		<link>http://www.nobugs.org/blog/archives/2007/03/04/capistrano/comment-page-1/#comment-13201</link>
		<dc:creator>Andrew Beacock</dc:creator>
		<pubDate>Wed, 11 Jul 2007 07:30:29 +0000</pubDate>
		<guid isPermaLink="false">http://www.nobugs.org/blog/archives/2007/03/04/capistrano/#comment-13201</guid>
		<description>Andrew,  thank you so much for writing such a detailed post, it was no 1 in my google search on &quot;capistrano svn security&quot;

http://www.google.com/search?q=capistrano+svn+security&amp;ie=utf-8&amp;oe=utf-8&amp;aq=t&amp;rls=com.ubuntu:en-US:official&amp;client=firefox-a

I&#039;ve only started using Capistrano this morning and was already worried by the &quot;svn checkout on a live server&quot; issue.

I&#039;ll go and read the other links in the comments now.

I know it&#039;s been a few months now since your post, what is your current &quot;best practice&quot; way of deploying via Capistrano?</description>
		<content:encoded><![CDATA[<p>Andrew,  thank you so much for writing such a detailed post, it was no 1 in my google search on &#8220;capistrano svn security&#8221;</p>
<p><a href="http://www.google.com/search?q=capistrano+svn+security&amp;ie=utf-8&amp;oe=utf-8&amp;aq=t&amp;rls=com.ubuntu:en-US:official&amp;client=firefox-a" rel="nofollow">http://www.google.com/search?q=capistrano+svn+security&amp;ie=utf-8&amp;oe=utf-8&amp;aq=t&amp;rls=com.ubuntu:en-US:official&amp;client=firefox-a</a></p>
<p>I&#8217;ve only started using Capistrano this morning and was already worried by the &#8220;svn checkout on a live server&#8221; issue.</p>
<p>I&#8217;ll go and read the other links in the comments now.</p>
<p>I know it&#8217;s been a few months now since your post, what is your current &#8220;best practice&#8221; way of deploying via Capistrano?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Terinea Tech Tips</title>
		<link>http://www.nobugs.org/blog/archives/2007/03/04/capistrano/comment-page-1/#comment-5569</link>
		<dc:creator>Terinea Tech Tips</dc:creator>
		<pubDate>Tue, 20 Mar 2007 14:02:07 +0000</pubDate>
		<guid isPermaLink="false">http://www.nobugs.org/blog/archives/2007/03/04/capistrano/#comment-5569</guid>
		<description>Off subject matter - Thanks for adding our company to your Edinburgh software companies page.

Jamie</description>
		<content:encoded><![CDATA[<p>Off subject matter &#8211; Thanks for adding our company to your Edinburgh software companies page.</p>
<p>Jamie</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anders Vesterberg</title>
		<link>http://www.nobugs.org/blog/archives/2007/03/04/capistrano/comment-page-1/#comment-5232</link>
		<dc:creator>Anders Vesterberg</dc:creator>
		<pubDate>Tue, 13 Mar 2007 12:38:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.nobugs.org/blog/archives/2007/03/04/capistrano/#comment-5232</guid>
		<description>So nice to see a software blogger, that&#039;s even using Ruby and that is also a bass player! Am I right? Then we are at least two! Have a look at www.vesterberg.se.

All the best, 
Anders Vesterberg</description>
		<content:encoded><![CDATA[<p>So nice to see a software blogger, that&#8217;s even using Ruby and that is also a bass player! Am I right? Then we are at least two! Have a look at <a href="http://www.vesterberg.se" rel="nofollow">http://www.vesterberg.se</a>.</p>
<p>All the best,<br />
Anders Vesterberg</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Erik Karulf</title>
		<link>http://www.nobugs.org/blog/archives/2007/03/04/capistrano/comment-page-1/#comment-5221</link>
		<dc:creator>Erik Karulf</dc:creator>
		<pubDate>Mon, 12 Mar 2007 19:05:09 +0000</pubDate>
		<guid isPermaLink="false">http://www.nobugs.org/blog/archives/2007/03/04/capistrano/#comment-5221</guid>
		<description>Just as a follow up, I patched Penny Arcade to block at the server level any .svn entries. This is a relic from our old Capistrano deployment model. Humorously, we found the model to involve too many holes to be punched in our firewall so we started working on an in house solution. Our new deployment model is in the testing stage and involves FreeBSD&#039;s jailing and some nullfs voodoo. 

All the passwords and hostnames have long since expired so for us the worst part is people probably saw some of the old PHP code I inherited, which I don&#039;t really want myself or PA associated with. 

Anyway thanks for the heads up.</description>
		<content:encoded><![CDATA[<p>Just as a follow up, I patched Penny Arcade to block at the server level any .svn entries. This is a relic from our old Capistrano deployment model. Humorously, we found the model to involve too many holes to be punched in our firewall so we started working on an in house solution. Our new deployment model is in the testing stage and involves FreeBSD&#8217;s jailing and some nullfs voodoo. </p>
<p>All the passwords and hostnames have long since expired so for us the worst part is people probably saw some of the old PHP code I inherited, which I don&#8217;t really want myself or PA associated with. </p>
<p>Anyway thanks for the heads up.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
