使用在线 SVN 存储库有多安全?
使用在线 SVN 存储库安全如何?
我想和一些朋友一起共同发展。我知道您可以在其中一些服务中创建非公共帐户,但我不愿意将我们所有的智力产品发送给另一家公司管理。毕竟,如果您的想法可行,那些公司可以轻松找到您的源代码!
您认为这种护理重要吗?如果是这样,最好的解决方案是什么?
我的问题不是“它有多好”或“哪个更好”,我只是想知道您是否信任他们以及为什么(或为什么不)。
下面我为您提供 SVN 存储库示例:
谢谢大家!
How safe is to use an online SVN repository?
I want to develop collaboratively with some friends. I know you can create non-public accounts in some of those services, but I can't fell confortable to send all of our intelectual products to another company manage. After all, if your idea works, those companies can easily find your source code!
Do you think this care is important? If so, what is the best solution?
My question isn't "how good it is" or "which is better", I just want know if you trust them and why (or why not).
Below I give you SVN repositories examples:
Thank you all!
如果你对这篇内容有疑问,欢迎到本站社区发帖提问 参与讨论,获取更多帮助,或者扫码二维码加入 Web 技术交流群。
绑定邮箱获取回复消息
由于您还没有绑定你的真实邮箱,如果其他用户或者作者回复了您的评论,将不能在第一时间通知您!
发布评论
评论(2)
如果你有足够有价值的东西被偷,无论如何都是时候去找律师了。从一开始就让他参与进来,让他审查各个托管网站必须提供的任何协议,并确保他们能够对违反安全的行为负责,包括竞争对手手中的源代码的价值。
If you have something valuable enough to be stolen, it's time to get a lawyer anyway. Get him involved from the start, have him review whatever agreements the various hosting sites have to offer, and make sure they can be held accountable for breaches of security, including the value of your source code in the hands of competitors.
关注云中的源代码绝对很重要。归根结底,您必须权衡安装、保护、维护、备份自己的成本与每月 10 美元的托管 SVN 服务计划的成本。总会有某个部门永远不会将代码上传到托管存储库,例如银行、军队等,但对于我们大多数人来说,与不自己这样做的好处相比,风险很低且很小。确保您选择的提供商强制执行 SSL、定期备份(至少每小时粒度)、其数据中心提供商是 SAS70,并且有一项策略允许您在选择离开或去其他地方时下载完整的 SVN 存储库转储,以及需要多长时间该提供商已经开展业务,他们是否有良好的记录,以及该提供商是否强制执行密码政策。
It is definitely important to be concerned about your source code in the cloud. At the end of the day you have to weigh up the cost of installing, securing, maintaining, backing up yourself vs a $10/month plan with a hosted SVN service. There are always going to be a certain sector that will never upload code into a hosted repo, i.e. banks, military, etc, but for the majority of us the risk is low and minor compared to the benefits of not doing it yourself. Make sure the provider you choose enforces SSL, has regular backups (at least hourly granularity), their datacenter provider is SAS70, and a policy allowing you to download your full SVN repo dump if you choose to leave, or go elsewhere, and how long the provider has been in business, do they have a good track record, and does the provider enforce a password policy.