Test Wiki:Community portal: Difference between revisions
From Test Wiki
Content deleted Content added
Cocopuff2018 (talk | contribs) |
|||
| Line 230: | Line 230: | ||
:I don't see why we would unblock sockpuppets, but keeping the main unblocked seems fine. [[User:Zippybonzo|Zippybonzo]] ([[User talk:Zippybonzo|talk]]) 12:38, 29 October 2024 (UTC) |
:I don't see why we would unblock sockpuppets, but keeping the main unblocked seems fine. [[User:Zippybonzo|Zippybonzo]] ([[User talk:Zippybonzo|talk]]) 12:38, 29 October 2024 (UTC) |
||
==Require 2FA for highly privileged groups== |
|==Require 2FA for highly privileged groups== |
||
I'm proposing that we should require 2FA for Interface Admin, Steward and Sysadmin group members as security precautions, as IAs can edit pages that would allow them privilege escalation, and stewards/sysadmins can give such permissions out which could cause issues if their accounts were compromised. Additionally, I think bots with admin/iadmin perms should have 2FA required as they are probably less monitored security wise. [[User:Zippybonzo|Zippybonzo]] ([[User talk:Zippybonzo|talk]]) 10:44, 12 November 2024 (UTC) |
I'm proposing that we should require 2FA for Interface Admin, Steward and Sysadmin group members as security precautions, as IAs can edit pages that would allow them privilege escalation, and stewards/sysadmins can give such permissions out which could cause issues if their accounts were compromised. Additionally, I think bots with admin/iadmin perms should have 2FA required as they are probably less monitored security wise. [[User:Zippybonzo|Zippybonzo]] ([[User talk:Zippybonzo|talk]]) 10:44, 12 November 2024 (UTC) |
||
| Line 236: | Line 236: | ||
:& it should probably be required for AFAs [[User:Zippybonzo|Zippybonzo]] ([[User talk:Zippybonzo|talk]]) 10:46, 12 November 2024 (UTC) |
:& it should probably be required for AFAs [[User:Zippybonzo|Zippybonzo]] ([[User talk:Zippybonzo|talk]]) 10:46, 12 November 2024 (UTC) |
||
:{{o}}: We haven’t had any issues with accounts with elevated permissions being compromised. If the community trusts them to hold the permissions, than they can also be trusted to make sure their account is secure. [[User:X|'''<span style="background:#3383ff;color:white;padding:5px;box-shadow:0 1px 1px 0 rgba(0,0,0,0.2)">X</span>''']] ([[User talk:X|talk]] + [[Special:Contributions/X|contribs]]) 11:10, 12 November 2024 (UTC) |
:{{o}}: We haven’t had any issues with accounts with elevated permissions being compromised. If the community trusts them to hold the permissions, than they can also be trusted to make sure their account is secure. [[User:X|'''<span style="background:#3383ff;color:white;padding:5px;box-shadow:0 1px 1px 0 rgba(0,0,0,0.2)">X</span>''']] ([[User talk:X|talk]] + [[Special:Contributions/X|contribs]]) 11:10, 12 November 2024 (UTC) |
||
:{{o}}: I don't see a reason to add it since the rate of accounts being compromised has been vary low --[[User:Cocopuff2018|Cocopuff2018]] ([[User talk:Cocopuff2018|talk]]) 14:24, 12 November 2024 (UTC) |
|||