X-Git-Url: https://git.adam-barratt.org.uk/?a=blobdiff_plain;f=input%2Fdoc%2Fguest-account.creole;h=17fe5674148dbd263860d6681b30b4e617d37718;hb=a8ef5346444012ffe559f8f9d02edb6764224e7a;hp=cf54630d796bada3cea6b8655c360c58865b2539;hpb=df5f71badd47c812fad82651cbd88f020251ea7a;p=mirror%2Fdsa-wiki.git
diff --git a/input/doc/guest-account.creole b/input/doc/guest-account.creole
index cf54630..17fe567 100644
--- a/input/doc/guest-account.creole
+++ b/input/doc/guest-account.creole
@@ -1,22 +1,24 @@
= Guest Access to porter machines =
-People who are not DDs but are working on software in Debian are able to obtain
+People who are not DDs but are working on software in Debian can request
access to porter machines for short term (1-2 months) in order to resolve port
issues and the like.
+The final decision about account creation remains with DSA.
+
== DMs/NMs ==
DMs (i.e. people who have their key in the debian-maintainers keyring) or
people already in the NM process may route their request through the
-NM-frontdesk.
+NM-frontdesk.
The following information should be provided to frontdesk:
* First/Middle/Last-name
* Preferred username
-* GPG key fingerprint (if key is in the debian-maintainers keyring), or key if not.
+* Key **fingerprint** of the PGP key, which needs to be on the keyserver network. (fingerprint. Not a keyid. Not a link to a site that has a key or a keyserver. A fingerprint.)
* email address
-* Signed agreement to abide by DMUP (or link to the mailinglist archive of debian-newmaint where that already was done)
+* Signed agreement to abide by DMUP (or link to the mailinglist archive of debian-newmaint where that already was done)
* Machine(s)/Architecture(s) to which access is needed
* Short rationale as to //why// access is needed
@@ -43,25 +45,28 @@ regarded as such.
* First/Middle/Last-name
* Preferred username
-* GPG key
+* Key **fingerprint** of the PGP key, which needs to be on the keyserver network. (fingerprint. Not a keyid. Not a link to a site that has a key or a keyserver. A fingerprint.)
* email address
-* Signed agreement to abide by DMUP
+* Signed agreement to abide by DMUP
* Machine(s)/Architecture(s) to which access is needed
* Short rationale as to //why// access is needed
=== Information sponsoring DD needs to supply to DSA ===
-* Signed email containing above information
+* DD-signed email containing above information
+* Guest-signed agreement to abide by DMUP
+
+== Notes ==
+* Requests for "all architectures" are not acceptable.
+* Requests need to be clear-signed. Request-tracker munges PGP/MIME. Also, the signed DMUP agreement needs to be clear-signed.
== Expired Accounts ==
Once an account has expired the user will no longer be able to log into
-debian machines. If access is required again creating a ticket in RT should
-suffice to get it re-activated (The request should be pgp signed).
+debian machines. If access is required again, creating a ticket in RT should
+suffice to get it re-activated (The request should be sent by end-user and pgp signed).
Similarly, should access to other hosts become necessary a ticket in RT
can be opened.
-
-The final decision about account creation remains with DSA.