Need to restrict TFS users by IP -
we have 2 subnets (vlan1 , vlan2). tfs installed on server both network interfaces . domain controller subnets. vlan1 main office many computers (and users). vlan2 in highly secured area developers only. vlan1 users use tfs posting bugs, viewing progress etc. vlan2 users use @ full.
the problem - restrict access sources vlan1 even developer user accounts. denying access tfs vlan1 developer users - valid answer too, not know how((
any ideas??
edit - comment answer @robaticus
the point restrict reading sources outside.
if block (at network) port 8080 (the default), users won't have access tfs through team explorer, through website @ port 8090 (also default).
valid users still able view source through web portal, not able update it.
edit
based on requirement restrict reading of sources people outside, if first mentioned above (blocking 8080), secure directories source control under team system web access. might little ugly (giving 401 errors), might work.
it looks directory need secured under website:
team system web access->ui->pages->scc
this remove source code browsing web ui everyone, though. in opinion, wouldn't real problem, function gets used rarely.
Comments
Post a Comment