Security
Security
- Password storage
- Password length limits
- Restrict SSH key technologies and minimum length
- Rate limits
- Webhooks and insecure internal web services
- Information exclusivity
- Reset your root password
- Unlock a locked user
- User File Uploads
- How we manage the CRIME vulnerability
- Enforce Two-factor authentication
- Send email confirmation on sign-up
- Security of running jobs
- Proxying images
- CI/CD environment variables
Securing your GitLab installation
考虑使用诸如注册限制和身份验证选项之类的访问控制功能来强化您的 GitLab 实例,并最大程度地减少不必要的用户帐户创建风险.