Need to delete user account in FAS that has been already deleted in Discourse (discussion.fedoraproject.org) due to violations (spam, AI, etc.) #13131
Labels
No labels
announcement
anubis
authentication
aws
backlog
blocked
bodhi
ci
cloud
communishift
copr
database
day-to-day
dc-move
deprecated
dev
discourse
dns
downloads
easyfix
epel
firmitas
forgejo_migration
Gain
High
Gain
Low
Gain
Medium
gitlab
greenwave
hardware
help wanted
high-trouble
koji
koschei
lists
low-trouble
medium-trouble
mirrorlists
monitoring
Needs investigation
odcs
OpenShift
ops
outage
packager_workflow_blocker
pagure
permissions
Priority
Needs Review
Priority
Next Meeting
Priority
🔥 URGENT 🔥
Priority
Waiting on Assignee
Priority
Waiting on External
Priority
Waiting on Reporter
rabbitmq
release-monitoring
releng
request-for-resources
s390x
security
SMTP
sprint-0
sprint-1
src.fp.o
staging
unfreeze
waiverdb
websites-general
wiki
Backlog Status
Needs Review
Backlog Status
Ready
chore
documentation
points
01
points
02
points
03
points
05
points
08
points
13
Priority
High
Priority
Low
Priority
Medium
Sprint Status
Blocked
Sprint Status
Done
Sprint Status
In Progress
Sprint Status
Review
Sprint Status
To Do
Technical Debt
Work Item
Bug
Work Item
Epic
Work Item
Spike
Work Item
Task
Work Item
User Story
No milestone
No project
No assignees
6 participants
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
infra/tickets#13131
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Description of request
This is the follow-up ticket of: https://pagure.io/fedora-infrastructure/issue/12091
Please disable
bantuanbb1230(spam) andmatuphumkuldee(unclear if spam or rant, with elements of both, maybe just an AI in training)The original ticket is still around, but opening a new one makes sense.
Disabled both users.
Thanks :)
Please disable also
salman786-> spam.User disabled
Please disable
techxnegiandsharmahrsh137(spam)Both users disabled in FAS.
Please disable
suhana-> spam (all spammers of today came from the same location, so they might be all the same)Uesr disabled in FAS.
Please disable
saracenbot-> spamUser disabled.
Please disable
letras-> spamUser disabled.
Please disable
brimobri-> spamUser disabled.
Please disable
hagarluke-> spamUser disabled.
Please disable
jacksparrow0203-> spamUser disabled.
Please disable
kuchi121sharma-> spam.Also, can we maybe move the account disabling to Discourse (or somewhere else) temporarily until the Forge migration is done? At the moment, 2/3 of the time I invest in disabling a user is re-logging in to FAS in order to post a line on forge.fp with 2fa etc. It's trivial, but I would be happy to exploit simple means to reduce time investment at the moment, as it makes currently 10 seconds to 1-2 minutes, especially if I then get the Bad Requests etc along with it. Would be cool, but not critical of course :)
I disabled the user in FAS.
But regarding the Discourse disable user process I don't even know how that is working or who actually set it up. So I'm not sure if fedora infra is the correct place to ask about the process change.
EDIT: After some thinking I found out I misunderstood. By forgejo access you probably mean this ticket. We talked about this on today standup and it could be probably automated, but it needs more thinking.
Yes, I just meant this ticket. So our exchange. E.g., that until forge.fp is able to remain logged in, that we not exchange details in this ticket but in a topic in Discoourse. I guess it is OK to push you temporarily to TL3 so that you can access the mod area, and then we can create a ticket there until the forge issues are solved?
Could you open a separate ticket with the request to automate it? We were discussing it and there seems to be few options we can got with.
Please disable
jadipansn12-> spam, blocked from discussion.fp.oUser disabled.
For the future, we use this topic again, as documented in the guidelines (to be published likely next week)
Please delete user
juragan99SPAM blocked in d.fp.oDisabled in FAS.
Please disable
jameswill8520-> spamUser disabled.
Please disable
royalcrystalevent-> spamUser disabled
Please disable knox76 --> spam
User disabled
Please disable digitaldeep, petergrew, -> spam on discussion.fp.o
please disable youcinez --> spam on d.fp.o
Sorry for the delay.
All disabled.
Please disable
techpamx-> spam on discussion.fp.oThe user was disabled.
Please disable robin0292 --> spam on d.fp.o
User disabled.
Please disable
cryptovendurew-> spam.I assume it is already known, but just in case it is not: I'm back to re-logging in to Forge on every start of Firefox, which is at least once a day (other fedoraproject.org services are not affected).
Disabled.
Please disable
footurist-> spamDisabled.
Please disable
bscho-> spamUser disabled in FAS.
Delete user ccb2517. Spam with AI content in discussion.fp.o
I don't see any user with that username... can you doublecheck please?
I potentially swapped characters in that user name. Maybe ccb2715?
The user has been deleted in discussion so we will have to wait and see if they post again.
Thanks, and I need to keep better notes !
Found it in the discourse logs... it's ccb3517 :)
Disabled.
Unfortunately, the discourse implementation is bad for us in this respect (I think it was never intended for an integration like ours): once deleted in Discourse, we can no longer see the user name in our interface.
I solved this by radically starting the deletion process always with copy/pasting the username from the Discourse user URL (avoiding typos etc) into a text editor or so (I mostly have a text editor open anyway, and tend to do a lot of copy/pasting, risking to accidentally override it before its final use). Then, I go ahead with the deletion process and just copy/paste it at the end here. The reason for this is that I found myself already in this situation :)
It's just a minor issue with little impact, but maybe that's somehow useful, and you are definitely not the first one who ends up with this issue ;)
Please disable
ispot99989-> spamDisabled.
Please disable user developer-salah.
Spam advertising in discourse
disabled.
Please delete user 'chocolate' per user request.
Disabled.
please delete user 'lasttyper'
User posted AI spam as first post in discussion and has been deleted in d.fp.o
User disabled.
Please disable
northbyte-> spamUser disabled.
Please disable user
vbertuluccifor spam on discussion. Cheers,disabled.
Please disable user
stswt01for spam on discussion. Thanks.User disabled.
Please disable
budipratama25-> spamUser disabled.
Please disable the following 2 users -- both appear to be the same user and spam flagged by the system.
iusedeeznutsbtw
linussextip
Users disabled.
Another user to disable as spam
conlactor
Please disable
yarjoyia-> spamBoth disabled.
Please disable
jacobjameson-> spamUser disabled
Please disable
flexyagency-> spam.Disabled.
Please delete (not disable!) the account
gabriel-galiana(do not block their email address)The user created two accounts. I expect they acted in good faith and lost their credentials or so. They just needed help and seem little experienced with channels/tools like ours.
I told them to stick with one account, use their second one, and that we delete the first.
-> https://discussion.fedoraproject.org/t/audio-not-working-on-asus-vivobook-14-flip-tp3407sa-tp3407sa/199322/6
I leave their first account in discourse so that their topic remains readable.
Thanks :)
@kevin What is our policy about deleting accounts?
https://docs.fedoraproject.org/en-US/discussion-forum-guidelines-and-rules/
Guidelines 6.
That said, it's not bad faith, but the case was neither approved nor is it justified. The user is ok with deleting the account and agreed to use the other one in future (see the topic; also, the user seems to have no longer access to the account I asked to delete). So one could argue it's also justified to delete the obsoleted account by guideline 14. Or partially through both... But it's not urgent anyway ;)
We do not normally actually fully delete accounts.
This is for a number of reasons, including things like 'we then have no idea what actions were taken by the account that no longer exists' and 'we can't see some history that would have been associated with the account' and 'someone else might make an account with the same name and then confuse who did what (the old account? the new one? )
IMHO, we should disable this account and if you like you can delete it on the discourse side? discourse does have some logging/ability to see when an account was deleted and what the now deleted account did/was.
Is that acceptable?
My worry was that the user's email address is thus no longer usable in Fedora, no? So it felt like disabling is banning his email address when there was no bad faith. Not a big thing of course, I guess the user will not care as well. So if that's safer on your side, we can do it as you suggest. Deleting on the discourse side is no problem, that's fine for me.
Supplement: on the discourse side, I anonymized the original account, so that the topic remains readable. Implement everything else as you see fit :)
So I disabled the user in FAS, that is OK for us to do. We can also change the mail to something else if that could be the problem.
please disable user trocryptdirect --> spam
please disable
wade771-> spamBoth of them are disabled and when searching for
trocryptdirectI found another two accounts that had similar mail address, so I blocked them as well.Please delete
wade456-> spam on discussion.. lots of wades..User disabled in FAS.
Please disable
lucasblake-> spamUser disabled in FAS.
Please disable user
qloudhosts--> spamUser disabled.