4 ms·
Is it feasable to firewall whitelist any IP that has ever pushed to a repo?
Is it feasable to firewall whitelist any IP that has ever pushed to a repo?
You could, but now you're just forcing the attackers to fork an existing project and push some nonsense code to it before they can attack.
Why would you want to cut off all people that use only the web front-end?