This task is to explore how we can provide root access to the wikireplica dbs servers in a safe manner. when this was explored previously when this was discussed it was diced that root on theses systems meant root on all production dbs:
This was decided at the time to be too much of a risk. However we would like to explore further what theses risks are and if we could mitigate them and restrict users to just the wikireplicas dbs without leaking access to other production hosts. I thin k the best way forward would be:
DBA expand on what the issue is relating to root access and explore options to mitigate this risk enabling wmcs users to have full root on the wikireplicas
cloud-services-team define precisely what permissions are required but missing from the wikireplica hosts. this should allow us to better provision access if full root continues to be unviable