comanage-dev - Re: [comanage-dev] SSH/Domestication
Subject: COmanage Developers List
List archive
- From: Steven Carmody <>
- To:
- Subject: Re: [comanage-dev] SSH/Domestication
- Date: Thu, 19 Aug 2010 16:22:27 -0400
On 8/19/10 4:08 PM, Benn Oshrin wrote:
Thoughts? First on what the actual problem definition is here, and
second on how we want to capture it (ie: Registry or not).
I'd agree with your note -- perhaps we should change the title/handle we use to refer to this problem to something more like "Leveraging Federation to Manage the Use of SSH". Which, I think, is closer to what we had in mind.
(eg user has ssh key; user uses federated web site to upload key and associate with eppn value; admin assigns user to group(s); there are various privileges associated with each group (eg can SSH to service at site.domain.edu); assignment to such a group provisions a *nix (or whatever) identity at site.domain.edu and with the appropriate group memberships and with the user's key stored in the appropriate place).
I *think* that's one of the use cases associated with this handle.....
- [comanage-dev] SSH/Domestication, Benn Oshrin, 08/19/2010
- Re: [comanage-dev] SSH/Domestication, Steven Carmody, 08/19/2010
- Re: [comanage-dev] SSH/Domestication, Benn Oshrin, 08/19/2010
- Re: [comanage-dev] SSH/Domestication, Jim Leous, 08/20/2010
- Re: [comanage-dev] SSH/Domestication, Michael A. Grady, 08/20/2010
- Re: [comanage-dev] SSH/Domestication, Jim Leous, 08/20/2010
- Re: [comanage-dev] SSH/Domestication, Benn Oshrin, 08/19/2010
- Re: [comanage-dev] SSH/Domestication, Michael R. Gettes, 08/19/2010
- Re: [comanage-dev] SSH/Domestication, Steven Carmody, 08/19/2010
Archive powered by MHonArc 2.6.16.