comanage-dev - [comanage-dev] SSH Provisioning / Authentication
Subject: COmanage Developers List
List archive
- From: Benn Oshrin <>
- To: comanage-dev <>
- Subject: [comanage-dev] SSH Provisioning / Authentication
- Date: Thu, 10 Apr 2014 09:13:04 -0600
I've taken a first pass at the SSH use case (for the HTCondor presentation, but also generally).
https://spaces.internet2.edu/display/COmanage/SSH
It turns out while OpenSSH doesn't support pulling keys directly from LDAP, there are various approached that folks have adopted to do so. This is probably the best:
https://github.com/AndriiGrytsenko/openssh-ldap-publickey
We could try to follow this model (the LDAP schema is non-standard, though), which would simplify the key provisioning. We might still have to worry about allocating a home directory, but not for purposes of provisioning the account or storing the keys.
Thoughts?
Thanks,
-Benn-
- [comanage-dev] SSH Provisioning / Authentication, Benn Oshrin, 04/10/2014
- Re: [comanage-dev] SSH Provisioning / Authentication, Scott Koranda, 04/10/2014
Archive powered by MHonArc 2.6.16.