Skip to content
This repository has been archived by the owner on Mar 20, 2023. It is now read-only.

OIDC-backed SSH certificate auth #20

Open
rvolosatovs opened this issue Jul 1, 2022 · 0 comments
Open

OIDC-backed SSH certificate auth #20

rvolosatovs opened this issue Jul 1, 2022 · 0 comments

Comments

@rvolosatovs
Copy link
Member

rvolosatovs commented Jul 1, 2022

For increased security and usability, proposal is to set up an SSH certificate authority and issue certificates after successful OIDC auth.
That means we could manage access to our servers via https://auth.profian.com and issue short-lived SSH keys, which is very relevant, for example, for CI, where a github action could acquire a short-lived, scoped SSH key for a one-time deployment after presenting a valid token.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
Status: New
Development

No branches or pull requests

1 participant