[Gllug] managing ssh access for many servers

Oliver Howe ojhowe at gmail.com
Thu Feb 25 11:36:46 UTC 2010


We have hundreds of linux servers, and more than 20 sysadmins.

Currently the admins ssh to the servers (all are on a private network) as
root and supply a password
which is kept in a red folder.

Now we are looking for a way of managing ssh access to the servers using
keys instead of root password access.

The main concern is to have a way of changing the public/private keys for
all the servers on a regular basis and then distributing the private key
to the sysadmins. Is puppet the best way to do this? Or how about skm
http://sites.google.com/site/jeromeboismartel/news/ssh-key-management-with-skimp

I would be very interested to hear how other people in large environments
have their servers/keys admin access managed and opinions on the best way
to do this.

Thanks,

Oliver
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.lug.org.uk/pipermail/gllug/attachments/20100225/bf735118/attachment.html>
-------------- next part --------------
-- 
Gllug mailing list  -  Gllug at gllug.org.uk
http://lists.gllug.org.uk/mailman/listinfo/gllug


More information about the GLLUG mailing list