Hi,
we have a successfully experimenting with chef-server + clients setup, but still cannot figure out the permission settings.
The problem is that when you go to you http://chef-server.example.com:4000 within the browser and log in using OpenID (using any external identity provider), you _always_ get admin permissions.
We are running chef on a EC2 + external chef-server (+ monitoring etc) hybrid network, without any VPN, and wanted to run chef-server on a public interface.
From what I can see we could restrict access to the chef-server, either by setting up a VPN network, or by limiting access in any other way. But perhaps there is a better way? Is it documented?
Thanks,
Michal
---------------
Michal Frackowiak
http://michalfrackowiak.com
Archive powered by MHonArc 2.6.16.