[chef] Re: Re: Distribute private ssh keys via users cookbook


Chronological Thread 
  • From: Cassiano Leal < >
  • To:
  • Subject: [chef] Re: Re: Distribute private ssh keys via users cookbook
  • Date: Wed, 9 Jan 2013 19:08:36 -0200

On Wednesday, January 9, 2013 at 18:59, Phil Mocek wrote:
On Wed, Jan 09, 2013 at 05:40:25PM -0200, Cassiano Leal wrote:
I saw that the users cookbook will use "ssh_private_key" and
"ssh_public_key" data bag items, but those would be unencrypted,
so not secure.

That is not the case when you use [encrypted data bags][1].
Thanks for the reference. but I can use encrypted data bags just fine.

As previously stated, what I want to do is to use the community users cookbook [0] to distribute those keys. That cookbook already has a resource provider to deploy the keys for each user, but I couldn't find a way to make it read an encrypted data bag. If it's possible, I'd like to know.

[0] http://community.opscode.com/cookbooks/users

Cheers,
-- 
Cassiano Leal




Archive powered by MHonArc 2.6.16.

§