Re: [Freeipa-users] AuthorizedKeysCommand for clients using nss-pam-ldapd

2015-09-14 Thread Gustavo Mateus
14d13 > < ldap_user_ssh_public_key = ipaSshPubKey > > > > -- > *From:* freeipa-users-boun...@redhat.com > on behalf of Gustavo Mateus > *Sent:* 11 September 2015 00:30 > *To:* freeipa-users@redhat.com > *Subject:* [Freeipa-users] Authori

Re: [Freeipa-users] AuthorizedKeysCommand for clients using nss-pam-ldapd

2015-09-14 Thread Pawel Fiuto
14d13 < ldap_user_ssh_public_key = ipaSshPubKey From: freeipa-users-boun...@redhat.com on behalf of Gustavo Mateus Sent: 11 September 2015 00:30 To: freeipa-users@redhat.com Subject: [Freeipa-users] AuthorizedKeysCommand for clients using nss-pam-ldapd Hi, I'm t

Re: [Freeipa-users] AuthorizedKeysCommand for clients using nss-pam-ldapd

2015-09-10 Thread Prashant Bapat
One way to do it is write a small script which will fetch the keys from LDAP. As for authentication, I make the SSH public key anonymously readable for everyone. On 11 September 2015 at 05:00, Gustavo Mateus wrote: > Hi, > > I'm trying to setup my Amazon Linux instances to be able to fetch the

[Freeipa-users] AuthorizedKeysCommand for clients using nss-pam-ldapd

2015-09-10 Thread Gustavo Mateus
Hi, I'm trying to setup my Amazon Linux instances to be able to fetch the IPA users public ssh key. Do I have to setup a binddn and bindpw in the ldap.conf file and use /usr/libexec/openssh/ssh-ldap-wrapper or is there a better way to do it? Thanks, Gustavo -- Manage your subscription for the F