[Freeipa-users] Private key management

2015-04-08 Thread Andrey Ptashnik
Hello Team, I know that FreeIPA server supports management of public keys for each user and it is a very convenient feature. Are there any possible way to manage private keys as well including features like re-issuing the key pair if it gets compromised? Regards, Andrey -- Manage your

Re: [Freeipa-users] Private key management

2015-04-08 Thread Andrey Ptashnik
It looks like Vault is the functionality I was looking for. Thank you Rob and Dmitri for your responses. Regards, Andrey On 4/8/15, 5:59 PM, Rob Crittenden rcrit...@redhat.com wrote: Andrey Ptashnik wrote: Hello Team, I know that FreeIPA server supports management of public keys for

Re: [Freeipa-users] Private key management

2015-04-08 Thread Rob Crittenden
Andrey Ptashnik wrote: Hello Team, I know that FreeIPA server supports management of public keys for each user and it is a very convenient feature. Are there any possible way to manage private keys as well including features like re-issuing the key pair if it gets compromised? I assume you

Re: [Freeipa-users] Private key management

2015-04-08 Thread Dmitri Pal
On 04/08/2015 11:31 AM, Andrey Ptashnik wrote: Hello Team, I know that FreeIPA server supports management of public keys for each user and it is a very convenient feature. First of all IPA does not support user certs yet. It supports SSH public keys if this is what you are referring to.