Re: [Freeipa-users] vaults and service accounts

2016-07-25 Thread Martin Basti
On 25.07.2016 16:22, Anthony Clark wrote: I wondered about that, but the docs specifically say public key, and the command line option to "ipa vault-add" is "--public-key" From "ipa vault-add --help" --public-key=BYTESVault public key --public-key-file=STR File containing the

Re: [Freeipa-users] vaults and service accounts

2016-07-25 Thread Anthony Clark
I wondered about that, but the docs specifically say public key, and the command line option to "ipa vault-add" is "--public-key" >From "ipa vault-add --help" --public-key=BYTESVault public key --public-key-file=STR File containing the vault public key So I hope you can understand my

Re: [Freeipa-users] vaults and service accounts

2016-07-25 Thread Martin Basti
On 24.07.2016 16:33, Anthony Clark wrote: Hello All, I have a crazy notion of storing a host's SSH private keys in a ipa vault, so that a rebuilt host can use the same keys. I'm on CentOS 7.2 and I'm using the RPMs available in the standard centos base repository, so I'm constrained to

[Freeipa-users] vaults and service accounts

2016-07-24 Thread Anthony Clark
Hello All, I have a crazy notion of storing a host's SSH private keys in a ipa vault, so that a rebuilt host can use the same keys. I'm on CentOS 7.2 and I'm using the RPMs available in the standard centos base repository, so I'm constrained to version 1.0 vaults. I'm using this page: