Re: sshd config change on vmgump

2010-04-16 Thread sebb
On 16/04/2010, Sander Temme san...@temme.net wrote:
 Folks,

  Following the recent havoc on ASF servers, new rules have been imposed on 
 sshd keys and the use of passwords.

  I have implemented the first part of this today by changing the sshd 
 configuration.  Right now, the only ones that have sshd access are myself and 
 Infra's Joe Schaefer and Mark Thomas.

  I am seeing the following accounts on the VM:

  leosimons
  bodewig
  brett
  billbarker
  dims
  mvdb
  sebb

  Who (still) needs sshd access?  I can migrate keys accordingly.

I do still occaisionally find shell access to Gump useful for
debugging failed runs, but I cannot really claim that I *need* access.

If there was an easy way to get read-only access to the Gump
workspaces (rather than just the reports) I would not need a login.

  Next up, implementation of OPIE which has to happen by May 1 Or Else.

  Thanks,

  S.


  --
  san...@temme.net  http://www.temme.net/sander/
  PGP FP: 51B4 8727 466A 0BC3 69F4  B7B8 B2BE BC40 1529 24AF


  -
  To unsubscribe, e-mail: general-unsubscr...@gump.apache.org
  For additional commands, e-mail: general-h...@gump.apache.org



-
To unsubscribe, e-mail: general-unsubscr...@gump.apache.org
For additional commands, e-mail: general-h...@gump.apache.org



Re: sshd config change on vmgump

2010-04-16 Thread Stefan Bodewig
On 2010-04-16, Sander Temme scte...@apache.org wrote:

 Stefan,

 I have added you to the centralized keystore and the appropriate
 group.  The keys are the same keys that were in your
 ~/.ssh/authorized_keys*

 You should be able to log back in now.

Yes, works fine, thanks.

Stefan

-
To unsubscribe, e-mail: general-unsubscr...@gump.apache.org
For additional commands, e-mail: general-h...@gump.apache.org



sshd config change on vmgump

2010-04-15 Thread Sander Temme
Folks, 

Following the recent havoc on ASF servers, new rules have been imposed on sshd 
keys and the use of passwords.  

I have implemented the first part of this today by changing the sshd 
configuration.  Right now, the only ones that have sshd access are myself and 
Infra's Joe Schaefer and Mark Thomas.  

I am seeing the following accounts on the VM: 

leosimons
bodewig
brett
billbarker
dims
mvdb
sebb

Who (still) needs sshd access?  I can migrate keys accordingly.

Next up, implementation of OPIE which has to happen by May 1 Or Else.  

Thanks,

S.

-- 
san...@temme.net  http://www.temme.net/sander/
PGP FP: 51B4 8727 466A 0BC3 69F4  B7B8 B2BE BC40 1529 24AF


-
To unsubscribe, e-mail: general-unsubscr...@gump.apache.org
For additional commands, e-mail: general-h...@gump.apache.org



Re: sshd config change on vmgump

2010-04-15 Thread Brett Porter
I haven't done anything on gump in a few years.

On 16/04/2010, at 11:40 AM, Sander Temme wrote:

 Folks, 
 
 Following the recent havoc on ASF servers, new rules have been imposed on 
 sshd keys and the use of passwords.  
 
 I have implemented the first part of this today by changing the sshd 
 configuration.  Right now, the only ones that have sshd access are myself and 
 Infra's Joe Schaefer and Mark Thomas.  
 
 I am seeing the following accounts on the VM: 
 
 leosimons
 bodewig
 brett
 billbarker
 dims
 mvdb
 sebb
 
 Who (still) needs sshd access?  I can migrate keys accordingly.
 
 Next up, implementation of OPIE which has to happen by May 1 Or Else.  
 
 Thanks,
 
 S.
 
 -- 
 san...@temme.net  http://www.temme.net/sander/
 PGP FP: 51B4 8727 466A 0BC3 69F4  B7B8 B2BE BC40 1529 24AF
 

--
Brett Porter
br...@apache.org
http://brettporter.wordpress.com/





-
To unsubscribe, e-mail: general-unsubscr...@gump.apache.org
For additional commands, e-mail: general-h...@gump.apache.org



Re: sshd config change on vmgump

2010-04-15 Thread Stefan Bodewig
On 2010-04-16, Sander Temme san...@temme.net wrote:

 Following the recent havoc on ASF servers, new rules have been imposed
 on sshd keys and the use of passwords.

 I have implemented the first part of this today by changing the sshd
 configuration.  Right now, the only ones that have sshd access are
 myself and Infra's Joe Schaefer and Mark Thomas.

 Who (still) needs sshd access?  I can migrate keys accordingly.

I do (as well as on the Solaris zone once that gets migrated).

 Next up, implementation of OPIE which has to happen by May 1 Or Else.

Guess I have some reading to do 8-)

Thanks for taking care of it

   Stefan

-
To unsubscribe, e-mail: general-unsubscr...@gump.apache.org
For additional commands, e-mail: general-h...@gump.apache.org



Re: sshd config change on vmgump

2010-04-15 Thread Sander Temme
Stefan, 

On Apr 15, 2010, at 9:15 PM, Stefan Bodewig wrote:

 On 2010-04-16, Sander Temme san...@temme.net wrote:
 
 Following the recent havoc on ASF servers, new rules have been imposed
 on sshd keys and the use of passwords.
 
 I have implemented the first part of this today by changing the sshd
 configuration.  Right now, the only ones that have sshd access are
 myself and Infra's Joe Schaefer and Mark Thomas.
 
 Who (still) needs sshd access?  I can migrate keys accordingly.
 
 I do (as well as on the Solaris zone once that gets migrated).

I have added you to the centralized keystore and the appropriate group.  The 
keys are the same keys that were in your ~/.ssh/authorized_keys*

You should be able to log back in now. 

S.

 
 Next up, implementation of OPIE which has to happen by May 1 Or Else.
 
 Guess I have some reading to do 8-)
 
 Thanks for taking care of it
 
   Stefan
 
 -
 To unsubscribe, e-mail: general-unsubscr...@gump.apache.org
 For additional commands, e-mail: general-h...@gump.apache.org
 
 



-- 
Sander Temme
scte...@apache.org
PGP FP: 51B4 8727 466A 0BC3 69F4  B7B8 B2BE BC40 1529 24AF




-
To unsubscribe, e-mail: general-unsubscr...@gump.apache.org
For additional commands, e-mail: general-h...@gump.apache.org