Files
ignition/sshkeys.yaml
Dustin C. Hatch 859deb0664 sshkeys: Trust certificates issued by the CA
Now that we have an internal SSH certificate authority, instead of
explicitly listing all M×N keys for each user and client machine, we can
list only the CA certificate in the SSH authorized keys file for the
*core* user.  This will allow any user who presents a valid, signed SSH
certificate for the *core* principal to log in.
2023-10-03 20:06:37 -05:00

8 lines
268 B
YAML

variant: fcos
version: 1.4.0
passwd:
users:
- name: core
ssh_authorized_keys:
- cert-authority ecdsa-sha2-nistp256 AAAAE2VjZHNhLXNoYTItbmlzdHAyNTYAAAAIbmlzdHAyNTYAAABBBImIoTTmhynCVy/vJ/Q2bWydzqVsvwhGvDgBbklw0eDt8UEbbP9HHPhxiMDtiAhbvRTg5BhYVAlR1MgdooT5dwQ=