TECHZEN Zenoss User Community ARCHIVE  

ssh key based authentication

Subject: ssh key based authentication
Author: [Not Specified]
Posted: 2015-03-09 09:30

I have some devices that are modeled via ssh. on the server, I can do: serviced service attach zenhub to attach to the zenoss server.

the user zenoss has an empty file in ~/.ssh/README.txt.

Not sure what was supposed to go in there, but I want to create a key, and use that key to log into hosts (We don't allow ssh password authentication)

is that "supported or will that break on the next upgrade

I'm relatively new to docker, and have no idea how the upgrade process will work with zenoss, and keep settings, and which "best practices" i need to follow to make sure I don't have problems down the road.

BTW.. there is no upgrade section in your admin guide..



Subject: it's not a best practice to
Author: Andrew Kirch
Posted: 2015-03-10 12:09

it's not a best practice to allow SSH into docker containers. You're better off setting the SSH key for the underlying hosts, and using docker/serviced attach as you did above.

Andrew Kirch

akirch@gvit.com

Need Zenoss support, consulting or custom development Look no further. Email or PM me!

Ready for Distributed Topology (collectors) for Zenoss 5 Coming May 1st from GoVanguard



Subject: I'm not wanting to ssh into
Author: [Not Specified]
Posted: 2015-03-17 08:43

I'm not wanting to ssh into docker, sorry, I want zenoss to use SSH with an RSA key to monitor some remote systems, were I cannot get full SNMP access (or have problems with it). In zenoss4, my user "zenoss" has a key "~/.ssh/id_rsa.pub" that I copied to remote systems authorized keys to allow me to monitor them that way. I'm not sure the best place to put the key in zenoss5. the actual docker instance seems to have a zenoss user, and in its ~/.ssh/ folder is a README.txt that is empty. That file is not standard, wondering if some documentation was planned to go in there



Subject: if you would, please open two
Author: Andrew Kirch
Posted: 2015-03-17 18:54

if you would, please open two bugs at http://jira.zenoss.com
1. to request documentation for adding ssh keys in the Admin guide
2. to inquire as to what should be in that readme.txt
Identify both as Documentation with Priority 1.

Andrew Kirch

akirch@gvit.com

Need Zenoss support, consulting or custom development Look no further. Email or PM me!

Ready for Distributed Topology (collectors) for Zenoss 5 Coming May 1st from GoVanguard



< Previous
Zenoss 5.0 -> how to change the ip address of the master host
  Next
Process set contains 0 running processes: Process Watcher
>