Skip to content
This repository has been archived by the owner on Sep 29, 2020. It is now read-only.
/ puppet-sshkeys Public archive
forked from jtopjian/puppet-sshkeys

Module to help create and share SSH keys

Notifications You must be signed in to change notification settings

gwdg/puppet-sshkeys

 
 

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

45 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

sshkeys puppet module

The sshkeys puppet module creates, shares, and installs SSH keys.

Important!

This module recently went through a large change and is not compatible with previous versions.

You can access the old version in the v1 branch or the 1.0.0 tag.

How it works

This module contains two facts:

sshpubkey_

This fact publishes all default SSH keys for all users found in /etc/passwd.

By using PuppetDB, all keys are then recorded in the database. Other nodes (and tools) are then able to query PuppetDB and obtain the public key for the user.

home_

This fact publishes the homedir for all users found in /etc/passwd. This fact is used to help locate a certain user's home directory.

Limitations

  • Only the default id_rsa or id_dsa public key is shared -- this module is unable to handle multiple keys at this time.
  • Users are expected to be managed outside of this module.

Usage

Create a SSH key for a user (this is optional):

sshkeys::create_ssh_key { 'root':
  ssh_keytype => 'dsa',
}

Once created, Facter will expose the public key via the fact sshpubkey_root.

To allow root@server1 to access root@server2:

sshkeys::set_authorized_key { 'root@server1 to root@server2':
  local_user  => 'root',
  remote_user => 'root@server1',
}

Now, root@server2 will have root@server1's public key added to its ~/.ssh/authorized_keys file thus allowing root@server1 to log into server2 as root without a password.

Dependencies

This module requires:

Credits

This module was lightly based off of Boklm's module. I used this module frequently before changing to a PuppetDB/Facter-based solution. Some of the code was used in my version.

About

Module to help create and share SSH keys

Resources

Stars

Watchers

Forks

Packages

No packages published

Languages

  • Ruby 52.6%
  • Puppet 47.4%