@fscker Obvious but annoying caveat: You need to set up LDAP+TLS & server certificate verification (in 3 separate conf files) to be secure.
—
29 min 49 sec ago
@fscker Since I'm not Kerberizing my whole environment & I already use LDAP for account data it was the next logical step.
—
31 min 15 sec ago
Next step: Disabling password logins in SSH. #ICanHasSecurity #1960sTechGoesAway #PasswordIsPassword
—
50 min 32 sec ago
@manchuck I got the impression their environment would have made Invision look pleasantly well-organized; hopefully they're better now :-)
—
52 min ago
@manchuck I think I interviewed with them way back in the late bronze-age (before I went to Invision).
—
1 hour 6 min ago
I now have a nice, centralized way of managing SSH public keys. No more "log in with your password & create .ssh/authorized_keys" bullshit!
—
1 hour 8 min ago
Off to Interview with ivillage.com
—
1 hour 8 min ago