@fscker Obvious but annoying caveat: You need to set up LDAP+TLS & server certificate verification (in 3 separate conf files) to be secure.
—
32 min 57 sec ago
@fscker Since I'm not Kerberizing my whole environment & I already use LDAP for account data it was the next logical step.
—
34 min 23 sec ago
Next step: Disabling password logins in SSH. #ICanHasSecurity #1960sTechGoesAway #PasswordIsPassword
—
53 min 40 sec ago
@manchuck I got the impression their environment would have made Invision look pleasantly well-organized; hopefully they're better now :-)
—
55 min 8 sec ago
@manchuck I think I interviewed with them way back in the late bronze-age (before I went to Invision).
—
1 hour 9 min ago
I now have a nice, centralized way of managing SSH public keys. No more "log in with your password & create .ssh/authorized_keys" bullshit!
—
1 hour 11 min ago
Off to Interview with ivillage.com
—
1 hour 11 min ago