3 ms·
It depends. You can have many development servers/nodes, which are infrastructurally "inside" the company and is not accessible from outside. They should be man
by seletskiy 11y ago
It depends. You can have many development servers/nodes, which are infrastructurally "inside" the company and is not accessible from outside. They should be managed somehow, security requirements can be considerably less than at production cluster, and as an example it's always good to have rescue password for the ops team that can be used to login to the server in case of it's unresponsible in any other way.
Also, shadowd do not make assumption about same password distribution, it can handle any amount of passwords by your choice, depending on severity and importance of service.
- brazzledazzle 11y agoI think Google is on the right track with assuming that there is no perimeter and it will only be a matter of time before every company of any decent size/budget will follow suit (maybe within the next 3-7 years). The network security architecture that can best be described as a hard shell with a squishy inside has been proven time and again to be dangerously full of assumptions.