4 ms·
Hey HN - This is basically a hosted version of Teleport[0], which may scare some people. We don't store the sessions and you can always self-host if you prefer.
by twakefield 10y ago
Hey HN - This is basically a hosted version of Teleport[0], which may scare some people. We don't store the sessions and you can always self-host if you prefer.
[0] http://gravitational.com/teleport/ http://gravitational.com/teleport/
- chinathrow 10y ago> We don't store the sessions Interesting - but how can we trust you?
- jedimastert 10y agoIf you don't, just self host!
- brianwawok 10y agoWhat if I don't trust myself?
- deleted 10y ago[deleted]
- Dangeranger 10y agoThis looks pretty useful for highly dynamic infrastructure. How can nodes register with the Teleport service on provision? Do you integrate with third party authentication services like HashiCorp Vault?
- twakefield 10y agoYou can use static or short lived tokens to bootstrap: http://gravitational.com/teleport/docs/admin-guide/#adding-nodes-to-the-cluster http://gravitational.com/teleport/docs/admin-guide/#adding-n... Vault is not yet supported but PR's welcome :) edit: Looks like there's an open issue for consul to start: https://github.com/gravitational/teleport/issues/423 https://github.com/gravitational/teleport/issues/423
- e12e 10y agoFrom a quick Re-reading of the teleport readme, and the teleconsole one - I'm a little unclear if there's an easy way to "self-host" a complete teleconsole-setup including the nat-proxy? I suppose if you have an Internet-facing server to run teleport on, there are fewer reasons to use teleconsole - but I could see it still being useful? (for eg help troubleshooting workstations or servers/clusters behind firewall/Nat for people outside the organisation - volunteering, "helping a friend" or consulting)?