On Mon, 7 Apr 2014, anatoly techtonik wrote:
> Is it technically possible to encrypt some sensitive data using available
> SSH public key, so that only the owner of private key could read them with
> the help of SSH agent?
>
> Why?
> 1. No need to remember one more password.
> 2. No need to send the password to a person who needs to read the file.
> 3. No need to run one more agent.
That is an interesting idea :) It would mean as a team you would need to
add a specific (team) key to your agent (and ensure this key is
suficiently protected) in order to execute the playbook.
So some way to test if the key is loaded before starting the playbook (or
as part of the playbook) would be useful.
--To view this discussion on the web visit https://groups.google.com/d/msgid/ansible-project/dc2ac9d7-c7dd-476c-a95e-7e8485f78b42%40googlegroups.com.
You received this message because you are subscribed to the Google Groups "Ansible Project" group.
To unsubscribe from this group and stop receiving emails from it, send an email to ansible-proje...@googlegroups.com.
To post to this group, send email to ansible...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/ansible-project/CAEnKK1xb4T%3DkU7Z15CPLmFdtApL9zWZH4WYqYfTTW4NVc0i3yQ%40mail.gmail.com.
You can encrypt data using GPG keys for multiple recipients - each recipient can access the data using his/her GPG key. GPG keys can also be used to authorize SSH access via Monkeysphere Project. - http://web.monkeysphere.info/.
--
You received this message because you are subscribed to the Google Groups "Ansible Project" group.
To unsubscribe from this group and stop receiving emails from it, send an email to ansible-proje...@googlegroups.com.
To post to this group, send email to ansible...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/ansible-project/253656f1-430c-4637-a879-586171a25053%40googlegroups.com.
--
You received this message because you are subscribed to the Google Groups "Ansible Project" group.
To unsubscribe from this group and stop receiving emails from it, send an email to ansible-proje...@googlegroups.com.
To post to this group, send email to ansible...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/ansible-project/20140415161752.GD27129%40genius.invalid.