@fscker Obvious but annoying caveat: You need to set up LDAP+TLS & server certificate verification (in 3 separate conf files) to be secure.
—
35 min 28 sec ago
@fscker Since I'm not Kerberizing my whole environment & I already use LDAP for account data it was the next logical step.
—
36 min 54 sec ago
Next step: Disabling password logins in SSH. #ICanHasSecurity #1960sTechGoesAway #PasswordIsPassword
—
56 min 11 sec ago
@manchuck I got the impression their environment would have made Invision look pleasantly well-organized; hopefully they're better now :-)
—
57 min 39 sec ago
@manchuck I think I interviewed with them way back in the late bronze-age (before I went to Invision).
—
1 hour 12 min ago
I now have a nice, centralized way of managing SSH public keys. No more "log in with your password & create .ssh/authorized_keys" bullshit!
—
1 hour 13 min ago
Off to Interview with ivillage.com
—
1 hour 14 min ago