• Home
  • About

Saved searches

  • Remove
  • Verified account @
Suggested users
  • Verified account @
  • Verified account @
  • Language: English
    • Bahasa Indonesia
    • Bahasa Melayu
    • Català
    • Čeština
    • Dansk
    • Deutsch
    • English UK
    • Español
    • Filipino
    • Français
    • Hrvatski
    • Italiano
    • Magyar
    • Nederlands
    • Norsk
    • Polski
    • Português
    • Română
    • Slovenčina
    • Suomi
    • Svenska
    • Tiếng Việt
    • Türkçe
    • Ελληνικά
    • Български език
    • Русский
    • Српски
    • Українська мова
    • עִבְרִית
    • العربية
    • فارسی
    • मराठी
    • हिन्दी
    • বাংলা
    • ગુજરાતી
    • தமிழ்
    • ಕನ್ನಡ
    • ภาษาไทย
    • 한국어
    • 日本語
    • 简体中文
    • 繁體中文
  • Have an account? Log in
    Have an account?
    · Forgot password?

    New to Twitter?
    Sign up
By using Twitter’s services you agree to our Cookie Use and Data Transfer outside the EU. We and our partners operate globally and use cookies, including for analytics, personalisation, and ads.
rzezeski's profile
Ryan Zezeski
Ryan Zezeski
Ryan Zezeski
@rzezeski

Ryan Zezeski

@rzezeski

You are not expected to understand this.

Joined April 2011
  • © 2016 Twitter
  • About
  • Help
  • Terms
  • Privacy
  • Cookies
  • Ads info
Dismiss
Previous
Next

Go to a person's profile

Saved searches

  • Remove
  • Verified account @
Suggested users
  • Verified account @
  • Verified account @

Retweet this to your followers?

Optional comment for Retweet
 
 

Saved searches

  • Remove
  • Verified account @
Suggested users
  • Verified account @
  • Verified account @
140

Are you sure you want to delete this Tweet?

Promote this Tweet

Block

  • Add a location to your Tweets

    When you tweet with a location, Twitter stores that location. You can switch location on/off before each Tweet and always have the option to delete your location history. Learn more

    Profile summary

    Your lists

    Create a new list


    Under 100 characters, optional

    Privacy

    Your reply includes the people in this conversation up to this point. Learn more

    Copy link to Tweet

    Embed this Tweet

    Embed this Video

    Add this Tweet to your website by copying the code below. Learn more

    Add this video to your website by copying the code below. Learn more

    Hmm, there was a problem reaching the server.

    Preview

    Log in to Twitter

    · Forgot password?
    Don't have an account? Sign up »

    Sign up for Twitter

    Not on Twitter? Sign up, tune into the things you care about, and get updates as they happen.

    Sign up
    Have an account? Log in »

    Two-way (sending and receiving) short codes:

    Country Code For customers of
    United States 40404 (any)
    Canada 21212 (any)
    United Kingdom 86444 Vodafone, Orange, 3, O2
    Brazil 40404 Nextel, TIM
    Haiti 40404 Digicel, Voila
    Ireland 51210 Vodafone, O2
    India 53000 Bharti Airtel, Videocon, Reliance
    Indonesia 89887 AXIS, 3, Telkomsel, Indosat, XL Axiata
    Italy 4880804 Wind
    3424486444 Vodafone
    » See SMS short codes for other countries

    Confirmation

     

    Buy Now

    Hmm... Something went wrong. Please try again.

    Previous Tweet
    Ryan Zezeski ‏@rzezeski Jan 28

    Twitter friends: I want to better manage my SSH keys. E.g. different pairs for different things. Looking for good resources. Links please.

    • Retweet 1
    • Likes 5
    • Eddie Esteban Küber Norman Maurer hifoo Álvaro Justen (((Nahum Shalman)))
    9:56 AM - 28 Jan 2016
    1 retweet 5 likes
      1. Tim Freeman ‏@peakscale Jan 28

        @rzezeski Do you know the 'IdentityFile' config option?

        0 retweets 0 likes
      2. Ryan Zezeski ‏@rzezeski Jan 28

        @peakscale Nope.

        0 retweets 0 likes
      3. Tim Freeman ‏@peakscale Jan 28

        @rzezeski cool.. might be what you are looking for. You can pin a particular key file to a particular host in the config

        0 retweets 0 likes
      4. View other replies
      5. Ryan Zezeski ‏@rzezeski Jan 28

        @peakscale Cool, I'll look at that. To be clear I'm looking for high-level articles discussing best practices.

        0 retweets 0 likes
      6. dadpool ‏@lusis Jan 28

        @rzezeski @peakscale I have several blocks like this for each vpc I have to access.pic.twitter.com/USrjFTCbyr

        0 retweets 0 likes
      7. dadpool ‏@lusis Jan 28

        @rzezeski @peakscale The only reason for the devnull/known host BAD practice in the ProxyCommand is because of volatility in nodes

        0 retweets 0 likes
      8. Ryan Zezeski ‏@rzezeski Jan 28

        @lusis @peakscale Do you know of resources going over all the best practices of key mgmt and ssh config?

        0 retweets 0 likes
      9. View other replies
      10. dadpool ‏@lusis Jan 28

        @rzezeski @peakscale https://wiki.mozilla.org/Security/Guidelines/OpenSSH …

        2 retweets 2 likes
      11. View other replies
      12. Show more
      1. Chris Siebenmann ‏@thatcks Jan 28

        @rzezeski But the whole thing is a good question, so I should write up my feelings on it in one spot on my blog (sometime).

        0 retweets 1 like
      2. Ryan Zezeski ‏@rzezeski Jan 28

        @thatcks Ping me if you do. I like your blog posts.

        0 retweets 1 like
      1. Sean Cribbs ‏@seancribbs Jan 28

        @rzezeski ssh.config ?

        0 retweets 0 likes
      2. Ryan Zezeski ‏@rzezeski Jan 28

        @seancribbs I'm looking for general good practices around key management.

        0 retweets 0 likes
      3. View other replies
      4. Show more
      1. Kelly Sommers ‏@kellabyte Feb 2

        @rzezeski If you find something let me know.

        0 retweets 1 like
      2. Show more
      1. Yonah Russ ‏@yruss972 Jan 28

        .@rzezeski You can configure different keys per host in the client config file. Also helps with different usernames. http://nerderati.com/2011/03/17/simplify-your-life-with-an-ssh-config-file/ …

        0 retweets 1 like
      2. Yonah Russ ‏@yruss972 Jan 28

        .@rzezeski For best practice, I would say KISS first. If you must store keys where others have access, then key per administration domain?

        0 retweets 1 like
    1. Jacob loveless ‏@loveless_jacob Jan 28

      @rzezeski check out Vault from hashicorp

      0 retweets 2 likes
    2. Chris Siebenmann ‏@thatcks Jan 28

      @rzezeski There's a general set of tradeoffs between convenience and security, and also crazy issues with ssh-agent + what keys get used.

      0 retweets 0 likes
    3. Burt Macklin, FBI ‏@grubernaut Jan 28 Columbus, IN

      @rzezeski second vote for Vault, works really well, even integration with Github authentication backend

      0 retweets 0 likes

    Loading seems to be taking a while.

    Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.

      Promoted Tweet

      false

      • © 2016 Twitter
      • About
      • Help
      • Terms
      • Privacy
      • Cookies
      • Ads info