Uploaded image for project: 'Guacamole'
  1. Guacamole
  2. GUACAMOLE-1656

Allow per-user KSM Vault configurations

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Open
    • Minor
    • Resolution: Unresolved
    • None
    • 1.6.0
    • None

    Description

      Users should have the ability to configure their own Keeper Secrets Manager vault, to provide secrets to fill in any gaps left by the administrator-configured KSM vault.

      For security reasons:

      • User-provided vaults should not be allowed to override any secrets defined in administratively defined vaults
      • Allowing users to provide KSM configs should be disabled by default, and only enabled if enabled in the guacamole.properties config file
      • Allowing user vaults to provide secrets should be disabled by default for connections, and should only be allowed if explicitly enabled on a per-connection basis.

      Attachments

        Activity

          People

            Unassigned Unassigned
            jmuehlner James Muehlner
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated: