Uploaded image for project: 'Guacamole'
  1. Guacamole
  2. GUACAMOLE-1797

Support storage of secrets on disk

    XMLWordPrintableJSON

Details

    • New Feature
    • Status: Open
    • Trivial
    • Resolution: Unresolved
    • None
    • None
    • guacamole-vault
    • None

    Description

      We are currently setting up guacamole here and I just realised that the connection credentials are stored in plain text in the database. Would it be possible to allow providing a path to the private key on disk (just like ssh_known_hosts) instead of storing it in the database?

      This would allow us to create new connection without requiring access to the private key (just have to known where it's at). It would also allow us to rotate the key directly on the server without having to mess with database updates.

      We also considered GUACAMOLE-426.

      Attachments

        Activity

          People

            Unassigned Unassigned
            bendemctl bendemctl
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated: