Uploaded image for project: 'Product Technical Learning'
  1. Product Technical Learning
  2. PTL-7315

RH362-135: ch 5 - 1st guided exercise - no ssh password prompts


    • Icon: Story Story
    • Resolution: Done
    • Icon: Major Major
    • RH362 - RHEL 7.4 1 20180531
    • RH362
    • None
    • 5
    • ILT
    • en-US (English)

      Reporter RHNID:
      Section: -
      Language: en-US (English)

      Description: All throughout this exercise (and every other exercise in the book) you can log in as various users without ever seeing a prompt for a password. You can log in even as the Windows Administrator without a password. It's not clear if this is because of Active Directory or anything we've configured. See some examples in this exercise:
      Step 2.14
      Step 7
      Step 14
      Step 22

      The actual reason is that there is a lab grading key configured in sshd_config on all the machines in the lab environment (idm, replica1, replica2, client, tower, utility, satellite):
      AuthorizedKeysFile /etc/.rht_authorized_keys

      The student user has access to this key on workstation: /home/student/.ssh/lab_rsa

      I don't see the benefit of having this key configured. The fact that it is not explained in the student guide can cause confusions. We are not having kerberos-based Single Sign-on here. This is an ssh key that lets student log in anywhere as anyone without a password.

            rht-pagomez Patrick Gomez
            zoltanmolnar Zoltan Molnar
            0 Vote for this issue
            3 Start watching this issue
