Tutorials
Session Recording on the Bastion: tlog + sudo I/O + SSH Audit Pipeline
Making privileged access visible on the bastion: tlog/sudo I/O logging, the access model and a SIEM pipeline.
4 posts found.
Making privileged access visible on the bastion: tlog/sudo I/O logging, the access model and a SIEM pipeline.
Hardening admin access with OpenSSH security keys (ed25519-sk) using PIN + touch confirmation, while keeping break-glass scenarios intact.
An OpenSSH CA-based approach to set up auditable, time-bound SSH access in place of shared bastion accounts and long-lived keys.
A guide to managing privileged access safely by using short-lived certificates instead of permanent SSH keys.