On Thu, Nov 15, 2018 at 5:33 AM Daniel Storey <email@example.com> wrote:
I'm wondering if I can set up ssh key authentication by storing the private keys in LDAP for guacamole? With a parameter type of guacConfigParameter, what keyword would I use to describe it?Yes, you can do this, though I'd caution you to be very careful and make sure that the permissions on the objects in your LDAP directory that have the private keys are very locked down. Basically only the users who are going to run the connection should have any access to that Guacamole connection object.
Here's an excerpt from the LDIF file I'm using to create the object inside the LDAP directory:
guacConfigProtocol: sshSee:Basically, any of the parameters on that page can be put into the configuration, so you can use the "private-key" parameter as well as the "passphrase" parameter (if required).-Nick