Skip to main content

NO_BACKEND_ADMIN_SSS_NON_ADMIN_PLAINTEXT

Constant NO_BACKEND_ADMIN_SSS_NON_ADMIN_PLAINTEXT 

Source
const NO_BACKEND_ADMIN_SSS_NON_ADMIN_PLAINTEXT: &[u8] = b"system:\n  iteration: 1\n  admin_secret_handling:\n    shamirs-secret-sharing:\n      number_of_shares: 3\n      threshold: 2\n  non_admin_secret_handling: plaintext\n  mappings:\n    - share_holder:\n        system_user: share-holder1\n        ssh_authorized_key: >-\n          ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIAN54Gd1jMz+yNDjBRwX1SnOtWuUsVF64RJIeYJ8DI7b\n          user@host\n    - share_holder:\n        system_user: share-holder2\n        ssh_authorized_key: >-\n          ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIPDgwGfIRBAsOUuDEZw/uJQZSwOYr4sg2DAZpcc7MfOj\n          user@host\n    - share_holder:\n        system_user: share-holder3\n        ssh_authorized_key: >-\n          ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAILWqWyMCk5BdSl1c3KYoLEokKr7qNVPbI1IbBhgEBQj5\n          user@host\n    - wire_guard_download:\n        system_user: wireguard-downloader\n        ssh_authorized_key: >-\n          ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIOh9BTe81DC6A0YZALsq9dWcyl6xjjqlxWPwlExTFgBt\n          user@host\n";
Expand description

Config with no HSM backend.

  • Shamir’s Secret Sharing for administrative secrets
  • plaintext for non-administrative secrets