Uploaded image for project: 'Help-Desk'
  1. Help-Desk
  2. HELP-5690

FIWARE.Request.Lab.Lannion.Adding Region Support Keys

    Details

    • Type: extRequest
    • Status: Closed
    • Priority: Major
    • Resolution: Done
    • Fix Version/s: 2021
    • Component/s: FIWARE-LAB-HELP
    • Labels:
      None
    • HD-Node:
      Lannion

      Description

      The region staff team are responsible of the virtual machines instantiated on their servers. Therefore each region staff should have the control of who access the virtual machines for support purposes and set and enforce the corresponding policy. It is not possible if the public keys are shared among all the regions. Additionally, it is also extremely insecure and a problem when a region leaves the federation.
      A new service, called aiakos and deployed aiakos.lab.fiware.org, has been deployed in FIWARE Lab to manage support region ssh and gpg keys, in the endpoint http://aiakos.lab.fiware.org:3000
      As region administrator, you should create your ssh, and gpg keys and upload it into the aikos service (you can obtain information about how create your keys in https://github.com/telefonicaid/fiware-aiakos/blob/develop/doc/README.rst#generating-a-ssh-key).
      To upload your keys into the aiakos service, you should use just a POST operation. You can have documentation about this operation in https://jsapi.apiary.io/apis/fiwareaiakos/reference/aiakos-v1/add-key/post-key.html
      You can find information about why ssh and gpg keys are needed in https://github.com/telefonicaid/fiware-aiakos/blob/develop/doc/README.rst#why-a-ssh-key-and-a-gpg-key-are-needed

        Issue Links

          Activity

          henar Henar Muñoz created issue -
          mev Manuel Escriche made changes -
          Field Original Value New Value
          Component/s FIWARE-LAB-HELP [ 10279 ]
          lannionsupport Lannion Node Helpdesk made changes -
          Status Open [ 1 ] In Progress [ 3 ]
          henar Henar Muñoz made changes -
          Description The region staff team are responsible of the virtual machines instantiated on their servers. Therefore each region staff should have the control of who access the virtual machines for support purposes and set and enforce the corresponding policy. It is not possible if the public keys are shared among all the regions. Additionally, it is also extremely insecure and a problem when a region leaves the federation.

          A new service, called aiakos and deployed aiakos.lab.fiware.org, has been deployed in FIWARE Lab to manage support region ssh and gpg keys.

          As region administrator, you should create your ssh, and gpg keys and upload it into the aikos service (you can obtain information about how create your keys in https://github.com/telefonicaid/fiware-aiakos/blob/develop/doc/README.rst#generating-a-ssh-key).

          To upload your keys into the aiakos service, you should use just a POST operation
          POST: https://jsapi.apiary.io/apis/fiwareaiakos/reference/aiakos-v1/add-key/post-key.html

          You can find information about why ssh and gpg keys are needed in https://github.com/telefonicaid/fiware-aiakos/blob/develop/doc/README.rst#why-a-ssh-key-and-a-gpg-key-are-needed
          The region staff team are responsible of the virtual machines instantiated on their servers. Therefore each region staff should have the control of who access the virtual machines for support purposes and set and enforce the corresponding policy. It is not possible if the public keys are shared among all the regions. Additionally, it is also extremely insecure and a problem when a region leaves the federation.
          A new service, called aiakos and deployed aiakos.lab.fiware.org, has been deployed in FIWARE Lab to manage support region ssh and gpg keys, in the endpoint http://aiakos.lab.fiware.org:3000
          As region administrator, you should create your ssh, and gpg keys and upload it into the aikos service (you can obtain information about how create your keys in https://github.com/telefonicaid/fiware-aiakos/blob/develop/doc/README.rst#generating-a-ssh-key).
          To upload your keys into the aiakos service, you should use just a POST operation. You can have documentation about this operation in https://jsapi.apiary.io/apis/fiwareaiakos/reference/aiakos-v1/add-key/post-key.html
          You can find information about why ssh and gpg keys are needed in https://github.com/telefonicaid/fiware-aiakos/blob/develop/doc/README.rst#why-a-ssh-key-and-a-gpg-key-are-needed
          lannionsupport Lannion Node Helpdesk made changes -
          Status In Progress [ 3 ] Answered [ 10104 ]
          lannionsupport Lannion Node Helpdesk made changes -
          Resolution Done [ 10000 ]
          Status Answered [ 10104 ] Closed [ 6 ]
          backlogmanager Backlog Manager made changes -
          Summary Adding Region Support Keys FIWARE.Request.Lab.Adding Region Support Keys
          henar Henar Muñoz made changes -
          Resolution Done [ 10000 ]
          Status Closed [ 6 ] In Progress [ 3 ]
          lannionsupport Lannion Node Helpdesk made changes -
          Status In Progress [ 3 ] Answered [ 10104 ]
          lannionsupport Lannion Node Helpdesk made changes -
          Resolution Done [ 10000 ]
          Status Answered [ 10104 ] Closed [ 6 ]
          mev Manuel Escriche made changes -
          HD-Node Lannion [ 10850 ]
          backlogmanager Backlog Manager made changes -
          Summary FIWARE.Request.Lab.Adding Region Support Keys FIWARE.Request.Lab.Lannion.Adding Region Support Keys
          lannionsupport Lannion Node Helpdesk made changes -
          Link This issue is cloned by HELP-6902 [ HELP-6902 ]
          support-brittany Britanny Node Support made changes -
          Link This issue is cloned by HELP-8233 [ HELP-8233 ]
          support-brittany Britanny Node Support made changes -
          Link This issue is cloned by HELP-8272 [ HELP-8272 ]
          fla Fernando Lopez made changes -
          Fix Version/s 2021 [ 12600 ]

            People

            • Assignee:
              lannionsupport Lannion Node Helpdesk
              Reporter:
              henar Henar Muñoz
            • Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

              Dates

              • Created:
                Updated:
                Resolved: