Skip to content

Make MGMT-Host Secure #8

@whotwagner

Description

@whotwagner

In scenario1(videoserver) some attacks need actions executed from admin-pc. In order to make those hosts accessible by attackm8, the mgmt-host is allowed to have password-login via ssh. This is insecure in environments where the mgmt-host is hosted with a public ip(public cloudprovider).

I can think of possible solutions like:

  1. create another jumphost, that is only for the simulation and has no floating-ip
  2. add the inet-network to the adminpcs so that they are dual-homed and can directly accessed by attackm8

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions