Security and Governance for cloud foundry vm's


Surekha Bejgam (sbejgam) <sbejgam@...>
 

Hi All,

We are deploying cloud foundry PAAS on Openstack IAAS. Currently all vm's deployed using bosh have vcap as the username. Devops on call engineers need to login to some of the bosh vm's to diagnose issues. Since all devops engineers use the same username "vcap" with private key to access the vm, we are having hard time figuring out who did what. Is there a standard way to deal with SSH Security for bosh vm's ?

Any suggestions will help.

Thanks,
Surekha

Join cf-dev@lists.cloudfoundry.org to automatically receive all group messages.