[Freeipa-users] Use of FreeIPA or FreeIPA LDAP server to hold private keys

Dmitri Pal dpal at redhat.com
Wed Aug 3 22:13:13 UTC 2011


On 08/03/2011 10:10 AM, Ian Stokes-Rees wrote:
> If there were some way to securely embed an arbitrary string in the
> user profile, that would go a long way to solving this problem.  At
> least 4KB to cover a 2048 X.509 public key, but ideally 10 KB or
> more.  To remove the ACL complexity, just having it accessible only by
> the user (token or password based fetch) would be suitable.
Do not quite understand how that would work or what you mean.

-- 
Thank you,
Dmitri Pal

Sr. Engineering Manager IPA project,
Red Hat Inc.


-------------------------------
Looking to carve out IT costs?
www.redhat.com/carveoutcosts/






More information about the Freeipa-users mailing list