Skip to content

Make MGMT-Host Secure #8

@whotwagner

Description

@whotwagner

In scenario1(videoserver) some attacks need actions executed from admin-pc. In order to make those hosts accessible by attackm8, the mgmt-host is allowed to have password-login via ssh. This is insecure in environments where the mgmt-host is hosted with a public ip(public cloudprovider).

I can think of possible solutions like:

  1. create another jumphost, that is only for the simulation and has no floating-ip
  2. add the inet-network to the adminpcs so that they are dual-homed and can directly accessed by attackm8

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions