rgooch

Results 47 comments of rgooch

I suggest an alternative approach, which is to build in the ACME certificate management into webhook (as a configurable option). This avoids the need to configure and deploy a separate...

This is a daily problem. I can recover without plugging in a second token by just re-running the Keymaster client. Usually on the third attempt it works.

I think I disabled OTP mode and still experienced the problem.

I turned off OTP a long time ago and I've seen this problem occasionally.

@cviecco I have MacOS Catalina 10.15.4. Output: `manufacturer = "FT", product = "U2F KB", vid = 0x0854, pid = 0x096e manufacturer = "Yubico", product = "YubiKey FIDO+CCID", vid = 0x0406,...

Currently the incidence of this is very low for me (I have OTP disabled and am running MacOS Catalina v10.15.4). I don't see a way to debug this without being...

I don't think it's a good idea to bind this to localhost by default, since the purpose of this port is to provide off-machine visibility (i.e. metrics). We would just...

I don't agree, sorry. What you are proposing will force every admin who is running a system with expectations of uptime to fix what they will see as a broken...

Splitting the functionality over different ports might be the better way to deal with this. It would certainly make it easier to reason and verify that sensitive endpoints are locked...