changes.mady.by.user Dominique Lucas
Saved on Feb 19, 2021
...
This configuration enables single-hop ssh (using ProxyJump) to LXC or any other host.
Not required for ECGATE, CCA/CCB login nodes, Linux physical workstations, Linux VDI, or HPC2020 TEMS.
Add the Teleport certificate authority to your ~/.ssh/authorized_keys file, on the relevant system at ECMWF, e.g. ecgate, cca:
~/.ssh/authorized_keys
curl -fs https://nexus.ecmwf.int/repository/internal-teleport-configs/prod/teleport_user_ca.pub >> ~/.ssh/authorized_keys
On cca/ccb, you will need to load the curl module beforehand.
This configuration will allow access to any host which mounts the same $HOME directory.
$HOME