[rancid] Re: Rancid and cisco 'autocommand' users?

Randy Bush randy at psg.com
Wed Apr 25 21:15:03 UTC 2007


>> We're currently involved in a deployment of rancid for some cisco 
>> equipment that we manage. We're fairly uncomfortable with storing 
>> full-privilege passwords in plaintext anywhere.
> 
> There are trade-offs to be made/accepted for automation.  You can still
> limit the exposure, as Ed Ravin has suggested.

ask your router vendor why they do not have the equivalent of
~/.ssh/authorized_keys

randy



More information about the Rancid-discuss mailing list