sshca: Do not sign certs for root
We no longer need *root* in the list of authorized principals for user certificates issued by SSHCA.
This commit is contained in:
@@ -15,7 +15,6 @@ private_key_passphrase_file = "/run/sshca/secrets/user/passphrase/user-ca-key.pa
|
||||
[ca.user.group_principals]
|
||||
"Server Admins" = [
|
||||
"core",
|
||||
"root",
|
||||
]
|
||||
|
||||
[[libvirt]]
|
||||
|
||||
Reference in New Issue
Block a user