If you're in AWS and using Amazon Linux you already have session manager installed! Set up IAM permissions and get rid of sshđź’Ą

Check out ssm from Disney Streaming https://github.com/disneystreaming/ssm-helpers or cloudman https://github.com/dutchcoders/cloudman which both have great integration with session manager https://twitter.com/kelseyhightower/status/1326610296530563073
There's even a great Systems Manager quick setup I highly recommend https://docs.aws.amazon.com/systems-manager/latest/userguide/systems-manager-quick-setup.html
No more bastions, no more local users, no more ssh keys, no more open ports (via privatelink)

Full audit of commands run, supports port forward, run one off commands

I'm a big fan
I did a talk about the old version of ssm-helpers at rejekts earlier this year
And if you still want to use SSH, local users, SSH keys, etc you can get rid of your bastions with session manager SSH proxy
https://docs.aws.amazon.com/systems-manager/latest/userguide/session-manager-getting-started-enable-ssh-connections.html
You can follow @rothgar.
Tip: mention @twtextapp on a Twitter thread with the keyword “unroll” to get a link to it.

Latest Threads Unrolled:

By continuing to use the site, you are consenting to the use of cookies as explained in our Cookie Policy to improve your experience.