AdminForge: Declarative Privileged-Identity Management for Linux Server Fleets
Resumo
Stolen credentials are a leading cause of security breaches, yet on Linux server fleets the accounts, SSH keys, and permissions behind them are still often managed by hand. Centralized tools (Teleport, Boundary, FreeIPA) add a network-facing service that itself must be protected, and configuration-management tools have no notion of granting and revoking access. We present AdminForge, an open-source command-line tool that manages accounts, keys, and permissions from one operator machine: the operator edits the declared state, previews the changes, and applies them over SSH, recording every action in a local history and installing nothing on the hosts. Five professional Linux administrators completed its nine-task workflow without training, rating usefulness, ease of use and intention to use at a median of 6/7. A parallel apply, verify or audit over 50 hosts finishes in tens of seconds, and an unchanged re-apply answers locally in under 0.3 s, faster than an Ansible re-run and with no listening service added.
Referências
Cranor, L. F. and Garfinkel, S., editors (2005). Security and Usability. O’Reilly.
Davis, F. D. (1989). Perceived usefulness, perceived ease of use, and user acceptance of information technology. MIS Q., 13(3):319–340.
Davis, F. D., Bagozzi, R. P., and Warshaw, P. R. (1989). User acceptance of computer technology: A comparison of two theoretical models. Management Science, 35(8):982–1003.
Dietrich, C., Krombholz, K., Borgolte, K., and Fiebig, T. (2018). Investigating system operators’ perspective on security misconfigurations. In ACM CCS.
Jamieson, S. (2004). Likert scales: How to (ab)use them. Medical Education, 38(12):1217–1218.
Joint Task Force (2020). Security and privacy controls for information systems and organizations. Technical Report SP 800-53 Rev. 5, NIST.
Kotulic, A. G. and Clark, J. G. (2004). Why there aren’t more information security research studies. Inf. Manag., 41(5):597–607.
Krombholz, K., Mayer, W., Schmiedecker, M., and Weippl, E. (2017). “I have no idea what I’m doing” – on the usability of deploying HTTPS. In USENIX Security Symp.
Nielsen, J. (1993). Usability Engineering. Academic Press. Rahman, A., Parnin, C., and Williams, L. (2019). The seven sins: Security smells in infrastructure as code scripts. In 41st International Conference on Software Engineering (ICSE). IEEE.
Saltzer, J. H. and Schroeder, M. D. (1975). The protection of information in computer systems. Proc. IEEE, 63(9):1278–1308.
Schneier, B. and Kelsey, J. (1999). Secure audit logs to support computer forensics. ACM Trans. Inf. Syst. Secur., 2(2):159–176.
Tiefenau, C. et al. (2019). A usability evaluation of Let’s Encrypt and Certbot: Usable security done right. In ACM CCS.
Whitten, A. and Tygar, J. D. (1999). Why Johnny can’t encrypt: A usability evaluation of PGP 5.0. In USENIX Security Symp.
Ylonen, T. (2019). SSH key management challenges and requirements. In 10th IFIP International Conference on New Technologies, Mobility and Security (NTMS). IEEE.
