0.0.4
Pre-release
Pre-release
- Two (or more) person vouching is now implemented
lkp host
command determines its own region from EC2 metadata servicelkp host
andlkp ssh
now work with cross-region KMS keys and/or Lambda funcs- Authoriser now gets sent requested SSH username
- CloudTrail logs requested SSH username
- Authoriser can now return chained jumpboxes for multi-hop scenarios (not yet supported by client)
lkp host
can request additional principals, e.g. DNS names for load-balanced bastions