Loading
Emit audit event for instance SSH certificate creation
What does this MR do and why?
Emits audit event on instance SSH certificate creation.
References
Contributes to #611324 (closed)
Screenshots or screen recordings
| Before | After |
|---|---|
How to set up and validate locally
- In
gdk/env.runit, setexport GITLAB_SIMULATE_SAAS=0, thengdk restart rails-web. - Enable the flag in
rails c:Feature.enable(:instance_ssh_certificates). - Sign in as an admin with admin mode enabled and open http://gdk.test:3000/admin/ssh_certificates.
- Select Add certificate authority. The form renders below the card header.
- Generate a CA key with
ssh-keygen -t ed25519 -f /tmp/ca -N '', enter a title and the contents of/tmp/ca.pub, and submit. AuditEvents::InstanceAuditEvent.lastreturns an audit event for the newly created certificate, with the title and fingerprint logged incustom_message.
MR acceptance checklist
Evaluate this MR against the MR acceptance checklist. It helps you analyze changes to reduce risks in quality, performance, reliability, security, and maintainability.
Edited by Fred Reinink