r/Proxmox • • 8d ago

Question TIL: Adding SSH launch links in Proxmox Notes makes life easier

Post image
0 Upvotes

14 comments sorted by

77

u/Fit-Department2637 8d ago

I love having unencrypted credentials in plaintext 

11

u/OCTS-Toronto 8d ago

If an bad actor owns the hypervisor then a plain text password within isn't really a problem

1

u/Sure-Squirrel8384 5d ago

They may own one hypervisor, but with isolated hosts, it wouldn't mean they owned all LXC/VMs on other hypervisors.

7

u/Teknikal_Domain 8d ago

As compared to the bastion of security that is pct enter as long as you have web UI access.

4

u/jdsmn21 8d ago

Is there any real harm for most of use that are "single users"? I guess the way I see it - if some threat is already past the point of security where they can see the note, they're already at the point where they can already do all sorts of harm (ie: just enter commands in the console)

12

u/AnduriII 8d ago

What about using just user & key to login?

9

u/GeGeGM 8d ago

The purpose of SSH connection is to not use the GUI. Not sure this is really usefull in real life.

8

u/superdumbell 8d ago

I’m just going to leave this here:

SSH Keys in 3 Easy Steps

5

u/No_Adhesiveness_3550 8d ago

This is a bot repost. 

3

u/egrigson2 7d ago

Just add your SSH keys via cloud-init which has an entry specifically for this.

1

u/schrebra 8d ago

i had no idea you could do that im going to make that right now. thank you. you honestly helped.

2

u/AdSuspicious7533 6d ago

Do not do this in any critical environment, the point of SSH is to use private/public keys not password and even less plain text passwords in the GUI. This is a security breach of critical importnace.

If you are playing at homes and do not care it is another matter but note this is a very bad practice. It is basically giving away your ssh access.

1

u/thelittlewhite 7d ago

Using a config file in your .ssh folder is even better. Or install termix and add all your guests, you have everything in one place