CredentialsΒΆ
Personal userΒΆ
For our infrastructure, weβre leveraging single sign-on and LDAP wherever possible.
This means youβll have a single personal user account, combined with a YubiKey, which you can use across all the βοΈ Services.
Important
When logging in, your username is simply your UID (e.g. fbloggs) β no @confirm.ch needed.
The one exception? E-mail & Calendar and contacts.
There youβll need to use your full email address (e.g. fbloggs@confirm.ch) to get in.
VaultwardenΒΆ
Weβre using Vaultwarden as our password manager, which allows us to:
Encrypt all credentials
Create different collections
Finely control access to the collections
Important
Store all shared, and team credentials in Vaultwarden β never in chat, e-mail, or plaintext files.
See also
Check out the Dashboard for the Vaultwarden link.
Note
The deployment, and all documentation for Vaultwarden can be found in the GitLab Vaultwarden project.