#5514 [RFE] Add rules for tlog terminal capture on clients
Opened by mkosek. Modified

Some hardened and confined infrastructure environments require not only secure authentication and authorization, but also audit by capturing the activity on the target terminal (input, output, what is on the screen).

The client part of FreeIPA, project SSSD, has a request to support open source terminal capture project [tlog] filed in https://fedorahosted.org/sssd/ticket/2893 ticket 2893.

The initial support can be in a hard coded configuration only on the client side, but the next step is support of HBAC-like policy on the server, to configure rules when the terminal capture is required.


Metadata Update from @mkosek:
- Issue assigned to someone
- Issue set to the milestone: Future Releases

Metadata