Manage all your SSH servers with teleport

Поділитися
Вставка
  • Опубліковано 21 сер 2024

КОМЕНТАРІ • 129

  • @goteleport
    @goteleport 3 роки тому +58

    Great walkthrough, thank you for sharing our work with your community.

    • @christianlempa
      @christianlempa  3 роки тому +8

      Thanks! You're doing an awesome job with teleport, keep going! 😍

    • @822437
      @822437 Рік тому

      @@christianlempa These guys lost their ways. Trying to charge me arm and a leg for Enterprise edition while competition is fraction of the cost.

  • @Meta_data
    @Meta_data 3 роки тому +4

    Your content is so clear and thorough. I just finished setting up wireguard thanks to your tutorial.

  • @chongtszwing
    @chongtszwing 3 роки тому +2

    Good sharing. I finally setup teleport to manage all my ssh and internal web services follow the video. A little tweak needed as current version is 6 already. Teleport still can't handle vnc and rdp protocol at the moment, Guacamole is a good companion to transform remote desktop to http application so teleport can indirectly manage all remote desktop too. It's hardly to find resource talking about the topic (traefik + teleport + guacamole ) in the web, hope to see more in future.

  • @amosgiture
    @amosgiture 3 роки тому +3

    I appreciate the hard work that went into creating this. I have been procrastinating to try out teleport since last year. Very good presentation and clear explanation.

  • @lbsfilm
    @lbsfilm 3 роки тому +1

    Super sweet walkthrough, I nearly abandoned playing with teleport as I had no time figuring out config!

    • @christianlempa
      @christianlempa  3 роки тому +1

      Thanks man! Glad it was helpful to you :)

  • @andreaspiening5424
    @andreaspiening5424 3 роки тому +4

    This looks like a very interesting project, and the presentation has been done very well. I can't wait to check this out on my own, based on your tutorial.
    I would love to see a "deep dive" into teleport showing the teleport commandline client in action, maybe including remote file transfer (scp) and port tunneling if this even is supported.
    Thank you so much for your video and keep up the good work!

    • @christianlempa
      @christianlempa  3 роки тому +1

      that's a really good suggestion! And thank you for your feedback :) I'll have a look at teleport again in a few weeks, maybe I can make a tutorial about the newest version and advanced features like scp and so on.

  • @user-wc5pr5fd4z
    @user-wc5pr5fd4z Рік тому

    This video helped me set up Teleport using Docker without any issues. Thank you !!!

  • @RevNelson
    @RevNelson 2 роки тому +2

    Great video! I would love to see more about the tsh client as well as transferring files through teleport connections.

    • @christianlempa
      @christianlempa  2 роки тому +1

      Great suggestion! I'll include that in my next video about teleport ;)

  • @plixplux
    @plixplux 2 роки тому

    Your videos are just fantastic. Also, your voice is great! Thanks for sharing!

  • @sirandrex
    @sirandrex 3 роки тому +1

    Just perfect.
    Amazing tutorial, and amazing way of explaining things. 👌 keep with the good work

  • @sevensolutions77
    @sevensolutions77 Рік тому

    Thanks for this video 👍 Cant wait for the weekend to try this out 😁

  • @philipph9064
    @philipph9064 3 роки тому +1

    Mega, danke für das tolle Video!

  • @wtfmrkratos
    @wtfmrkratos 3 роки тому

    Phenomenal tutorial by the way! I'll be subbing and checking out your other videos. thank you for this!

  • @kenmurphy4259
    @kenmurphy4259 2 роки тому

    Great content, great channel, well done Christian

  • @sebastianswc
    @sebastianswc 3 роки тому

    awesome! i was able to setup my server using your tutorial! thank you! :D

  • @MultiSandrosandro
    @MultiSandrosandro 2 роки тому +3

    Great video and great tool for securing connections, one question tho, how would proxy/loadbalancing config vary when using with Nginx Proxy Manager. I understand i need to forward some ports for services but i have all my domains behind cloudflare, as i'm guessing i need to FQDN to point directly to my external IP right?

  • @bachirmehemmel
    @bachirmehemmel 2 роки тому

    Great video, thank you for make it so simple and easy to understand.

  • @muhsinvp1493
    @muhsinvp1493 3 роки тому

    Cristal Clear Content..!! Thanks Christian it helped for our 150 Remote Servers in control.!! Can you make a Vedeo about TSH Clients..!!?

    • @christianlempa
      @christianlempa  3 роки тому

      Awesome! 😁 I will do an update video about teleport but that will a few months because I have to cover so many other topics as well.

  • @trikki69
    @trikki69 Рік тому

    This is a great video and I love your channel but that’s a LOT of effort to get something up and running to manage ssh connections. Also a simple network diagram showing what you plan to do with the application would help so much.

    • @christianlempa
      @christianlempa  Рік тому

      Well it takes some effort, but figuring out is the fun part isn’t it?

  • @cipriancimpan5538
    @cipriancimpan5538 3 роки тому

    Great content, really informative - thanks for sharing!

  • @artistsarescientists9115
    @artistsarescientists9115 3 роки тому

    This a great walkthrough!

  • @drewfriestedt1832
    @drewfriestedt1832 2 роки тому

    wow - great tool and awesome video!

  • @denzfarid
    @denzfarid 2 роки тому

    thank you very much, I really appreciate it, I hope you are given health so that you can create turorial content, and good backsound👌🏼
    ~new subscriber from indonesia~

  • @donamato
    @donamato Рік тому

    top class !

  • @cloudnativelahore
    @cloudnativelahore Рік тому

    thankyou for sharing!

  • @mzw8374
    @mzw8374 2 роки тому

    Great Tutorial!, it's better if you provide the design diagram of what your plan every time you want to share everything, thanks

  • @JPs_ElectricGarage
    @JPs_ElectricGarage 3 роки тому

    Great stuff keep it up

  • @Glatze603
    @Glatze603 2 роки тому +1

    Hi Christian and thank you for this great secure solution-video! Is it possible to install it in a proxmox-vm behind a nginx, too? I would like to see more videos about teleport.

    • @christianlempa
      @christianlempa  2 роки тому +4

      I'm preparing a new update video for teleport, where I'll cover that! Stay tuned :)

    • @ldpriice
      @ldpriice 2 роки тому +2

      @@christianlempa Any news on that?

  • @FredySandoval_123
    @FredySandoval_123 2 роки тому

    Sounds good

  • @vrl.
    @vrl. 2 роки тому

    I think it's time for a video about adding Applications for Teleport, adding grafana, setting up kubernetes connections etc..

    • @christianlempa
      @christianlempa  2 роки тому

      I've already planned an update video soon ;)

    • @vrl.
      @vrl. 2 роки тому

      @@christianlempa Amazing! Not all kings wear capes! Thanks a lot!

  • @crazyoptimist4540
    @crazyoptimist4540 3 роки тому

    Nice video! I'm the first.
    Did you checked their source code btw?
    Is there any guarantee not to leak credentials to any 3rd party platform?

    • @christianlempa
      @christianlempa  3 роки тому

      Hey there, thank you :) No, I didn't check the source code, but the architecture documentation. Looks pretty solid.

  • @maeglingondolinsbane3446
    @maeglingondolinsbane3446 3 роки тому +1

    Hi great video thanks this software looks great, gonna test it asap. Do you have a video on how to set up a reverse proxy using docker and how to add containers to it afterwards? I've been trying to install like Nextcloud + pihole + bitwarden on a single box but I can't manage the reverse proxy side of things.

    • @christianlempa
      @christianlempa  3 роки тому +3

      Hey, thank you so much! There are two reverse proxy videos coming, I will start next week with a nginx tutorial (without docker), but I will also do a reverse proxy video with traefik in a couple of weeks, so stay tuned 😀

    • @maeglingondolinsbane3446
      @maeglingondolinsbane3446 3 роки тому +1

      @@christianlempa Great News thanks keep up the good work.

  • @LearnProgramsCJ
    @LearnProgramsCJ 3 роки тому

    Greate tutorial

  • @milleniumenterprise3254
    @milleniumenterprise3254 3 роки тому

    if you have an error going to the initial invite link, try remove the :3080 in the url

  • @mspeter97
    @mspeter97 11 місяців тому

    It looks like a very interesting thing.
    I just cannot set this up for the life of me & their documentation is really not clear.

  • @valterschmaltz
    @valterschmaltz 3 роки тому +1

    Thanks for this. I use Nginx Proxy manager in my setup, I spent hours trying tho sort the NAT setup, since it was not working for me. I found that I had to enable Websockets on the Nginz panel for this to work. It needs to be enabled even for the web ssh to work. Also, removing the /var/lib/teleport folder is good if you need to recreate the server.

    • @christianlempa
      @christianlempa  3 роки тому

      Glad you liked the video ;) thanks for sharing your experience

    • @TypeOneGuy03
      @TypeOneGuy03 2 роки тому

      Hey, I have NGINIX Proxy Manager and cant seem to figure this out. Can you help or maybe write a small writeup for it?

    • @MrRalf2201
      @MrRalf2201 2 роки тому

      @@TypeOneGuy03 i have the same problem behind Nginx Proxy Manager. Did you sort this out already?

    • @TypeOneGuy03
      @TypeOneGuy03 2 роки тому +1

      @@MrRalf2201 i was able to get it to work. I will check it when i get home and get back to you

    • @MrRalf2201
      @MrRalf2201 2 роки тому

      @@TypeOneGuy03 Any news on that?

  • @MrBo3ek
    @MrBo3ek Рік тому

    Hi. I great video as usual but I have a question about the teleport instance running behind nginx reverse proxy manager. Did you manage to run teleport behind the reverse proxy like this. I would like to get hit with requests to the reverse proxy first and only this to have exposed and than teleport service. There is a very small amount information out there about possibility to run it like that.

  • @santiagopenaloza1190
    @santiagopenaloza1190 Рік тому

    Thank you UA-cam for this video. After how long the terminal ssh session died if i am not using it?

  • @giuseppecv56
    @giuseppecv56 2 роки тому

    Hi, thanks for sharing, I have a question, do you think it is convenient to use teleport and ansible on the same host?

  • @gabrieldealmeida7012
    @gabrieldealmeida7012 2 роки тому

    I am choosing a secret manager for my company. Do you have any material or video to compare the differences between Teleport and PAM Cyberark?

  • @pauljennings
    @pauljennings 2 роки тому

    Hey, love your glasses. What make and model are they? TIA

    • @christianlempa
      @christianlempa  2 роки тому

      Just a basic no-name model :D I even don't know the name haha! But I'll get some new ones soon, in similar style :)

    • @pauljennings
      @pauljennings 2 роки тому

      @@christianlempa LOL, no worries :) BTW, teleport 7.2.0 is out now with lots of extra goodies! Any change of a newer video showing how to add Apps? It also includes k8s and databases, but these could be follow on vids? TIA and loving the content!

  • @ronaldagorsah7954
    @ronaldagorsah7954 3 місяці тому

    Dear Christian,
    We at Alpenhost love your Videos. As you properly already know.
    We would love to support you and your Channel or work with you together.
    Please let us know if this would be something you would be open to.
    Best Regards
    Ronald

  • @naimarshad
    @naimarshad 3 роки тому

    Interesting tutorial.. what terminal font are you using.

  • @yukanolive4727
    @yukanolive4727 3 роки тому

    very nice guide, but try guacamole :)

    • @christianlempa
      @christianlempa  3 роки тому

      I will do ;) Thank's for the good suggestion!

  • @CptWashu
    @CptWashu Рік тому

    Any chance you could show us a setup using Traefik as the load balancer?

    • @christianlempa
      @christianlempa  Рік тому

      Probably not, I’m not doing that myself btw because it adds to much complexity I would prefer using no rev proxy for teleport

  • @joaopaulosapidepaula1706
    @joaopaulosapidepaula1706 2 роки тому

    I'm testing the solution, but I can't get out of the authentication screen!! I installed the Authy app on my cell phone to scan the qr code, but it's not coming in.
    It is giving the error, as shown in the message: invalid one time token, please check if the token has expired and try again.
    I tried several times and nothing.
    Thanks for your job!!!

  • @raul230285
    @raul230285 2 роки тому

    Hello, could you please make a video about the latest version of teleport with docker. And don't use load balancing. thanks for your time.

    • @christianlempa
      @christianlempa  2 роки тому +3

      I'm doing another update video on Teleport, however this will be with Docker and Traefik.

    • @raul230285
      @raul230285 2 роки тому

      @@christianlempa Thank you very much for your answer, I will be very attentive to the video or to all the videos that appear on your channel. Thank you very much teacher. :D

  • @adenaziz3600
    @adenaziz3600 2 роки тому

    this is better than termius? i'm using termius to connect to SSH server, and i save hundreds of ssh credentials here.

  • @qiuyue4082
    @qiuyue4082 3 роки тому

    Interesting... I wanted to try the Apache guacamole project, now I need to check which one is better, guacamole or teleport?

    • @christianlempa
      @christianlempa  3 роки тому

      I haven't tested guacamole, but that's still on my list 😊

  • @Dellabeneta
    @Dellabeneta 8 місяців тому

    Hey there! Afternoon! I'm trying to figure out how to set the maximum time for inactive client sessions in an SSH session. It's currently at 1 minute by default, but when I try to change it, nothing happens. The documentation is a bit confusing, and I'm struggling to sort out this problem. Any chance you could lend a hand? Thanks!

  • @StevenRayVaughan
    @StevenRayVaughan Рік тому

    Is there an updated version, seems like the config is a little different and I'm having issues getting it up and running.

  • @michaelventarola7100
    @michaelventarola7100 Рік тому

    I am hosting this locally. Can this be done without a load balancer and using Nginx proxy manager?

  • @Maik.iptoux
    @Maik.iptoux 2 роки тому

    Hast du zufällig auch ein Video zu der vscode Container config? Zumindest sieht es so aus als würde des vscode auch auf einem Server laufen.

    • @christianlempa
      @christianlempa  2 роки тому

      Ich muss mal schauen, ob ich noch die configs habe, aktuell habe ich Teleport in der Cloud als managed Service laufen.

  • @michaeldisieno3465
    @michaeldisieno3465 Рік тому

    Is there a chance you can revisit this through cloudflare tunnel? I'm struggling with getting the FQDN to work right through CF Tunnel, as well as connecting to other nodes.

    • @christianlempa
      @christianlempa  Рік тому

      No, I probably won't use it in combination with CFT

  • @sumitmamoria
    @sumitmamoria 3 роки тому

    Great video. Teleport looks good, but do you think it's too much trouble for Just remote ssh? I found guacamole to be much easier to setup, configure and use. Does teleport offers something more that I missed?

    • @christianlempa
      @christianlempa  3 роки тому

      Thank you! I didn't look at guacamole yet, but that's still on my list. I probably will do a comparison video at some point but I don't know when.

  • @indrar359
    @indrar359 2 роки тому

    hi there, great tutorial btw, but somehow the latest version now is 9.3.4 and when i change the teleport version, youre configuration is not working anymore, can you atleast update in youre website for the latest version ? thanks

  • @yagnasivasai
    @yagnasivasai 2 роки тому

    Do you know any code editor for remote ssh connection
    Vscode only allows one Ec2 server
    Please reply
    I am more used to extensions in vscode
    I am unable to move out of vscode
    If possible tell me in vscode
    Otherwise I will switch

  • @diogoferrario
    @diogoferrario 2 роки тому

    Hello Christian,
    Is it possible to just save a username and a password which is used for multiple devices and connect this with place in the ip of the cpe?
    For bether understandig i troubleshoot some routers which has no option to install the teleport client. However to login to this routers i can activate the ssh with TR69 and then login to the host with the definied credantionals which i send with tr69. Today i use mobaxterm for ssh but this project sounds really nice if i can use this explained scenario.

  • @dandocmando
    @dandocmando Рік тому

    Can we do this without using an online server? I want to do this but have everything hosted on the homelab, thanks!

    • @christianlempa
      @christianlempa  Рік тому +1

      Sure you can host it locally as well.

    • @dandocmando
      @dandocmando Рік тому

      @@christianlempa ok thanks for the reply I tried to do it from this video and couldn't get it setup, I've got Traefik also running and I think it was catching it and didn't know what to do.

  • @TypeOneGuy03
    @TypeOneGuy03 2 роки тому

    Hello,
    I am really struggling with the loadbalancer/proxy manager part. I have NGINIX Proxy manager running. How can i configure this with it?

    • @christianlempa
      @christianlempa  2 роки тому +1

      You could expose the webinterface with a revproxy, other ports would need to be passed through with tcp, udp streams

    • @MrRalf2201
      @MrRalf2201 2 роки тому +1

      Hi, i have the same problem. Did you already find a way to get it work.

  • @cryptolicious3738
    @cryptolicious3738 2 роки тому

    cool video, but has teleport been legit pen tested ?

  • @wtfmrkratos
    @wtfmrkratos 3 роки тому

    does the corporate version support ldap based authentication?

    • @christianlempa
      @christianlempa  3 роки тому

      I don't know for sure, they mention Active Directory, but not LDAP specifically

  • @christiangalea3459
    @christiangalea3459 2 роки тому

    Hi, is it possible to use traefik with teleport? thanks

    • @christianlempa
      @christianlempa  2 роки тому

      You could do it, but I think it will be better to just use teleport with trusted certs managed by cert-manager f.e..

    • @christiangalea3459
      @christiangalea3459 2 роки тому

      @@christianlempa Thanks a lot for your reply and you videos because they're amazing but I managed to do it with traefik and it's working fine :) . Thanks again, Christian

  • @marcoraap733
    @marcoraap733 Рік тому

    du bist deutsch oder?

    • @christianlempa
      @christianlempa  Рік тому

      Ja ;)

    • @marcoraap733
      @marcoraap733 Рік тому

      @@christianlempa nice :) hast Du eine Ahnung wie ich einen Server mit einem Pi für Pis aufsetzen kann von dem die anderen Pis booten? Quasi mit einer Fernverwaltung?

  • @janis3844
    @janis3844 3 роки тому +1

    Wieso nicht einfach auf deutsch? :)

  • @Theborg72
    @Theborg72 2 роки тому

    I tried to follow your instructions but now version 9 is available. How much I try to follow, it's just ERR_EMPTY_RESPONSE when I try to enter the page. Has anything changed since you did the tutorials

    • @christianlempa
      @christianlempa  2 роки тому +1

      I will do an updated version probably soon because they changed many things in the newest versions ;)