@@ -0,0 +1,11 @@
# Rotate all admin keys on servers
- create new key with name scheme
- copy to server to
- $ADMIN/.ssh (to be ended for admin user)
- /etc/ssh/authorized_keys--master
- /etc/ssh/authorized_keys/$ADMIN
Then remove old key
Store ssh key name for current period
The note is not visible to the blocked user.